Lead Associate Principal, Security Engineering
Listed on 2026-03-01
-
IT/Tech
Cybersecurity, Systems Engineer
What You'll Do
Join our dynamic Security Engineering team as a Lead Associate Principal and make a significant impact on our organization's cybersecurity posture. In this role, you'll manage privileged access systems that protect our most critical assets, implement AI-based security capabilities, and help shape our security architecture. This position offers excellent growth opportunities as you'll work with best-in-class technologies while collaborating with cross-functional teams to solve complex security challenges.
If you're passionate about cybersecurity and seeking a role where your expertise directly strengthens organizational resilience, this is an ideal next step for your career.
To perform this job successfully, an individual must be able to perform each primary duty satisfactorily.
- Provide 24x7 operational support for the suite of privileged management solutions (e.g., Cyber Ark, Hashi, PKI), including implementing hot fixes, resolving bugs, troubleshooting issues, performing break-fixes, managing secrets lifecycle, and delivering end-user support.
- Maintain robust operational integrity of privileged access management infrastructure throughout its lifecycle (e.g., patching, version control, system upgrades, alignment with OCC/Security standards, etc.). Provide organizational subject matter expert on secrets management and privileged access management architecture, establishing and enforcing security as code principles throughout the environment.
- Develop and implement system enhancements to improve platform user experience and automated integrations, while designing long-term solutions to address operational issues through innovative technologies including artificial intelligence for faster detection and remediation of functional and technical problems.
- None
The requirements listed are representative of the knowledge, skill, and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the primary functions.
- Advanced knowledge of application authentication and authorization systems (i.e., Active Directory, oAuth 2.0, OIDC, AWS IAM, App Role, k8s, LDAPS, Kerberos, Certificate)
- Working knowledge of the cloud ecosystem and CI/CD deployments with Terraform, Ansible, and Jenkins pipelines.
- Working knowledge of security architecture design and principles including confidentiality, integrity and availability.
- Expertise in providing operational and engineering support for one or more of the following:
Cyber Ark, Hashi Corp Vault, Active Directory Certificate Services (ADCS), HSMs, and Public Key Infrastructure (PKI). - Expertise in scripting languages and developing in one or more of the following languages GoLang, Bash, Python, Power Shell, Ansible, and/or Terraform.
- Expert level knowledge of privileged access management methodologies and techniques for on-prem and Cloud implementation.
- Experience in one or more of the following disciplines: security operations, development, engineering, or architecture
- Experience supporting privileged access management and access controls programs.
- Professional or personal experience using AI coding agents such as OpenAI Codex, Claude Code, or Gemini CLI.
- NA
The Options Clearing Corporation (OCC) is the world's largest equity derivatives clearing organization. Founded in 1973, OCC is dedicated to promoting stability and market integrity by delivering clearing and settlement services for options, futures and securities lending transactions. As a Systemically Important Financial Market Utility (SIFMU), OCC operates under the jurisdiction of the U.S. Securities and Exchange Commission (SEC), the U.S. Commodity Futures Trading Commission (CFTC), and the Board of Governors of the Federal Reserve System.
OCC has more than 100 clearing members and provides central counter party (CCP) clearing and settlement services to 19 exchanges and trading platforms. More information about OCC is available at
A highly collaborative and supportive environment developed to encourage…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).