×
Register Here to Apply for Jobs or Post Jobs. X

Principal Engineer - IAM​/PAM

Job in Irving, Dallas County, Texas, 75014, USA
Listing for: Wells Fargo
Full Time position
Listed on 2026-07-23
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Job Description & How to Apply Below

Principal Engineer, Cybersecurity

Wells Fargo is seeking a Principal Engineer for our Cybersecurity organization. In this role, you will:

  • Serve as the principal technical architect for Privileged Access Management strategy, architecture, engineering standards, and roadmap execution across human and non-human identities.
  • Provide enterprise-wide leadership for Cyber Ark Enterprise Password Vault, Privileged Session Manager, Privileged Session Monitoring, Central Policy Manager, Credential Providers, AIM, CCP, Secure Infrastructure Access, and privileged account governance capabilities.
  • Lead the design and modernization of privileged access services with a focus on eliminating standing privilege, implementing just-in-time access models, reducing credential exposure, and increasing automation of privileged account lifecycle management.
  • Establish enterprise architecture patterns for privileged credentials, service accounts, shared administrative accounts, secrets management, privileged sessions, application authentication, and non-human identities.
  • Drive strategic integration across Cyber Ark, Hashi Corp Vault, Microsoft Entra , Service Now, Saviynt, Sphere board, cloud platforms, and enterprise identity services.
  • Define target-state architecture and engineering standards for credential onboarding, password rotation, session brokering, application secrets management, credential discovery, and privileged access automation.
  • Partner with Cybersecurity, Infrastructure Engineering, Cloud Engineering, Application Development, Identity Management, and Risk organizations to implement scalable privileged access controls across the enterprise.
  • Provide architectural oversight for large-scale PAM transformation initiatives including platform consolidation, vault modernization, privileged session expansion, non-human identity governance, and identity hygiene programs.
  • Act as the senior technical advisor to executive leadership and influence long-term PAM strategy, security architecture decisions, risk reduction priorities, and investment initiatives.
  • Strategically engage with all levels of professionals and managers across the enterprise and serve as an expert advisor to leadership.
  • Demonstrate proficiency in using AI-assisted development and analysis tools (e.g., Git Hub Copilot and approved code-centric agents).
  • Leverage AI to accelerate system design, coding, testing, analysis, and troubleshooting.
  • Apply strong technical judgment when validating and integrating AI-assisted outputs into solutions.
  • Understand and account for model limitations, security risks, and operational considerations.
  • Apply AI responsibly in development and production environments.
  • Ensure AI usage aligns with security, compliance, privacy, and ethical standards.

Required Qualifications:

  • 7+ years of Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education.
  • 7+ years of information security, identity and access management, infrastructure security, or engineering experience.
  • 7+ years designing and implementing enterprise Privileged Access Management solutions.
  • Deep expertise with Cyber Ark Privileged Access Security, including:
    • Enterprise Password Vault
    • Privileged Session Manager
    • Central Policy Manager
    • Credential Providers
    • AIM
    • CCP
    • Privileged access and session architectures
    • Privileged Threat Analytics
  • Experience designing credential vaulting, password rotation, application secrets management, and privileged session monitoring solutions.
  • Experience with non-human identity governance, service account management, secrets management, and credential lifecycle processes.
  • Experience developing enterprise security architecture, reference architectures, standards, and engineering patterns.
  • Experience influencing senior leaders, architects, engineering teams, and cross-functional stakeholders.

Desired

Qualifications:

  • Experience with Hashi Corp Vault, cloud-native secrets management, and enterprise secrets modernization programs.
  • Experience with Microsoft Entra , Azure, AWS, Google Cloud, and cloud privileged access models.
  • Experience implementing just-in-time access, Zero Trust, privileged session brokering, and privileged access governance models.
  • Experience with identity governance platforms such as Saviynt or SailPoint.
  • Experience integrating PAM solutions with Service Now, CMDB, SIEM, Dev Ops platforms, CI/CD pipelines, and enterprise automation services.
  • Strong understanding of NIST, Zero Trust, cybersecurity control frameworks, and audit/compliance requirements.
  • Experience designing PAM operating models for large, regulated enterprise environments.
  • Experience creating executive-level architecture materials, control narratives, technical roadmaps, and risk-based recommendations.

Job Expectations:

  • Ability to work on-site at one of the listed locations.
  • This position offers a hybrid work schedule.
  • This position is not eligible for Visa sponsorship.

Pay Range

Reflected is the base pay range offered for this…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary