> Markdown version of [/jobs/ext/1293172-senior-security-engineer-non-human-identity](https://www.wearedevelopers.com/jobs/ext/1293172-senior-security-engineer-non-human-identity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Security Engineer - Non-Human Identity - **Company:** Edward D. Jones & Co., L.P. - **Location:** Tempe, AZ, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Bash Shell, Cloud Computing, Cloud Computing Security, Cloud Engineering, CompTIA Security+, Cyber Security, DevOps, Identity and Access Management, Python (Programming Language), Kerberos (Protocol), Key Management, Lightweight Directory Access Protocols (LDAP), Microsoft Software, OAuth, Public Key Infrastructure, Windows PowerShell, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Security Information and Event Management, Scripting, Google Cloud, Enterprise Software Applications, Cyberark, Spring Cloud, Multi-Cloud, Cloudformation, Kubernetes, Information Technology, Sentry, Bicep, Hashicorp, SailPoint, Restful APIs, Terraform, Devsecops, Microservices - **Published:** July 16, 2026 - **Apply:** https://dejobs.org/x/x/4D4CF72459EE478F82C763AB9F8A44B4/job/ ## About the Role * Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or equivalent experience. * 7+ years of hands-on experience in Identity and Access Management, Cybersecurity Engineering, Infrastructure Engineering, or Cloud Security. * 5+ years of direct experience managing non-human identities, service accounts, application identities, workload identities, or machine authentication technologies. * Strong hands-on experience administering Microsoft Entra ID, Active Directory, or similar identity platforms. * Experience implementing and supporting secrets management, credential vaulting, and privileged access solutions. * Strong scripting and automation skills using PowerShell, Python, Bash, or similar technologies. * Experience working with OAuth 2.0, OpenID Connect, SAML, Kerberos, LDAP, certificates, and PKI technologies. * Experience supporting Azure, AWS, Google Cloud, or multi-cloud environments. * Ability to analyze logs, troubleshoot authentication failures, and resolve complex identity-related issues. * Experience working within enterprise change management, incident management, and operational support processes. * Strong verbal and written communication skills with the ability to collaborate across technical teams. What Could Set You Apart: * Hands-on experience with CyberArk, HashiCorp Vault, Delinea, BeyondTrust, SailPoint, Microsoft Entra Workload Identities, or similar platforms. * Experience managing certificate lifecycles and public/private key infrastructure. * Experience securing Kubernetes, containers, microservices, and cloud-native applications. * Familiarity with Infrastructure as Code technologies such as Terraform, Bicep, ARM, or CloudFormation. * Experience with SIEM platforms and identity security monitoring. * CISSP, CISM, Security+, Microsoft Identity and Access Administrator, CyberArk Defender/Sentry, or related certifications. ## Description We are seeking a highly technical, hands-on Senior Non-Human Identity Engineer to lead the engineering, automation, onboarding, remediation, and operational management of non-human identities across the enterprise. This role is focused on the implementation and day-to-day engineering of machine identities, service accounts, workload identities, API credentials, certificates, secrets, and privileged application accounts supporting cloud, on-premises, and hybrid environments. This is not an architecture-only or governance-only position. The successful candidate will be expected to personally build solutions, write automation, troubleshoot authentication issues, onboard applications, integrate platforms, and drive remediation efforts. The engineer will work closely with application teams, DevOps, cloud engineering, cybersecurity, and infrastructure teams to ensure non-human identities are properly secured, monitored, and managed throughout their lifecycle. The ideal candidate combines deep IAM expertise with strong scripting, automation, cloud, and troubleshooting skills, and is comfortable operating in a fast-paced enterprise environment where hands-on execution is critical. What You'll Do: * Engineer, implement, and support enterprise non-human identity solutions across cloud, on-premises, and hybrid environments. * Develop and maintain automated provisioning, credential rotation, secret management, certificate lifecycle management, and deprovisioning processes. * Perform onboarding and migration of service accounts, managed identities, workload identities, application accounts, and machine credentials into enterprise identity management platforms. * Configure, deploy, and support privileged access controls for non-human identities using PAM and secrets management technologies. * Work directly with development, application, and infrastructure teams to eliminate hardcoded credentials and replace legacy authentication methods with modern identity solutions. * Design, build, and maintain automation using PowerShell, Python, REST APIs, Terraform, and other scripting or orchestration technologies. * Integrate identity controls into CI/CD pipelines and DevSecOps workflows. * Troubleshoot and resolve authentication, authorization, federation, certificate, token, and credential-related issues across enterprise applications. * Support large-scale remediation initiatives involving dormant service accounts, excessive permissions, unmanaged secrets, and identity-related security vulnerabilities. * Configure and administer identity platforms, including directory services, cloud identity providers, PAM solutions, certificate authorities, and secrets vaults. * Monitor non-human identity activity and investigate suspicious authentication events, credential misuse, or policy violations. * Conduct access reviews and entitlement analysis to ensure least-privilege principles are maintained. * Create operational runbooks, implementation guides, engineering standards, and technical documentation. * Partner with Security Operations and Incident Response teams during investigations involving machine identities and application credentials. * Participate in after-hours support activities, major incident response, and maintenance activities when required. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [From Doubt to Confidence: How Sentry Uses Verdaccio to Bulletproof SDK Releases](https://www.wearedevelopers.com/videos/739-from-doubt-to-confidence-how-sentry-uses-verdaccio-to-bulletproof-sdk-releases) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Debugging in the Dark](https://www.wearedevelopers.com/videos/1658-debugging-in-the-dark) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [The top 200 passwords of 2024 can be cracked in less than a second](https://www.wearedevelopers.com/magazine/502-the-top-200-passwords-of-2024-can-be-cracked-in-less-than-a-second) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers)