×
Register Here to Apply for Jobs or Post Jobs. X

Principal IAM Engineer

Job in San Francisco, San Francisco County, California, 94102, USA
Listing for: LendingClub
Full Time position
Listed on 2026-09-04
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Job Description & How to Apply Below

Principal Identity Security Engineer

Happen Bank (formerly Lending Club) is built around a simple purpose: to clear the way to help people turn intention into action, and action into financial progress. That means offering focused products, a frictionless mobile-first experience, and clear terms with no gotchas. Respect and fairness is part of our DNA, and that ideal shapes how we work, how we treat each other, and how we invest in our employees and our community.

Join us in using data, bold thinking, and a commitment to innovation to help clear the way for millions of Americans to achieve more.

About the Role

The Principal Identity Security Engineer will lead the design and evolution of Happen Bank's enterprise identity security capabilities, helping ensure secure, scalable, and compliant access for employees, contractors, applications, cloud platforms, and non-human identities. This role will set technical direction, drive complex cross-functional initiatives, establish engineering standards, champion the responsible adoption of AI across identity engineering, and continuously improve how identity services are designed, governed, and operated across the bank.

What

You'll Do
  • Set the technical direction, architecture, and engineering standards for Happen Bank's identity security ecosystem across identity governance, authentication, authorization, directory services, privileged access, and non-human identity, establishing reference architectures and reusable patterns that improve security, reliability, and scalability
  • Design and deliver scalable identity solutions across SailPoint, Okta, Active Directory, AWS, Terraform, and Git Hub, staying hands-on in architecture, automation, integrations, and troubleshooting when needed
  • Own the design and operation of privileged access management on Delinea (Thycotic) Secret Server, including vaulting, secret rotation, discovery, session controls, and privileged account lifecycle across the enterprise
  • Build automation, APIs, and Infrastructure-as-Code — and establish AI-assisted engineering workflows — that improve provisioning, access governance, lifecycle management, and engineering quality while maintaining appropriate security, governance, and regulatory controls
  • Define and mature non-human identity (NHI) capabilities, including service accounts, workload identities, machine identities, secrets integrations, ownership, lifecycle governance, and access controls
  • Lead complex identity initiatives from strategy through implementation, partnering with Security, Infrastructure, Risk and Internal Audit to support examinations, control design, remediation, and sustainable resolution of identity-related findings
  • Evaluate emerging identity security capabilities — including phishing-resistant authentication, Zero Trust, and identity threat detection and response — and set standards for the responsible adoption of AI across identity engineering
  • Raise the technical bar of the identity function through mentorship, design reviews, vendor evaluations, and proof-of-concept initiatives
About You
  • 10+ years of experience in identity and access management (IAM), Information Security or Security Engineering; bachelor's degree in a related field; or equivalent work experience
  • Deep expertise in identity security principles, including identity lifecycle management, identity governance and administration, authentication, authorization, access certification, privileged access, and non-human identity
  • Strong hands-on experience with SailPoint or another enterprise IGA platform, Okta, Active Directory, AWS identity services, Terraform, Git Hub, and identity automation
  • Hands-on production experience with enterprise privileged access management, ideally Delinea (Thycotic) Secret Server — including vaulting, rotation, discovery, and privileged account lifecycle
  • Proven experience designing enterprise-scale identity architectures and leading complex technical initiatives through ambiguity, competing priorities, and cross-functional dependencies
  • Experience building automation through scripting, Infrastructure-as-Code, AI-assisted development practices, and sound software engineering principles
  • Experience…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary