Principal Security Access Engineer

HealthEquity Inc.
United States
6 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Cloud Computing Security Identity and Access Management Key Management Windows PowerShell Azure Active Directory Zero Trust Network Access Scripting Virtual Agents SailPoint Restful APIs

Job description

Experteer Overview In this remote role at HealthEquity you will lead IAM/PAM strategy and implementation to govern human, non-human, and AI agent identities. You will act as IAM subject-matter expert, shaping governance, lifecycle, and risk-based access across platforms. You will manage key IAM tools and mentor engineers while influencing leadership on strategic initiatives. You’ll drive secure, scalable identity solutions that align with the company mission and industry best practices. Compensation / Benefits * Implement and manage IAM/PAM solutions using SailPoint ISC, BeyondTrust, Microsoft Entra, Silverfort, and other IAM tools * Develop IAM strategies and governance for AI agents, NHIs, and machine-to-machine access * Serve as SME for IAM technologies and evolving agentic identity practices * Design and manage Conditional Access policies with Microsoft Entra to enforce risk-based access * Collaborate with IAM Governance to apply standards and procedures across systems * Ensure integration of IAM with apps, secrets management, and CI/CD pipelines * Establish governance for AI agents and service accounts including credential lifecycle * Lead timely delivery of IAM/PAM initiatives in line with strategic plans * Provide indirect leadership and mentorship to IAM engineers and conduct training on AI/agentic identity risk * Create and maintain documentation; stay current on AI and non-human identity security trends Tasks * 5+ years in IAM with at least 3 years in a senior/principal role * Hands-on experience with SailPoint Identity Security Cloud (ISC) and NERM preferred * Strong PAM experience with BeyondTrust * Proficiency in Microsoft Entra (Azure AD) and Conditional Access * Zero Trust technologies with Silverfort * Knowledge of secrets management and vaulting platforms * Familiarity with authentication/authorization for AI agents and NHIs * Scripting/automation skills (REST APIs, PowerShell) * Excellent analytical and communication skills * Relevant certifications such as CISSP, CISM desirable Key requirements * remote work * Trailhead onboarding program * paid travel and onboarding * medical, dental, and vision benefits * HSAs and FSA options * 401(k) match

Requirements

strategic of IAM with apps, secrets management, and CI/CD pipelines * Establish governance for AI agents and service accounts including credential lifecycle * Lead timely delivery of IAM/PAM initiatives in line with strategic plans * Provide indirect leadership and mentorship to IAM engineers and conduct training on AI/agentic identity risk * Create and maintain documentation; stay current on AI and non-human identity security trends Tasks * 5+ years in IAM with at least 3 years in a senior/principal role * Hands-on experience with SailPoint Identity Security Cloud (ISC) and NERM preferred * Strong PAM experience with BeyondTrust * Proficiency in Microsoft Entra (Azure AD) and Conditional Access * Zero Trust technologies with Silverfort * Knowledge of secrets management and vaulting platforms * Familiarity with authentication/authorization for AI agents and NHIs * Scripting/automation skills (REST APIs, PowerShell) * Excellent analytical and communication skills * Relevant aaaaaaaaaa will such as CISSP, CISM desirable Key requirements * remote work * Trailhead onboarding program * paid travel and onboarding * medical, dental, and vision benefits * HSAs and FSA options * 401(k) match

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on us.experteer.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:59 min

The danger of adopting default REST APIs

Stefan Priebsch · WWC 2021

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

2:28 min

Mitigating excessive agency through scoped tool access

Deepu Deepu · WWC 2025

3:34 min

Approaching language models as scalable synchronous rest APIs

Patrick Koss Patrick Koss · WWC 2025

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

2:14 min

Exploring internal AI product initiatives and global engineering roles

Maria Apazoglou · Coffee With Developers

Videos

See all

Related articles

See all