Information Security Engineer III

Capital Group
Irvine, CA, United States
7 days ago
Apply on www.wayup.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$141,648.0 - $226,637.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Artificial Intelligence Amazon Web Services User Authentication Microsoft Azure Command-Line Interface Cyber Security Databases Linux Identity and Access Management Python (Programming Language)
+16 more
Kerberos (Protocol) Microsoft Software OAuth OpenID Windows PowerShell Role-Based Access Control Ansible Security Assertion Markup Language (SAML) Single Sign-On Software Vulnerability Management Cloud Platform System Cyberark Technical Debt Kubernetes Terraform Servicenow

Job description

“I can be myself at work.”, As an Information Security Engineer III, you will help secure and modernize Capital Group’s Privileged Access Management (PAM) capabilities within our Identity and Access Management (IAM) organization. You will design, implement, and support solutions that protect privileged access across on-premises and cloud environments while helping advance our security modernization strategy. You will play a key role in several high-priority initiatives, including PAM platform modernization, StrongDM adoption, Privileged Access Workstation (PAW) enhancements, ServiceNow integration, Azure support. Your work will improve operational resiliency, reduce risk, and strengthen the security of critical systems across the enterprise. You thrive in a direct engineering environment and enjoy solving complex security challenges, partnering with cross-functional teams, and delivering scalable solutions that balance security, efficiency, and user experience.

Requirements

You are more than a job title. We want you to feel comfortable doing great work and bringing your best, authentic self to everything you do. We value your talents, traditions, and uniqueness-and we’re committed to fostering a strong sense of belonging in a respectful workplace., + You have 5+ years of experience in Information Security, Identity and Access Management (IAM), Privileged Access Management (PAM), or a related field.

  • You have firsthand experience with PAM technologies such as CyberArk, StrongDM or comparable platforms.
  • You possess a strong understanding of privileged access controls, identity management, authentication, authorization, and security best practices.
  • You have experience engineering privileged access across on-premises and cloud environments, including AWS, Azure, Kubernetes/EKS, Windows and Linux hosts, databases, command-line access, policy-driven authorization, and monitored sessions.
  • You have experience with Active Directory, enterprise identity services, and authentication and authorization technologies such as SSO, SAML, OIDC, OAuth 2.0, SCIM 2.0, RBAC, ABAC, certificate-based authentication, Kerberos, and just-in-time provisioning.
  • You can troubleshoot complex access and authentication issues and provide Tier 3 support, monitoring, incident response, root-cause analysis, vulnerability remediation, and resilient production operations for critical PAM services.
  • You communicate effectively across teams, translate complex technical concepts for varied audiences, take ownership of outcomes, and continually improve security and operational efficiency.
  • You can define and operationalize PAM standards, architecture patterns, controls, exception processes, lifecycle governance, metrics, and audit-ready reporting. Preferred Skills & Experience

  • Experience securing non-human and machine identities, including service accounts, workload identities, certificates, secrets, and AI agents, with lifecycle governance and least-privilege controls.
  • Experience designing ServiceNow-integrated just-in-time or on-demand privileged-access workflows, including approvals, policy validation, provisioning, revocation, and audit evidence.
  • Experience automating PAM administration, onboarding, provisioning, credential rotation, monitoring, and policy enforcement using PowerShell, Python, Terraform, Ansible, or comparable infrastructure-as-code tooling.
  • Experience modernizing legacy PAM infrastructure, designing resilient cloud or colocation architectures, executing migrations and decommissioning, conducting recovery testing, and reducing technical debt.
  • Relevant security certifications such as CISSP, CyberArk, Microsoft, or AWS certifications.

Benefits & conditions

We intentionally seek diverse perspectives, experiences, and backgrounds, investing in a culture designed to celebrate differences. We believe that belonging leads to better outcomes and a stronger community of associates united by our mission. At Capital, we live our core values every day: Integrity, Client Focus, Diverse Perspectives, Long-Term Thinking, and Community. “I can influence my income.” You want to feel recognized at work. Your performance will be reviewed annually, and your compensation will be designed to motivate and reward the value that you provide. You’ll receive a competitive salary, bonuses and benefits. Your company-funded retirement contribution will factor in salary and variable pay, including bonuses. “I can lead a full life.” You bring unique goals and interests to your job and your life. Whether you’re raising a family, you’re passionate about where you volunteer, or you want to explore different career paths, we’ll give you the resources that can set you up for success.

  • Enjoy generous time-away and health benefits from day one, with the opportunity for flexible work options
  • Receive 2-for-1 matching gifts for your charitable contributions and the opportunity to secure annual grants for the organizations you love
  • Access on-demand professional development resources that allow you to hone existing skills and learn new ones

About the company

“I can learn more about Capital Group.” At Capital Group, the success of the people who invest with us depends on the people in whom we invest. That’s why we offer a culture, compensation and opportunities that empower our associates to build successful and prosperous careers. Through nine decades, our goal has been to improve people’s lives through successful investing. We know that our history is a testament to the strength of the people we hire. More than 9,000 associates in 30+ offices around the world help our clients and each other grow and thrive every day. Find us on LinkedIn, Instagram, YouTube and Glassdoor. Southern California Base Salary Range: $141,648-$226,637 In addition to a highly competitive base salary, per plan guidelines, restrictions and vesting requirements, you also will be eligible for an individual annual performance bonus, plus Capital’s annual profitability bonus plus a retirement plan where Capital contributes 15% of your eligible earnings. You can learn more about our compensation and benefits here .

  • Temporary positions in the United States are excluded from the above mentioned compensation and benefit plans. We are an equal opportunity employer, which means we comply with all federal, state and local laws that prohibit discrimination when making all decisions about employment. As equal opportunity employers, our policies prohibit unlawful discrimination on the basis of race, religion, color, national origin, ancestry, sex (including gender and gender identity), pregnancy, childbirth and related medical conditions, age, physical or mental disability, medical condition, genetic information, marital status, sexual orientation, citizenship status, AIDS/HIV status, political activities or affiliations, military or veteran status, status as a victim of domestic violence, assault or stalking or any other characteristic protected by federal, state or local law.

  • Industry Investment Management

  • About Us For more than nine decades, Capital Group’s goal has been to improve people’s lives through successful investing. We know that our history is a testament to the strength of the people we hire. Private ownership allows us to keep our eyes on the long term while more than 9,000 associates in 30+ offices around the world help our clients and each other grow and thrive every day.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.wayup.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz ¡ World Congress 2026 Europe

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard ¡ World Congress 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo ¡ LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter ¡ World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz ¡ World Congress 2026 Europe

Videos

See all

Related articles

See all