Cybersecurity IAM Senior Principal Engineer

PepsiCoPlano, TX
$123,500 - $206,750

About The Position

IAM Principal Cybersecurity Architect will lead the strategy, solution design, and governance of Identity and Access Management (IAM) services including AI, Large Language Models (LLMs), and autonomous AI agents and security. This is a senior technical leadership role responsible for defining enterprise standards for AI identity, securing AI platforms, and enabling the safe adoption of Agentic AI across the organization. The role will partner closely with AI Engineering, Cloud, Enterprise Architecture, and Security teams to design scalable, secure, and compliant AI solutions. The ideal candidate has deep expertise in IAM, cloud security, Zero Trust architecture, and AI security, with experience building governance models for AI agents and non-human identities.

Requirements

  • Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related field.
  • 15+ years of experience in Cybersecurity, with significant expertise in Identity and Access Management (IAM).
  • 7+ years in a Principal, Lead, or Senior Architecture role supporting enterprise or cloud-native environments.
  • Expert knowledge of IAM technologies, including AWS IAM, AWS Identity Center, Microsoft Entra ID, OAuth 2.0, OpenID Connect (OIDC), SAML, and Zero Trust Architecture.
  • Experience securing AI platforms, LLMs, Agentic AI applications, or autonomous AI agents.
  • Strong understanding of cloud security, workload identities, and non-human identity (NHI) management.
  • Excellent communication and stakeholder management skills.

Nice To Haves

  • Experience with AWS Bedrock, Amazon AgentCore, Azure AI, or similar enterprise AI platforms.
  • Experience with Identity Governance (IGA) platforms such as Saviynt, SailPoint, or equivalent.
  • Knowledge of OWASP Top 10 for LLM Applications, prompt injection defenses, and AI security best practices.
  • Experience with SPIFFE/SPIRE, workload identity frameworks, or service identity management.
  • Familiarity with AI governance, AI risk management, and responsible AI frameworks.
  • Professional certifications such as CISSP, CISM, CCSP, AWS Certified Security – Specialty, TOGAF, or cloud architecture certifications.

Responsibilities

  • Lead solution architecture across IAM services for critical cross functional programs
  • Lead modernization of IAM capabilities supporting AI and cloud-native applications.
  • Design secure identity architectures leveraging AWS IAM, AWS Identity Center, Microsoft Entra ID, and cloud-native identity services.
  • Integrate AI platforms with enterprise IAM, Identity Governance (IGA), and Privileged Access Management (PAM) solutions.
  • Define the enterprise architecture and security strategy for AI systems, LLMs, and Agentic AI platforms.
  • Develop architecture standards, reference designs, and best practices for securing AI workloads.
  • Partner with AI Engineering and platform teams to embed security-by-design into AI solutions.
  • Drive adoption of Zero Trust principles across AI and cloud environments.
  • Design and govern the complete identity lifecycle for AI agents, including onboarding, authentication, authorization, certification, monitoring, and decommissioning.
  • Establish governance standards for AI identities, non-human identities (NHI), and machine identities.
  • Implement least privilege, Just-in-Time (JIT), and Just-Enough-Access (JEA) access models for AI workloads.
  • Ensure AI systems meet enterprise security, compliance, privacy, and regulatory requirements.
  • Serve as the technical authority for AI identity security across the enterprise.
  • Partner with Cybersecurity, Enterprise Architecture, AI Engineering, Cloud, GRC, Privacy, and business teams to deliver secure AI capabilities.
  • Mentor architects and engineers on AI security, IAM, and cloud identity best practices.
  • Communicate architecture decisions and security risks effectively to executive leadership and technical stakeholders.

Benefits

  • Bonus based on performance and eligibility target payout is 15% of annual salary paid out annually.
  • Paid time off subject to eligibility, including paid parental leave, vacation, sick, and bereavement.
  • Medical, Dental, Vision, Disability, Health, and Dependent Care Reimbursement Accounts, Employee Assistance Program (EAP), Insurance (Accident, Group Legal, Life), Defined Contribution Retirement Plan.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service