More jobs:
Job Description & How to Apply Below
About the Role:
Grade Level (for internal use):
11 The Team
The selected candidate will be part of the Identity and Access Management (IAM) leadership team, providing solutions architecture and thought leadership in defining our Non-Human Identity (NHI) strategy. This role will focus on building the security fabric that governs Machine-to-Machine (M2M) communications, ensuring seamless and secure authentication across our hybrid cloud and SaaS estate. You will be the face of our NHI initiative across all divisions, working towards a common framework for Secrets Management and Workload Identity , ensuring that "Zero Trust" principles are applied to bots and services just as strictly as they are to people.
The Impact
The candidate will drive the transformation of our security posture by eliminating static credentials and enforcing least-privilege for machine identities . In this role, responsibilities include architecting and governing solutions for Secrets Management (e.g., Vault, Cloud Native Secrets) . You will ensure that critical platforms-including AWS, Azure, Snowflake, Databricks, and Git Hub-adhere to S&P Global standards. By moving the enterprise toward dynamic, short-lived credentials , you will directly reduce our attack surface, automated governance, and ensure that our digital supply chain remains secure and compliant.
What's in it for you
As a Lead Engineer within the IAM team, you will have the unique opportunity to pioneer the "Identity of Things" for a global enterprise. This role is a perfect fit if you are passionate about solving complex challenges. You will define the future of how machines authenticate, working with cutting-edge technologies like SPIFFE/SPIRE and OIDC Federation . You will ensure that our non-human identity fabric is designed to the highest standards, enabling business agility while protecting our most critical data assets across the extended enterprise.
Position Summary:
We are seeking a Lead Identity Security Engineer to architect and govern the Non-human Identity fabric for our machine-to-machine (M2M) ecosystem. In this role, you will define how workloads, containers, bots, and services authenticate across our enterprise ecosystem
-spanning hybrid cloud infrastructure , SaaS estate and other Critical enterprise products.. You will move the enterprise away from static long-lived credentials (secrets/keys) toward short-lived, dynamic identity models.
You will work across various product teams and multiple enterprise divisions to ensure adherence to NHI standards, while architecting a centralized platform that manages the lifecycle of Service Accounts, API Keys, and Cloud Roles, ensuring 'Zero Trust' principles are applied to machines just as strictly as humans.
Key Responsibilities &
Qualifications:
Experience:
8+ years of professional experience in Identity & Access Management (IAM) products.
NHI Strategy & Architecture: Define and drive the strategic roadmap for Non-Human Identities (NHI), architecting solutions that secure machine-to-machine (M2M) communication across our Extended Enterprise Ecosystem spanning Hybrid Cloud (AWS, Azure) and critical SaaS platforms.
Protocol Proficiency: Strong understanding of modern authentication protocols specifically for machines, including OAuth 2.0 (Client Credentials Flow) , OIDC , mTLS , and JWT structure.
Secrets Management Expertise Good knowledge of Hashi Corp Vault , Cyber Ark or cloud-native equivalents (AWS Secrets Manager, Azure Key Vault).
Cloud & SaaS Fluency: Proven experience securing identities in complex, multi-platform environments involving AWS, Azure, and high-value SaaS data platforms .
Secrets Management Modernization: Lead the enterprise-wide transition from static, long-lived credentials to dynamic, ephemeral secrets . Architect and manage the rollout of enterprise secrets management platforms to eliminate "secret sprawl.
Discovery & Governance: Lead the evaluation and onboarding of NHI…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×