More jobs:
Job Description & How to Apply Below
This job is with S&P Global, an inclusive employer and a member of my Gwork – the largest global platform for the LGBTQ+ business community. Please do not contact the recruiter directly.
About the Role:
Grade Level (for internal use):
10 S&P Global Corporate
About the Role:
Senior Identity Security Engineer (Identity Access Management)
The Team: Our Identity Security Engineering team is at the forefront of protecting S&P Global digital infrastructure through innovative identity verification and access management solutions. We operate in a collaborative, fast-paced environment where technical excellence meets strategic security thinking, working closely with cross-functional teams to implement cutting-edge authentication technologies. The team values continuous learning, proactive problem-solving, and building scalable security solutions that protect our global workforce and contractor ecosystem.
Responsibilities and Impact:
Design and implement automated discovery mechanisms for non-human identities including service accounts, API tokens, cloud IAM roles, automation identities, and AI agents across hybrid and multi-cloud environments.
Develop and maintain Python and Power Shell scripts to:
Discover NHIDs from servers, cloud platforms, and applications
Parse configuration files, logs, and APIs to identify embedded or hard-coded credentials
Automate NHID hygiene tasks (ownership validation, metadata enrichment, reporting)
Build automation workflows to support NHID onboarding, lifecycle updates, reviews, and decommissioning by integrating IAM, PAM, cloud IAM, and ITSM systems.
Support governance of NHIDs by:
Ensuring ownership and lifecycle state are captured correctly
Assisting with access reviews and attestations for non-human identities
Identifying orphaned, dormant, or over-privileged NHIDs and driving remediation
Work closely with application and Dev Ops teams to analyse authentication flows and help refactor applications toward modern, secure, password-less NHID patterns (e.g., OAuth client credentials, managed identities, short-lived tokens).
Assist in integrating NHID controls with secrets management and PAM platforms, validating that credentials are properly vaulted, rotated, or replaced with cloud-native identity mechanisms where feasible.
Support governance of NHIDs used in CI/CD pipelines, automation frameworks, and infrastructure-as-code, ensuring pipelines follow approved identity and secrets patterns.
Provide NHID context and enrichment to security monitoring and incident response workflows, assisting in investigations involving service account misuse, abnormal automation behaviour, or credential compromise.
Apply basic ML/AI concepts (pattern recognition, baselining, anomaly indicators) to help analyse NHID behaviour trends and support detection of misuse or drift.
Maintain awareness of current and emerging trends in Agentic AI frameworks, including:
Autonomous agents
Tool-using AI workflows
Token-based agent execution
Model context access patterns
Support onboarding and governance of AI agents as non-human identities, ensuring agent ownership, access scope, and lifecycle expectations are defined and documented.
Collaborate with cloud, platform, and security teams to ensure NHID automation aligns with Zero Trust principles and enterprise security standards.
Produce and maintain technical documentation, runbooks, and onboarding guides related to NHID discovery, automation, and lifecycle processes.
Assist with audit and compliance activities by generating NHID evidence, reports, and traceability across integrated systems.
Continuously improve NHID processes by identifying automation opportunities, reducing manual effort, and improving accuracy and coverage of NHID controls.
What We're Looking For:
Basic
Required Qualifications:
5+ years' experience in IAM, Security Engineering, Cloud Security, or Platform Engineering
Strong hands-on experience with Python and Power Shell
Proven experience building automation workflows using scripts, APIs, or orchestration tools
Understanding of non-human identities (service accounts, API tokens, cloud roles
Experience with cloud IAM (AWS IAM, Azure/Entra, GCP - any two preferred)
Fam…
Position Requirements
10+ Years
work experience
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×