AI Identity Security Engineer

The Union
Hoover, AL, United States
8 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$133,060.0 - $166,810.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Application Services Architectural Patterns Automation of Tests Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Continuous Integration
+31 more
Identity and Access Management Python (Programming Language) Key Management OAuth OpenID OpenShift Windows PowerShell Reliability Engineering Cloud Services Ansible Security Assertion Markup Language (SAML) Software Engineering Virtual Machines Data Logging Delivery Pipeline Multi-Agent Systems Multi-Cloud Git Build Management Information Technology Deployment Automation Hashicorp Azure AKS Machine Learning Operations SailPoint Restful APIs Terraform Devsecops Serverless Computing Jenkins Servicenow

Job description

Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates, consultants, and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes, sold, or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions’ Retention Schedule for a minimum of three years. You may review, modify, or update your information by visiting and logging into the careers section of the system., At Regions, the Cloud DevSecOps Engineer contributes to the advancement of cloud strategy. The primary focus of this role includes developing, communicating, and implementing robust and secure cloud continuous integration and continuous delivery (CI/CD) pipelines. This role works closely with stakeholders to create fully automated pipelines which support current DevSecOps best practices., * Partners with other engineers and information technology staff to orchestrate code builds, quality and security analyses, deployments, and automated testing through CI/CD release candidacy pipelines

  • Articulates business needs and translate them into technology solutions
  • Models release candidate CI/CD pipelines as a mechanism to communicate the states and steps necessary to determine a release candidate for each application and service
  • Designs and develops fully autonomous CI/CD pipelines which facilitate cloud deployments which includes automation of all infrastructure, services and application build and deployment
  • Ensures that all parts of the pipeline follow good software engineering practices to include automated tests and infrastructure tests
  • Researches new technologies that will improve efficiency and effectiveness
  • Implements highly scalable CI/CD platforms to support high change volumes and fast feedback
  • Automates operational activities and tasks
  • Responds to performance issues identified by alerts and reported incidents related to CI/CD platforms
  • Builds tools which reduce errors and improve our overall customer experiences
  • Assists in troubleshooting of production issues and ensure pipeline and infrastructure produces clear documentation and metrics which enables Root Cause Analysis
  • Develops and tests - Ansible Playbooks, Terraform Scripts, Packer Scripts and establish immutable infrastructure such that patches are an artifact of the past
  • Works with Enterprise Architecture, Information Security (InfoSec), Software Delivery, and Quality Assurance to enable the organization to move to the cloud using complete automation
  • Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices

This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.

Requirements

  • High School Diploma or GED and eight (8) years of related post-secondary education and/or experience in Information Security or Information Technology

Preferences

  • Four (4) years of relevant DevSecOps experience
  • AWS DevOps certification or Azure DevOps certification
  • Experience in building / deploying cloud native applications - OpenShift, Azure Kubernetes Service (AKS)
  • Experience in observing real-time metrics in the pipeline and deployment strategies - Blue/Green, Canary Deployment
  • Experience with either AWS or Azure cloud technologies
  • Experience with interfacing with secrets management solutions like Hashicorp Vault
  • Familiar with implementing Chaos engineering principles in the pipeline to determine weak links and suggest solutions.
  • Familiar with testing tools used to facilitate automation and integration of the tools into CI/CD pipelines
  • Must be comfortable in developing pipelines as code using yaml specs, ansible playbooks

Skills and Competencies

  • Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance
  • Excellent communication skills and willing to mentor developers and other team members in the art of DevSecOps
  • Excellent knowledge of Cloud infrastructure, networking, services, and cloud architectural patterns; specifically, compute using virtual machines, managed infrastructure, containers, serverless, as well as database services, security services, and application services
  • Proficient in python programming language
  • Understanding of Shift Left principles and facilitation technologies
  • Working Knowledge of Jenkins, Azure DevOps, Ansible, Terraform, Packer, Git, ServiceNow a big plus

Additional Responsibilities and Preferred Qualifications:

  • Design and enforce scalable authorization models for AI agents and non-human identities across AWS and multi-cloud, enabling secure, low-friction deployment at scale
  • Define identity patterns for agents and workloads (ephemeral credentials, token-based auth, delegation, scoped permissions) across their full lifecycle
  • Build automated guardrails for provisioning, privilege management, and runtime access-leveraging CI/CD pipelines, APIs, and reusable, idempotent frameworks
  • Establish enterprise standards for non-human identity governance, including lifecycle controls, auditability, and policy enforcement across hybrid environments
  • Partner with platform and engineering teams to embed identity controls into agent frameworks, SDKs, and deployment pipelines
  • Apply strong engineering practices (Python, Java, PowerShell) to integrate systems via REST APIs and modern auth protocols (OAuth, OIDC, SAML, SCIM), with hands-on experience in AWS IAM, Azure/Entra ID, and SailPoint integrations
  • Preferred experience: Strong background in identity governance automation, IAM, or DevSecOps, with hands-on engineering experience; familiarity with AI/ML systems, agentic architectures, and their associated security risks.

This position is currently offsite, preferably close to a Regions office within our retail branch footprint (click here to see our locations). Associates will work from their home primarily and may be expected to go on site for meetings or other events as needed.

Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full-time basis.

Position Type Full time

Benefits & conditions

Regions offers a benefits package that is flexible, comprehensive and recognizes that “one size does not fit all” for benefits-eligible associates. Listed below is a synopsis of the benefits offered by Regions for informational purposes, which is not intended to be a complete summary of plan terms and conditions.

  • Paid Vacation/Sick Time
  • 401K with Company Match
  • Medical, Dental and Vision Benefits
  • Disability Benefits
  • Health Savings Account
  • Flexible Spending Account
  • Life Insurance
  • Parental Leave
  • Employee Assistance Program
  • Associate Volunteer Program

Please note, benefits and plans may be changed, amended, or terminated with respect to all or any class of associate at any time. To learn more about Regions’ benefits, please click or copy the link below to your browser.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:14 min

Exploring internal AI product initiatives and global engineering roles

Maria Apazoglou · Coffee With Developers

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all