AT&T

Lead Cybersecurity Non-Human Identity and Cloud IAM Governance

AT&T · Bangalore, Karnataka, India

Telecommunications · 10,001+ employees

13 h ago Closes in 1d
Principal (10+ yrs) Full-time India
Log in to apply, save this posting, or score it against your profile with AI.

About the role

Define and drive the enterprise non-human identity strategy while leading technical architecture and integrations across hybrid cloud environments. Establish centralized governance for discovery, lifecycle management, and credential security for machine identities, bots, and AI agents.

What they look for

Cybersecurity Non-Human Identity Cloud IAM Governance Privileged Access Management Identity Governance and Administration AWS IAM Azure Entra ID GCP IAM Secrets Management Technical Architecture Risk Management API Security Agentic AI Governance CISSP CCSP

Requirements

Requires 12+ years of enterprise experience in IAM, cybersecurity, and machine identity governance. Candidates must hold a CISSP or CCSP certification and possess strong hands-on expertise in cloud IAM platforms and credential security patterns.

Full description

Location: Bangalore or Hyderabad. This is an onsite role requiring 5 days/week presence; candidates must be based in or willing to relocate to one of these locations.

About the Team

We are strengthening AT&T’s enterprise Non-Human Identity capability to reduce risk from machine identities, privileged service accounts, APIs, bots, application identities, RPA workloads, cloud workload identities, and emerging AI agents. The team works closely with IAM, PAM, IGA, cloud, AI platform, application, infrastructure, and security monitoring teams to build a centralized governance model for discovering, inventorying, owning, reviewing, securing, and monitoring non-human identities across hybrid cloud and on-premises environments.

Role Summary

As a Lead Cybersecurity - Non-Human Identity and Cloud IAM Governance technical leader, you will define and drive the enterprise NHI strategy along with other leaders while remaining deeply hands-on in architecture, platform integration, technical design, troubleshooting, and control implementation. You will rapidly assess in-flight initiatives, rationalize overlapping efforts, establish centralized governance, and ensure every machine identity is discovered, inventoried, classified, mapped to ownership, governed through IAM controls, and visible for security monitoring.

What You’ll Do

  • Define and drive the enterprise NHI strategy across on-premises, cloud, SaaS, and agentic environments, aligning in-flight efforts into one centralized operating model.
  • Build the NHI governance framework for discovery, registry, ownership, classification, lifecycle, access reviews, credential security, and observability.
  • Lead technical architecture and integrations across IAM, IGA, PAM, secrets management, AWS, Azure, GCP, SaaS, DevOps, monitoring, and agentic platforms.
  • Establish governance for AI agents and agentic workloads, ensuring each is inventoried, ownership-mapped, access-controlled, and visible for monitoring.
  • Drive modern credential controls including JIT access, dynamic secrets, short-lived certificates, automated rotation, runtime authentication, and least privilege.
  • Serve as a hands-on technical escalation point for complex NHI, cloud IAM, credential, entitlement, integration, and observability issues.
  • Define KPIs, dashboards, standards, runbooks, and remediation playbooks to track maturity, risk reduction, and program progress.

What You Need to Bring

  • 12+ years of enterprise experience in IAM, cybersecurity, cloud IAM, PAM, IGA, infrastructure security, or machine identity governance.
  • Strong hands-on experience with NHI governance across service accounts, APIs, application identities, bots, RPA, cloud workload identities, and agentic workloads.
  • Proven ability to lead by doing review designs, guide engineers, validating integrations, troubleshoot complex issues, and making technical architecture decisions.
  • Experience maturing NHI programs across discovery, ownership mapping, lifecycle governance, access reviews, credential controls, and remediation.
  • Strong knowledge of AWS IAM, Azure Entra ID, and/or GCP IAM, including integration with IGA, PAM, secrets management, and monitoring platforms.
  • Experience with modern credential security patterns including JIT access, dynamic secrets, short-lived certificates, automated rotation, runtime authentication, and least privilege.
  • Ability to assess risk from privileged service accounts, unmanaged NHIs, API credentials, cloud workload identities, and AI agents.
  • Strong executive communication and stakeholder management skills across IAM, PAM, IGA, cloud, AI platform, application, security, audit, and business teams.
  • Certified Information Systems Security Professional (CISSP) or Certified Cloud Security Professional (CCSP) required.

Nice to Have

  • Experience with agentic AI governance, AI platform security, autonomous workload controls, or AI agent identity risk management.
  • Experience with Oasis, SailPoint, CyberArk, HashiCorp Vault, Azure Entra ID, AWS IAM, GCP IAM, ServiceNow, CI/CD tooling, or cloud-native security services.
  • Knowledge of zero trust, least privilege, privileged access management, identity threat detection, and machine identity security patterns.
  • Familiarity with regulatory, audit, and control frameworks such as NIST, ISO, SOC2, and internal enterprise risk standards.
  • Strong organizational, program management, documentation, self-motivation, and stakeholder management skills.
  • Interest in leveraging automation or AI-enabled tools to improve identity discovery, risk scoring, remediation tracking, reporting, and operational response workflows.

Why Join Us?

  • Play a key role in building AT&T’s enterprise NHI governance capability at a time when machine identities and AI agents are becoming a critical cybersecurity priority.
  • Work on high-scale IAM, cloud IAM, PAM, secrets management, and agentic identity integrations that directly reduce enterprise risk.
  • Collaborate directly with teams across India and the US on a strategic identity security capability that improves governance, visibility, access control, and operational resilience.

Weekly Hours:

40

Time Type:

Regular

Location:

IND:AP:Hyderabad / Argus Bldg 4f & 5f, Sattva, Knowledge City- Adm: Argus Building, Sattva, Knowledge City, IND:KA:Banglaore / Intl Tech Park, Whitefield Rd - Storage: Creator Building, Itpb, Whitefield Rd (inactive) AT&T and its subsidiaries are committed to equal employment opportunity. All hiring, promotion, and other employment decisions remain merit-based and free from discrimination on the basis of race, color, religion, religious creed, national origin, ancestry, age, sex, sexual orientation, gender, gender identity, gender expression, physical disability, mental disability, pregnancy, medical condition, genetic information, marital status, citizenship status, military status, veteran status, or any other characteristic protected by federal, state, or local laws. In addition, AT&T will provide reasonable accommodations to qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made. Click here to learn more or request an application accommodation here.