Achieve Logo

Achieve

Principal Security Engineer - Temporary

Reposted 5 Days Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in Tempe, AZ
Senior level
Remote or Hybrid
Hiring Remotely in Tempe, AZ
Senior level
The Principal Security Engineer will lead the design, implementation, and integration of advanced Identity solutions for security in a fintech environment, transforming identity governance to support a dynamic risk-aware architecture. Responsibilities include strategy development, system architecture, secure integration with various platforms, and collaboration with engineering teams.
The summary above was generated by AI
Job Description
We are seeking a visionary Principal Security Engineer - Temporary to architect the next generation of Identity at Achieve. In the evolving Fintech landscape, Identity is no longer just a perimeter-it is our primary security fabric. You will move us beyond static governance into a world of Continuous Adaptive Trust, where identity is dynamic, risk-aware, and invisible to the end-user.
As a senior technical leader within the Information Security Engineering team, you will design and build scalable systems that secure our most critical assets: our people, our customers, and our sprawling ecosystem of non-human workloads. You aren't just managing tools; you are engineering a trust platform that enables a fast-moving, cloud-native financial enterprise.
This is a temporary assignment that we expect will go on for approximately one year.
What you'll do:
Strategy and Design
  • Continuous Adaptive Trust: Transition the enterprise from static, role-based access to a Risk-Based Authorization model that evaluates signals (device posture, behavior, location) in real-time.
  • Enhance the enterprise Identity strategy, roadmap, and architecture in alignment with business goals and security policies.
  • Design and architect comprehensive Identity solutions, including identity lifecycle management, non-human lifecycle management, authentication (MFA, SSO, passwordless), authorization, access governance, and Privileged Access Management (PAM).
  • Evaluate and select appropriate Identity technologies and platforms.
  • Create and maintain detailed architectural documentation for Identity solutions.
  • Lead the strategy and architecture for comprehensive Identity and Access Management (IAM) solutions, explicitly managing User Identities, Workload & Machine Identities (including Service Mesh, Kubernetes, Lambda, and APIs), and other non-human identities across on-premises and cloud environments to govern access rights and privileges.

Implementation and Integration
  • Lead the implementation and integration of Identity solutions across various on-premises and cloud environments (e.g., Azure AD, AWS, GCP, Okta, Entra).
  • Integrate Identity systems with enterprise applications, platforms, and services using standard protocols (SAML, OAuth, OpenID Connect, SCIM).
  • Design and implement strategies to secure non-human machine identities, service accounts, APIs, and automation, utilizing Zero Standing Privilege principles and engineering "Just-in-Time" (JIT) access workflows to eliminate persistent administrative overhead, reduce the blast radius of potential compromises, and enforce strict, least-privilege, and Zero Trust security principles.
  • Develop and configure identity provisioning and de-provisioning workflows.
  • Partner with the SOC to build ITDR capabilities that detect and automatically neutralize identity-based attacks, such as session hijacking, token theft, and MFA fatigue.

Collaboration and Leadership
  • Act as a "Security Partner" for engineering teams to foster secure development practices.
  • Drive successful adoption by collaborating with diverse stakeholders (business units, technology teams, application developers) and translating complex cryptographic and identity concepts into clear business value for product owners and executive leadership.
  • Provide technical leadership and guidance, championing and delivering self-service Identity APIs and SDKs to enable developers to build secure products with minimal friction (Developer Experience - DevEx).
  • Provide technical leadership, mentorship and guidance to Identity Engineers and other team members.

Qualifications
What you'll bring:
Education
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field.
  • A Master's degree is a plus.

Experience & Mindset
  • 8+ years in Cybersecurity/Engineering, with a proven track record of moving legacy organizations towards a Zero Trust architecture.
  • Fintech/High-Growth Experience: Experience working in regulated environments where speed and compliance must coexist.
  • 5+ years focused on identity and access management.
  • Proven experience in designing and implementing enterprise-scale Identity solutions.
  • Drive security automation and "Builder" Mentality by architecting and implementing automation-first solutions (e.g., scripts, APIs, Infrastructure as Code) to eliminate reliance on manual governance processes and ensure security policy is enforced at scale and embedded into developer workflows.
  • Hands-on experience with leading IAM platforms and technologies, such as:
    • Identity Federation: Azure AD/Entra, Okta, Ping Identity, ADFS
    • IGA (Identity Governance and Administration): SailPoint, Saviynt, Oracle Identity Manager
    • PAM (Privileged Access Management): CyberArk, Delinea, BeyondTrust
    • Directory Services: Active Directory, Azure Active Directory, LDAP

Skills
  • Technical Skills:
    • Deep knowledge of IAM principles, best practices, and security models.
    • Proficiency in scripting languages (e.g., PowerShell, Python) for automation and integration.
    • Understanding of network security, operating systems, and database concepts.
    • Familiarity with API security and microservices architecture.
  • Protocols:
    • Deep mastery of identity protocols and standards: IODC, OAuth 2.0, SAML, and SCIM, with a specific focus on mTLS and JWT security.
  • Cloud-Native Identity: Expert-level experience with cloud-native IAM (AWS IAM, Azure Entra ID, GCP Cloud IAM) and managing identity in distributed microservices architectures.
  • Infrastructure: Strong experience with Terraform and container orchestration (Kubernetes).
  • Soft Skills:
    • Excellent analytical and problem-solving skills.
    • Strong communication (written and verbal) and interpersonal skills.
    • Ability to work independently and as part of a collaborative team.
    • Strong project management and organizational skills.
    • Proven ability to strategically influence and expertly negotiate with stakeholders across all organizational levels.

Certifications (Preferred but not required)
  • CISSP (Certified Information Systems Security Professional)
  • CISM (Certified Information Security Manager)
  • Relevant vendor certifications (e.g., Microsoft Certified: Identity and Access Administrator Associate/Expert, Okta Certified Professional/Administrator/Consultant).

Additional Information
All your information will be kept confidential according to EEO guidelines.
Achieve well-being with:
  • 401 (k) with employer match
  • Medical, dental, and vision with HSA and FSA options
  • Competitive vacation and sick time off, as well as dedicated volunteer days
  • Access to wellness support through Employee Assistance Program, physical and mental health wellness programs
  • Pet care discounts for your furry family members
  • Financial support in times of hardship with our Achieve Care Fund
  • A safe place to connect and a commitment to diversity and inclusion through our six employee resource groups

Join Achieve, change the future.
At Achieve, we're changing millions of lives.
From the single parent trying to catch up on bills to the entrepreneur needing a loan for the next phase of growth, you'll get to be a part of their journey to a better financial future. We're proud to have over 3,000 employees in mostly hybrid and 100% remote roles across the United States with hubs in Arizona, California, and Texas. We are strategically growing our teams with more remote, work-from-home opportunities every day to better serve our members. A career at Achieve is more than a job-it's a place where you can make a true impact, have a sense of belonging, establish a fulfilling career, and put your well-being first.
Attention Agencies & Search Firms: We do not accept unsolicited candidate resumes or profiles. Please do not reach out to anyone within Achieve to market your services or candidates. All inquiries should be directed to Talent Acquisition only. We reserve the right to hire any candidates sent unsolicited and will not pay any fees without a contract signed by Achieve's Talent Acquisition leader.
#LI-KM1
Company Description
Achieve is a leading digital personal finance company. We help everyday people move from struggling to thriving by providing innovative, personalized financial solutions. By leveraging proprietary data and analytics, our solutions are tailored for each step of our member's financial journey to include personal loans, home equity loans, debt consolidation, financial tools and education. Every day, we get to help our members move their finances forward with care, compassion, and empathetic touch. We put people first and treat them like humans, not account numbers.
Since 2002, Achieve has grown into one of the largest private consumer fintech unicorns in the U.S., with over $40B in enrollments for our industry-leading, tech-enabled debt resolution services business, and over $11Bn in personal and home loans originations via our banking-as-a-service partner.

Top Skills

AWS
Azure Ad
Entra
GCP
Kubernetes
Oauth
Okta
Openid Connect
Powershell
Python
SAML
Scim
Terraform

Similar Jobs at Achieve

3 Hours Ago
Remote or Hybrid
160K-180K Annually
Expert/Leader
160K-180K Annually
Expert/Leader
Fintech • Professional Services • Sales • Financial Services
The Principal Product Manager will drive the strategy and execution for the Third-Party Originations channel, focusing on the development of lending ecosystems, partner portals, and API integrations to enhance loan origination performance.
Top Skills: Api IntegrationsAutomated DecisioningLos/Pos VendorsMortgage Origination Workflows
10 Days Ago
Remote or Hybrid
26-28 Hourly
Junior
26-28 Hourly
Junior
Fintech • Professional Services • Sales • Financial Services
The Social Media Coordinator will manage and create content for various platforms, engage with users, analyze performance metrics, and support brand awareness initiatives.
Top Skills: Facebook Business SuiteHootsuiteInstagramLaterSprout SocialTiktokTwitterYoutube Studio

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account