Principal Security Engineer - Temporary
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
Responsibilities
- Strategy and Design
- Continuous Adaptive Trust: Transition the enterprise from static, role-based access to a Risk-Based Authorization model that evaluates signals (device posture, behavior, location) in real-time.
- Enhance the enterprise Identity strategy, roadmap, and architecture in alignment with business goals and security policies.
- Design and architect comprehensive Identity solutions, including identity lifecycle management, non-human lifecycle management, authentication (MFA, SSO, passwordless), authorization, access governance, and Privileged Access Management (PAM).
- Evaluate and select appropriate Identity technologies and platforms.
- Create and maintain detailed architectural documentation for Identity solutions.
- Implementation and Integration
- Lead the implementation and integration of Identity solutions across various on-premises and cloud environments (e.g., Azure AD, AWS, GCP, Okta, Entra).
- Integrate Identity systems with enterprise applications, platforms, and services using standard protocols (SAML, OAuth, OpenID Connect, SCIM).
- Develop and configure identity provisioning and de-provisioning workflows.
- Partner with the SOC to build ITDR capabilities that detect and automatically neutralize identity-based attacks, such as session hijacking, token theft, and MFA fatigue.
- Collaboration and Leadership
- Act as a "Security Partner" for engineering teams to foster secure development practices.
- Drive successful adoption by collaborating with diverse stakeholders (business units, technology teams, application developers) and translating complex cryptographic and identity concepts into clear business value for product owners and executive leadership.
- Provide technical leadership and guidance, championing and delivering self-service Identity APIs and SDKs to enable developers to build secure products with minimal friction (Developer Experience - DevEx).
- Provide technical leadership, mentorship and guidance to Identity Engineers and other team members.
Requirements
- Education
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
- A Master's degree is a plus.
- Experience & Mindset
- 8+ years in Cybersecurity/Engineering, with a proven track record of moving legacy organizations towards a Zero Trust architecture.
- Fintech/High-Growth Experience: Experience working in regulated environments where speed and compliance must coexist.
- 5+ years focused on identity and access management.
- Proven experience in designing and implementing enterprise-scale Identity solutions.
- Drive security automation and "Builder" Mentality by architecting and implementing automation-first solutions (e.g., scripts, APIs, Infrastructure as Code) to eliminate reliance on manual governance processes and ensure security policy is enforced at scale and embedded into developer workflows.
- Hands-on experience with leading IAM platforms and technologies, such as:
- Identity Federation: Azure AD/Entra, Okta, Ping Identity, ADFS
- IGA (Identity Governance and Administration): SailPoint, Saviynt, Oracle Identity Manager
- PAM (Privileged Access Management): CyberArk, Delinea, BeyondTrust
- Directory Services: Active Directory, Azure Active Directory, LDAP
- Technical Skills:
- Deep knowledge of IAM principles, best practices, and security models.
- Proficiency in scripting languages (e.g., PowerShell, Python) for automation and integrat
Benefits
Additional Information
We are seeking a visionary Principal Security Engineer - Temporary to architect the next generation of Identity at Achieve. In the evolving Fintech landscape, Identity is no longer just a perimeter-it is our primary security fabric. You will move us beyond static governance into a world of Continuous Adaptive Trust, where identity is dynamic, risk-aware, and invisible to the end-user. As a senior technical leader within the Information Security Engineering team, you will design and build scalable systems that secure our most critical assets: our people, our customers, and our sprawling ecosystem of non-human workloads. You aren't just managing tools; you are engineering a trust platform that enables a fast-moving, cloud-native financial enterprise. This is a temporary assignment that we expect will go on for approximately one year.
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at Achieve1? Share your experience