12 дней назад
AI Identity Security Engineer
133 060 - 166 810$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
AI Identity Security Engineer (AI/IAM): Building secure identity governance and authorization controls for AI agents and non-human workloads across AWS and multi-cloud environments with an accent on ephemeral credentials, scoped permissions, and automated lifecycle management. Focus on integrating IAM systems and modern authentication protocols into agent frameworks, SDKs, and CI/CD pipelines while establishing auditable enterprise security standards.
Location: Offsite with home-based work, preferably near the Regions office in Hoover, Alabama; onsite attendance may be required for meetings or events. Applicants must be authorized to work full-time in the United States.
Salary: $133,059.85 minimum to $166,810 median USD annually, with possible annual discretionary bonus participation.
Company
is a financial services organization focused on secure banking operations, technology, and customer services.
What you will do
- Design scalable authorization models for AI agents and non-human identities across AWS and multi-cloud environments.
- Define identity patterns involving ephemeral credentials, token-based authentication, delegation, and scoped permissions throughout the workload lifecycle.
- Build automated guardrails for provisioning, privilege management, runtime access, and identity governance.
- Embed identity controls into agent frameworks, SDKs, deployment pipelines, and CI/CD platforms.
- Integrate identity systems through REST APIs and modern authentication protocols, including OAuth, OIDC, SAML, and SCIM.
- Develop secure, automated cloud delivery infrastructure using Terraform, Ansible, Packer, testing, monitoring, and immutable infrastructure practices.
Requirements
- High school diploma or GED and eight years of related post-secondary education and/or experience in information security or information technology.
- Experience with IAM, identity governance automation, DevSecOps, or hands-on security engineering.
- Proficiency in Python; experience with Java or PowerShell is also relevant.
- Hands-on experience with AWS IAM, Azure/Entra ID, SailPoint, and cloud infrastructure.
- Experience with REST APIs, OAuth, OIDC, SAML, SCIM, CI/CD pipelines, and infrastructure as code.
- Must currently be authorized to work full-time in the United States; visa sponsorship is not available.
Nice to have
- Four years of relevant DevSecOps experience.
- AWS DevOps or Azure DevOps certification.
- Experience with OpenShift, Azure Kubernetes Service, HashiCorp Vault, chaos engineering, and blue/green or canary deployments.
- Familiarity with AI/ML systems, agentic architectures, and their security risks.
Culture & Benefits
- Home-based work with potential onsite attendance for meetings and events.
- Paid vacation and sick time.
- 401(k) with company match, medical, dental, and vision benefits.
- Disability, life insurance, health savings account, and flexible spending account.
- Parental leave, employee assistance, and associate volunteer programs.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →