American Express

Senior Cybersecurity Engineer-IAM And/ OR Cloud Security (AI Agent security)

American Express  •  Phoenix, AZ (Hybrid)  •  3 hours ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Joining Amex Tech means discovering and shaping your contribution to something big. Here, you can work alongside talented tech teams and build a unique career with the Powerful Backing of American Express. With a range of opportunities to work with the latest technologies, and a commitment to back the broader engineering community through open source, our mission is to power your success. Because Amex Tech is powered by our technology, our culture, and our colleagues.
The Technology organization enables and accelerates the company’s growth strategies, delivering global capabilities and services in support of Amex’s customers and colleagues, while maintaining 24/7 servicing and availability to ensure an uninterrupted, high-quality customer experience. Technology provides the foundation for everything we do in the company while driving differentiation through building and leveraging innovative technology and data insights.

At American Express, our mission is to deliver the world’s best customer experience every day. At the heart of this mission is our Information Security organization, enabling exceptional experiences built on a foundation of trust, service, and security. We leverage advanced technologies and data-driven insights to stay ahead of an evolving threat landscape. We foster a culture of passion, curiosity, and courage—empowering you to innovate, grow, and help shape the future of a Fortune 100 company.

Trust. Service. Security.

A Senior Cyber Security Engineer for Agentic AI IAM, and Secrets Management is responsible for securing enterprise identities, AI agents, machine identities, and secrets across hybrid environments including on-premises infrastructure and public cloud platforms.

This role leads the design, implementation, governance, and operational management of identity security capabilities that support Zero Trust principles, secure automation, and enterprise-wide access governance.

The role is accountable for translating enterprise security objectives into measurable security outcomes, operational KPIs, delivery milestones, and progressive risk reduction strategies. This includes defining security maturity targets, driving execution roadmaps, establishing measurable controls effectiveness, and continuously improving identity and secrets management posture across the organization.

The individual partners closely with infrastructure, cloud, DevOps, application, and risk teams to establish scalable identity controls, secure secrets management practices, resilient authentication and authorization architectures, and sustainable governance models that balance security, operational efficiency, and business enablement.

Vision

  • Build a modern, scalable, and resilient Agentic AI IAM and secrets management ecosystem across hybrid cloud environments.
  • Enable secure adoption of AI agents, automation platforms, and machine identities through policy-driven governance.
  • Drive Enterprise-Wide Risk Reduction Initiatives for Application Secrets Management
    • Elimination of Hardcoded Secrets
    • Centralized Enterprise Secrets Vault Adoption
    • Automated Secrets Rotation
    • Machine Identity and Workload Identity Modernization
    • CI/CD and DevSecOps Secrets Security
    • Cloud-Native Secrets Governance
    • Enterprise Secrets Discovery and Inventory
    • Secrets Access Monitoring and Behavioral Analytics
    • Zero Trust Application Authentication
    • Third-Party and Vendor Secrets Governance
    • AI Agent and Autonomous Workflow Secrets Security
  • Deliver centralized visibility, compliance, and operational excellence for identities and access management including sustained controls and metrics delivery

Functional Requirements/ Core Technical Capabilities

  • Strong experience in Agentic AI IAM architecture, identity governance, secrets management, security engineering, and enterprise IAM program delivery.
  • Strong expertise in requirement gathering, current-state assessments, gap analyses, control evaluations, and target-state Agentic AI IAM security architecture design.
  • Experience securing cloud-native and hybrid environments.
  • Knowledge of Zero Trust architecture and machine identity security.
  • Experience implementing AI/Agentic security controls and secure automation frameworks.

Platform Experience

  • Microsoft Entra ID / Okta
  • HashiCorp Vault, AWS Secrets Manager, Google cloud secrets manager
  • AWS, Azure, Google Cloud Platform
  • Kubernetes and container security platforms
  • Terraform, CI/CD, DevSecOps tooling

Operational Responsibilities

  • Conduct Agentic AI IAM requirement analyses, architecture reviews, and security gap assessments across enterprise applications, cloud platforms, AI services, and infrastructure environments.
  • Develop automation for access management and secrets lifecycle operations.
  • Develop and implement security controls for AI agents, machine identities, APIs, workloads, and autonomous workflows.
  • Monitor and remediate IAM and secrets-related risks.
  • Build dashboards, reporting, and operational metrics.

IAM and Access Governance

  • Lead enterprise Agentic AI IAM program execution across multiple workstreams.
  • Establish program milestones, sprint objectives, and delivery timelines.
  • Track program risks, issues, blockers, and remediation activities.
  • Ensure successful onboarding of applications, platforms, and cloud services into IAM controls.
  • Drive operationalization and transition to support teams.

Agentic and Machine Identity Security

  • Establish security controls for AI agents, autonomous workflows, bots, and machine identities.
  • Define policy-based authorization models for AI-driven systems.
  • Secure API, workload, and machine-to-machine authentication.
  • Monitor AI agent activities and machine identity risks.

Cloud and Hybrid Security

  • Secure IAM controls across AWS, Azure, GCP, Kubernetes, and on-prem environments.
  • Standardize identity governance across multi-cloud ecosystems.
  • Implement workload identity federation and cloud-native security controls.

Security Operations and Compliance

  • Monitor identity threats, privilege misuse, and secrets exposure.
  • Support incident response and remediation activities.
  • Ensure compliance with enterprise security standards and regulatory frameworks.
  • Produce audit evidence and governance reporting.
  • Bachelor’s degree in Cyber security, Computer Science, Information Technology, or related discipline.
  • 5+ years of experience in IAM, cloud security, or cyber security engineering.
  • Strong understanding of AI agent security, machine identities, and secure automation.
  • Experience managing hybrid cloud IAM and secrets management programs.
  • Relevant certifications preferred:
    • CISSP
    • CISM
    • CCSP

Employment eligibility to work with American Express in the United States is required as the company will not pursue visa sponsorship for these positions.

American Express

About American Express

At American Express, we know that with the right backing, people and businesses have the power to progress in incredible ways. Whether we’re supporting our customers’ financial confidence to move ahead, taking commerce to new heights, or encouraging people to explore the world, our colleagues are constantly striving to uphold our powerful backing promise to our customers and each other every day.

These beliefs have been our North Star for 170 years as our business transformed – from helping evacuate travelers during World Wars, to ensuring the safety of our customers’ funds during the Great Depression in the U.S., to creating the Shop Small® movement to help small businesses recover from the Financial Crisis, to providing aid to communities impacted by many natural disasters and so much more.

For generations, the key to our success has been the determination and resilience of our American Express colleagues. Now, as a globally integrated payments company, we work together to provide customers with access to products, insights and world-class experiences that enrich lives and build business success. Join us and let’s lead the way together.

Learn more about us at:

https://www.americanexpress.com/careers

https://www.americanexpress.com/

https://www.facebook.com/AmericanExpressUS

https://www.instagram.com/americanexpress/

https://twitter.com/americanexpress

https://www.youtube.com/user/AmericanExpress

See our community guidelines at:

https://www.americanexpress.com/en-us/company/community-guidelines/

If you have a customer service issue or question, please visit www.americanexpress.com/contactus

Industry
Finance & Insurance
Company Size
10,000+ employees
Headquarters
New York, NY
Year Founded
Unknown
Social Media