Senior Security Engineer - Cloud Identity
Core
Designing and implementing cloud-native Identity and Access Management (IAM) strategies, including IGA, PAM, and certificate lifecycle management, to secure access across AWS-based systems and AI/ML platforms.
Role type
Senior Security Engineer (IAM)
Builds
Secure, scalable IAM programs and zero-trust access controls for cloud-native workloads.
Domain
Cloud Security / Identity and Access Management (IAM)
Deliverable
production ML models | product features | infrastructure
Required skills
IAM tools (Okta, CyberArk, Ping, SailPoint), AWS IAM (roles, policies, permissions boundaries), infrastructure-as-code (Terraform, CloudFormation), authentication protocols (SAML, OAuth2, OpenID Connect), directory services (Active Directory, LDAP), scripting (Python, PowerShell), compliance standards (NIST, SOC 2, PCI DSS), CI/CD integration.
Preferred skills
AWS technologies (Lambda, S3, DynamoDB, RDS, CloudTrail), DevOps tools and practices.
Technologies
AWS, Terraform, CloudFormation, Okta, CyberArk, Ping, SailPoint, Python, PowerShell, SAML, OAuth2, OpenID Connect, Active Directory, LDAP.
Responsibilities
Build and evolve Identity Governance and Administration (IGA) capabilities; Implement and operate Privileged Access Management (PAM); Design Certificate Lifecycle Management solutions; Drive IAM integration across AWS services, SaaS, and DevOps pipelines; Design identity controls for AI/ML systems; Automate identity provisioning and access reviews; Mentor junior engineers.
Seniority
Senior, hands-on IC with mentorship responsibilities.