Wells Fargo

Principal Engineer - IAM/PAM

Wells Fargo
Apply
1 day ago
Columbus, OH, USA +3 moreStaff+

Base Salary

$159k - $254k/yr

Responsibilities

  • Serve as the principal technical architect for enterprise Privileged Access Management strategy, architecture, engineering standards, and roadmap execution.
  • Lead design and modernization of privileged access services, including just-in-time access, credential protection, privileged session management, and account lifecycle automation.
  • Establish architecture patterns and engineering standards for privileged credentials, service accounts, secrets, application authentication, sessions, and non-human identities.
  • Drive integrations across CyberArk, HashiCorp Vault, Microsoft Entra ID, ServiceNow, Saviynt, Sphereboard, cloud platforms, and enterprise identity services.
  • Provide architectural oversight for PAM transformation, vault modernization, privileged session expansion, non-human identity governance, and identity hygiene programs.
  • Advise executive leadership and influence security architecture, risk-reduction priorities, investment initiatives, and cross-functional implementation.
  • Use AI-assisted development and analysis tools for design, coding, testing, analysis, and troubleshooting while accounting for security, privacy, compliance, ethical, and operational risks.

Requirements

  • 7+ years of engineering experience or equivalent demonstrated through work experience, training, military experience, or education.
  • 7+ years of information security, identity and access management, infrastructure security, or engineering experience.
  • 7+ years designing and implementing enterprise Privileged Access Management solutions.
  • Deep expertise with CyberArk Privileged Access Security, including Enterprise Password Vault, Privileged Session Manager, Central Policy Manager, Credential Providers, AIM, CCP, privileged access and session architectures, and Privileged Threat Analytics.
  • Experience designing credential vaulting, password rotation, application secrets management, and privileged session monitoring solutions.
  • Experience with non-human identity governance, service account management, secrets management, and credential lifecycle processes.
  • Experience developing enterprise security architectures, reference architectures, standards, and engineering patterns.
  • Experience influencing senior leaders, architects, engineering teams, and cross-functional stakeholders.
  • Preferred experience with HashiCorp Vault, cloud-native secrets management, Microsoft Entra ID, Azure, AWS, Google Cloud, Saviynt or SailPoint, ServiceNow, CMDB, SIEM, DevOps platforms, CI/CD pipelines, and enterprise automation services.
  • Strong understanding of NIST, Zero Trust, cybersecurity control frameworks, audit and compliance requirements, and PAM operating models for large regulated enterprises.
  • Experience creating executive-level architecture materials, control narratives, technical roadmaps, and risk-based recommendations.
  • Ability to work on-site at one of the listed locations.

Benefits

  • Hybrid work schedule with on-site work at one of the listed locations.
  • Health benefits, 401(k) plan, paid time off, disability benefits, and life, critical illness, and accident insurance.
  • Parental leave and critical caregiving leave.
  • Discounts and savings, commuter benefits, tuition reimbursement, dependent-child scholarships, and adoption reimbursement.

Tech Stack

AWSAzureGoogle Cloud

Categories

Wells Fargo

About Wells Fargo

10,000+ employees

Wells Fargo & Company is a U.S.-based financial services firm providing consumer and commercial banking, mortgages, credit, and wealth/investment services to individuals, small businesses, and enterprises. It earns revenue from interest income and fees across retail banking, payments, lending, and capital markets. Founded in 1852 and headquartered in San Francisco, it is publicly traded on the NYSE (WFC) and operates nationally with offices in multiple countries.

Contact me