
Manager, Cybersecurity – Non-Human Identity Security
Posted Sep 14

Posted Sep 14
This is a fully remote position, open to applicants in Michigan.
• Lead the enterprise-wide non-human identity security initiative across cloud, on-premises, and CI/CD environments.
• Take ownership of the security strategy, roadmap, operating model, governance, and reporting.
• Develop identity and access controls for API credentials and emerging AI agent identities.
• Assist in meeting SOX, HIPAA, ISO 27001, and NIST CSF compliance and audit requirements through risk reporting.
• Create and manage discovery and inventory processes for service accounts, secrets, certificates, keys, and workload identities.
• Implement and maintain secrets management and machine identity platforms.
• Oversee PKI and govern the issuance, renewal, rotation, revocation, and decommissioning of certificates.
• Automate the rotation of secrets and eliminate hard-coded or embedded credentials.
• Safeguard managed identities, IAM roles, service principals, and cloud workload identities using least-privilege access and short-lived credentials.
• Integrate non-human identity controls into CI/CD pipelines, DevOps workflows, cloud platforms, and infrastructure-as-code methodologies.
• Guide analysts and engineers by establishing standards, setting priorities, defining performance expectations, and ensuring accountability.
• Promote cross-functional adoption of service account onboarding, ownership, attestation, and decommissioning practices.
• Evaluate identity risk and convert findings into actionable controls and remediation priorities.
• Effectively communicate risks, decisions, and program requirements to technical teams, business partners, and audit stakeholders.
• Implement Zero Trust and least-privilege principles across machine, workload, cloud, API, and AI agent identities.
• Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, or a related field.
• At least 8 years of experience in identity, cloud, or cybersecurity.
• A minimum of 3 years dedicated to machine or non-human identity security.
• Practical experience with HashiCorp Vault, CyberArk Conjur, Azure Key Vault, Venafi, or similar secrets management and machine identity platforms.
• Knowledge of PKI, certificate lifecycle management, and automated credential rotation.
• Experience in securing cloud workload identities and service principals within Azure, AWS, or GCP.
• Familiarity with CI/CD, DevOps, infrastructure-as-code security, people leadership, Zero Trust, and least-privilege controls.
• Preferred: Master's degree in a relevant field.
• Preferred: CISSP, HashiCorp Vault, Venafi, or pertinent cloud security certification.
• Flexibility for remote work.
• Commitment to equal opportunity employment.
• No travel required (Travel Percentage: None).
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.