Yoh, A Day & Zimmermann Company is seeking a Senior Security Engineer to lead the implementation and operationalization of a machine identity governance program. This role focuses on managing and securing machine identities in a high-impact, cross-functional environment involving Identity, Cloud, Security, and Enterprise Applications.
Responsibilities:
- Lead deployment and integration of a machine identity governance platform across cloud and enterprise environments
- Integrate with identity providers, SaaS applications, and internal systems
- Develop dashboards, reporting, and alerting to provide visibility into machine identity usage and risk
- Establish workflows for onboarding and managing machine identities (service accounts, API keys, tokens, etc.)
- Define and support lifecycle processes including provisioning, rotation, access reviews, and decommissioning
- Identify and remediate unused, orphaned, or high-risk credentials
- Partner with teams across Identity, Cloud, Security, and Engineering to implement scalable solutions
- Translate security requirements into automated, enforceable controls
- Support secure adoption of AI and automation technologies across the organization
- Create and maintain documentation, runbooks, and operational standards
- Track key metrics related to risk reduction and program maturity
- Stay current on emerging trends in identity security and automation
Requirements:
- 5+ years of experience in security engineering, identity engineering, or infrastructure engineering
- Hands-on experience with secrets management tools (e.g., HashiCorp Vault, AWS Secrets Manager, Azure Key Vault)
- Strong understanding of cloud environments (AWS, Azure, or GCP)
- Experience with authentication protocols such as OAuth, OIDC, SAML, or API key-based access
- Experience implementing or integrating security/identity tools in enterprise environments
- Strong communication skills with the ability to collaborate across technical and non-technical teams
- Experience with machine identity or secrets security platforms
- Exposure to AI/automation environments and how systems authenticate to services
- Relevant certifications (e.g., CISSP, CCSP, or cloud security certifications)