Sr Security Engineer - IAM/Cloud Security
Listed on 2026-09-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Job Summary
The Senior Security Engineer provides senior-level technical expertise across Identity and Access Management (IAM) and cloud security, with advanced expertise in at least one domain and strong working knowledge of the other. The role designs, implements, automates, and continuously improves identity and cloud security controls; develops AI-enabled security tooling, including agentic workflows; contributes to complex engineering initiatives; and collaborates with architecture, platform, application, operations, risk, and compliance teams.
The Engineer applies strong working knowledge of security automation, Dev Sec Ops , artificial intelligence and machine learning, security analytics, threat detection and response, control validation, data protection, and responsible human oversight.
Core Specializations
Cloud Security - Provides senior-level engineering for secure cloud architecture and operations across one or more major cloud platforms. Designs preventive and detective controls for identity, workload, network, data, secrets, logging, posture management, and Dev Sec Ops ; automates policy enforcement; and uses AI-assisted analytics to identify misconfigurations, anomalous activity, attack paths, and control gaps.
Identity and Access Management (IAM) - Provides senior-level engineering for workforce, privileged, machine, and cloud identities. Designs and improves identity lifecycle management, authentication, authorization, federation, access governance, privileged access, and Zero Trust controls. Applies AI-assisted analytics to improve entitlement discovery, role engineering, access reviews, anomaly detection, and risk-based access decisions.
Primary Activities and Responsibilities
- Contribute to the design, implementation, integration, and lifecycle management of enterprise IAM or cloud security capabilities.
- Translate cybersecurity, architecture, operational risk, and compliance requirements into scalable security controls, standards, architectures, engineering patterns, and implementation road maps.
- Engineer automation for provisioning, policy enforcement, evidence collection, configuration validation, remediation, and operational reporting.
- Develop AI-enabled cybersecurity tooling and agentic security workflows for identity and cloud security use cases, including entitlement analysis, control configuration validation, security evidence collection, investigation, remediation recommendations, and explicitly approved security actions. Integrate models, security tools, APIs, identity context, cloud telemetry, and security policies while enforcing least privilege, bounded autonomy, human approval, audit logging, security testing, continuous monitoring, and safe-failure behavior.
- Perform security engineering and assurance for AI-enabled cybersecurity capabilities and agentic security workflows by evaluating task effectiveness, accuracy, resilience, privacy, explainability, misuse risk, data quality, prompt injection, tool misuse, excessive agency, and operational impact. Implement human review, access control, security validation, auditability, monitoring, rollback, and containment safeguards.
- Participate in security architecture reviews, threat modeling, security capability evaluations, security-focused proofs of concept, change controls, and production implementation of cybersecurity controls.
- Investigate complex access, authentication, cloud, and AI-related security events; identify root causes and drive durable remediation.
- Define metrics and control-health indicators that demonstrate risk reduction, control effectiveness, reliability, and user experience.
- Share technical knowledge with colleagues and collaborate with leaders, vendors, auditors, and industry partners as appropriate.
- Participate in on-call support and incident response when required.
Cloud Security Responsibilities
- Design secure landing zones, identity boundaries, network controls, workload protections, key and secrets management, logging, and monitoring across major cloud platforms.
- Implement cloud security posture management, workload protection, infrastructure-as-code scanning, policy-as-code, and automated remediation.
- Integrate cloud security controls into CI/CD pipelines and collaborate with cloud, platform, Dev Ops, application development, data, and enterprise architecture teams to embed, validate, and operate cybersecurity requirements.
- Apply AI-assisted analytics to cloud telemetry and exposure data to identify anomalous behavior, attack paths, misconfigurations, excessive permissions, and emerging threats.
- Secure AI-enabled cybersecurity applications, agentic security workflows, and supporting cloud services, including workload and non-human identities, tool and API authorization, security data and model access, secrets, logging, monitoring, deployment pipelines, and containment controls.
Identity and Access Management (IAM) Responsibilities
- Design and improve identity governance, identity lifecycle, SSO, federation, MFA, passwordless…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).