Information Security Engineer III

Capital GroupIrvine, CA
$141,648 - $226,637Hybrid

About The Position

As an Information Security Engineer III, you will help secure and modernize Capital Group's Privileged Access Management (PAM) capabilities within our Identity and Access Management (IAM) organization. You will design, implement, and support solutions that protect privileged access across on-premises and cloud environments while helping advance our security modernization strategy. You will play a key role in several high-priority initiatives, including PAM platform modernization, StrongDM adoption, Privileged Access Workstation (PAW) enhancements, ServiceNow integration, Azure support. Your work will improve operational resiliency, reduce risk, and strengthen the security of critical systems across the enterprise. You thrive in a direct engineering environment and enjoy solving complex security challenges, partnering with cross-functional teams, and delivering scalable solutions that balance security, efficiency, and user experience.

Requirements

  • 5+ years of experience in Information Security, Identity and Access Management (IAM), Privileged Access Management (PAM), or a related field.
  • Firsthand experience with PAM technologies such as CyberArk, StrongDM or comparable platforms.
  • Strong understanding of privileged access controls, identity management, authentication, authorization, and security best practices.
  • Experience engineering privileged access across on-premises and cloud environments, including AWS, Azure, Kubernetes/EKS, Windows and Linux hosts, databases, command-line access, policy-driven authorization, and monitored sessions.
  • Experience with Active Directory, enterprise identity services, and authentication and authorization technologies such as SSO, SAML, OIDC, OAuth 2.0, SCIM 2.0, RBAC, ABAC, certificate-based authentication, Kerberos, and just-in-time provisioning.
  • Ability to troubleshoot complex access and authentication issues.
  • Effective communication across teams.
  • Ability to translate complex technical concepts for varied audiences.
  • Ability to take ownership of outcomes.
  • Ability to continually improve security and operational efficiency.

Nice To Haves

  • Experience securing non-human and machine identities, including service accounts, workload identities, certificates, secrets, and AI agents, with lifecycle governance and least-privilege controls.
  • Experience designing ServiceNow-integrated just-in-time or on-demand privileged-access workflows, including approvals, policy validation, provisioning, revocation, and audit evidence.
  • Experience automating PAM administration, onboarding, provisioning, credential rotation, monitoring, and policy enforcement using PowerShell, Python, Terraform, Ansible, or comparable infrastructure-as-code tooling.
  • Experience modernizing legacy PAM infrastructure, designing resilient cloud or colocation architectures, executing migrations and decommissioning, conducting recovery testing, and reducing technical debt.
  • Relevant security certifications such as CISSP, CyberArk, Microsoft, or AWS certifications.

Responsibilities

  • Design, implement, and support solutions that protect privileged access across on-premises and cloud environments.
  • Advance the company's security modernization strategy.
  • Play a key role in PAM platform modernization, StrongDM adoption, Privileged Access Workstation (PAW) enhancements, ServiceNow integration, and Azure support.
  • Improve operational resiliency, reduce risk, and strengthen the security of critical systems.
  • Solve complex security challenges.
  • Partner with cross-functional teams.
  • Deliver scalable solutions that balance security, efficiency, and user experience.
  • Provide Tier 3 support, monitoring, incident response, root-cause analysis, vulnerability remediation, and resilient production operations for critical PAM services.
  • Define and operationalize PAM standards, architecture patterns, controls, exception processes, lifecycle governance, metrics, and audit-ready reporting.

Benefits

  • Competitive salary
  • Bonuses
  • Company-funded retirement contribution
  • Generous time-away
  • Health benefits from day one
  • Flexible work options
  • 2-for-1 matching gifts for charitable contributions
  • Annual grants for charitable organizations
  • On-demand professional development resources
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service