Lead Engineer – 2 - IAM Analyst
Generate a McCoy IQ challenge in 30 seconds.
See how candidates think and approach the work this role demands, before the phone screen. We'll build a video challenge from this posting, and you can edit or share it before it goes live.
Key details
What makes this role novel
Non-Human Identity (NHI) management as a dedicated operational discipline is a new job category that emerged in the last 2–3 years as enterprises scaled cloud, microservices, and API-driven architectures. The day-to-day work—discovering, governing, and remediating service accounts, API keys, secrets, and workload identities at enterprise scale—did not exist as a standalone role before the explosion of machine identities in modern infrastructure.
Job Description
The Identity Management Analyst is responsible for hands‑on delivery and operationalization of Identity Lifecycle & Access Management (IDM) of non‑human identities (NHI).The role will be responsible for managing NHI platforms, onboarding enterprise systems, operating discovery and governance workflows, maintaining dashboards and reporting, and driving visibility, governance, and remediation of non-human identities across the enterprise.
The individual will work closely with Cloud Engineering, SAAS platforms, DevOps, Security, Infrastructure, Application Development, IAM, Governance, and Platform teams to ensure comprehensive discovery, onboarding, lifecycle management, and access governance of NHI’s including service accounts, API keys, secrets, certificates, service principals, workload identities, and application credentials etc.
Responsibilities
Non‑Human Identity (NHI) Management
- Manage the full lifecycle of non‑human identities, including, Service accounts, Application identities and APIs, bots, and system users
- Integrate NHI data with downstream applications and IAM/IGA platforms to enable: Risk analysis, Reporting and Access reviews
- Establish and maintain ownership, purpose, and usage metadata for all non‑human identities.
- Identify and analyse high‑risk NHI accounts,
- Detect and remediate orphaned and dormant non‑human accounts through:
- Reconciliation processes
- Usage and activity analysis
- Integration with authoritative systems
- Enable risk‑based reporting and dashboards for NHI, covering Privilege levels, Access scope, Last used / inactive accounts, Ownership gaps
- Partner with application, cloud, and platform teams to
- Support credential governance, including:
- Rotation tracking
- Expiry enforcement
- Decommissioning of unused identities
Integrations & SaaS Connectivity
- Implement integrations between IAM(NHI) platforms and SaaS applications
- Work with API‑based integrations, File‑based or custom connectors where required
- Troubleshoot failures, data mismatches, and reconciliation issues
- Support onboarding of new applications & platforms into IAM standards
Reporting, Dashboards & Data Analysis
- Build and maintain operational and compliance dashboards for NHI metrics.
- Develop custom reports using SQL and IAM reporting frameworks
- Analyse identity data to identify access risk, drift, and anomalies
- Support audit and compliance evidence generation
Database & Technical Operations
- Perform hands‑on SQL querying against IAM databases
- Collaborate with platform teams on performance and data quality improvements
Architecture & Platform Support:
- Work closely with IAM architects to:
- Translate architecture designs into configurations
- Validate feasibility during POC’s and pilots
- Contribute to runbooks, and operational documentation
Qualifications
Core IAM Experience
- 5+ years working with NHI, Secrets Management, PAM, or Machine Identity solutions.
- Experience with discovery and governance platforms such as:
- Veza, Astrix, Akeyless, HashiCorp Vault, CyberArk, Thales CTM
- Experience supporting enterprise-scale security and identity programs
- Strong understanding of Identity lifecycle concepts (JML), Roles, entitlements, access models, Human and non‑human identity & access governance, PAM
- Knowledge of Service Accounts, Service Principals, API Tokens, OAuth Clients, Secrets, SSH Keys, Certificates, Encryption Keys, Workload Identities, Kubernetes Service Accounts, Cloud Managed Identities
Technical Skills:
- Strong SQL and database experience (queries, joins, analysis)
- Hands-on experience with AWS, Azure, Google Cloud Platform (GCP)
- Working Knowledge of IAM Roles, Managed Identities, Service Accounts, Key Management Services, Cloud-native security controls
- Experience integrating with SAAS and Enterprise platforms like Entra ID, Sales force, ServiceNow, GitHub, OKTA etc.
- Strong experience in API & Integration Skills like REST APIs, JSON, OAuth etc.
- Directory services (LDAP / AD / cloud directories)
Reporting & Analytics:
- Experience building dashboards and operational reports
- Comfortable working with large datasets and identity relationships
Preferred Skills:
- Experience with IAM/IGA tools such as SailPoint, Saviynt, Okta Lifecycle, Entra ID, Ping, or similar
- Understanding of access governance, audit, or SOX controls
- Familiarity with scripting (PowerShell, Python, etc.) for automation
Audit details(provenance, verification trail, raw fields)
Core fields
pepsico:469063Provenance
https://www.pepsicojobs.com/sitemap.xmlVerification trail
This posting hasn't been probed by our closure verifier yet. Stream C runs on a rolling schedule against postings approaching the close-decision threshold.
LLM enrichment
See how we measure for definitions, or our corrections log for known issues. Found something wrong? Flag a correction.
