Senior Cybersecurity Engineer IAM

VisaAustin, TX
Remote

About The Position

The Senior Cybersecurity Engineer – IAM is responsible for designing, implementing, and operating identity and access management controls across the Pismo platform, ensuring compliance with Pismo Visa Corporate Identity & Access Technical Security Requirements. This role operates at platform and architecture level, supporting multicloud and hybrid environments, and focuses on building secure, automated, and auditable access models for human and non‑human identities. The position partners closely with Cloud Security, Platform Engineering, API, DevSecOps, and GRC teams to embed least‑privilege, zero‑trust, and automation‑first IAM practices across a regulated, multi‑tenant payments environment. In addition to traditional IAM responsibilities, this role provides security and governance oversight for AI‑enabled identity use cases, ensuring that AI systems, agents, and automation interacting with identities comply with Internal AI Governance standards, GenAI & Agentic Systems requirements, and Corporate IAM Technical and Design requirements. This is a remote position. A remote position does not require job duties be performed within proximity of a Visa office location. Remote positions may be required to be present at a Visa office with scheduled notice.

Requirements

  • 5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
  • Multicloud IAM Architecture (Mandatory)
  • Strong hands‑on experience designing and operating IAM across multicloud environments, including AWS and hybrid/federated cloud models.
  • Ability to design scalable permission models across cloud platforms, including: Cloud‑native roles and permission sets Least‑privilege and separation‑of‑duties enforcement Human and non‑human identities (workloads, service accounts)
  • Permission Design & Access Modeling
  • Deep understanding of permission structures, including: Role‑based (RBAC) and attribute-based (ABAC) access models IAM‑governed access roles and entitlement cataloging Temporary, just-in-time, and break‑glass access patterns
  • Ability to design access models that reduce audit scope, review volume, and operational risk.
  • IAM Automation & Engineering (Critical Requirement)
  • Strong experience implementing IAM automation, including: Automated provisioning and de‑provisioning (JML lifecycle) Access revalidation and certification automation Auto‑remediation of non‑compliant permissions
  • Experience integrating IAM controls with CI/CD pipelines and Infrastructure‑as‑Code (IaC).
  • Proven ability to codify IAM policies and controls using automation frameworks.
  • Coding & Scripting Skills
  • Hands‑on coding experience to support IAM automation and integrations, including: Python or equivalent scripting languages Use of APIs and SDKs to manage identities, roles, and entitlements Automation via IaC tools (e.g., Terraform‑based IAM definitions)
  • Ability to build reusable, auditable, and scalable IAM automation components
  • Privileged Access & Cloud Governance
  • Experience designing and governing privileged access across cloud platforms.
  • Ability to enforce time‑bound, auditable privileged access aligned with least‑privilege principles.
  • Strong understanding of cloud governance roles required for vulnerability scanning, configuration

Nice To Haves

  • 5+ years of relevant work experience with a Bachelor’s Degree or at least 2 years of work experience with an Advanced degree (e.g. Masters, MBA, JD, MD) or 0 years of work experience with a PhD, OR 8+ years of relevant work experience.
  • 8+ years of cybersecurity experience, with deep specialization in Identity & Access Management (IAM).
  • Proven experience operating at Senior / Consultant level, influencing IAM architecture, standards, and governance decisions.
  • Experience supporting financial services, payments, or regulated environments
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service