Lead AI Security Engineer, AI Identities-2
Mastercard
Lead AI Security Engineer, AI Identities-2
Job Description Summary
As an Information Security Engineer – AI Identity Security, you will be responsible for securing the identities associated with AI systems, including models, agents, services, pipelines, and non‑human actors that interact with data, infrastructure, and other systems. This role focuses on the discovery, lifecycle management, control enforcement, and monitoring of AI identities to ensure they are properly governed, least‑privileged, and continuously assessed for risk.
AI Identity Discovery & Inventory
• Design and operate mechanisms to discover and inventory AI identities, including:
o AI models, agents, and autonomous workflows
o Service accounts, non‑human identities, and API principals used by AI systems
o Identities created dynamically through AI pipelines, orchestration tools, and integrations • Maintain authoritative visibility into where AI identities exist, what they can access, and how they are used across environments.
• Integrate AI identity discovery into broader identity, asset, and AI Security Posture Management (AI‑SPM) capabilities. AI Identity Lifecycle Management
• Define and operationalize lifecycle controls for AI identities, including creation, modification, rotation, suspension, and decommissioning.
• Ensure AI identities are created with strong provenance, ownership, and accountability, including linkage to business and technical owners.
• Implement controls to prevent identity sprawl, orphaned AI identities, and unmanaged credentials. Access Control & Policy Enforcement
• Design and enforce least‑privilege access models for AI identities, aligned with the sensitivity of data, models, and actions performed.
• Partner with IAM and platform teams to implement policy‑based access controls, including role‑based, attribute‑based, and context‑aware authorization for AI systems.
• Ensure AI identities comply with enterprise security standards for authentication strength, credential handling, and key/token management. Monitoring, Detection & Risk Assessment
• Implement continuous monitoring of AI identity behavior, including access patterns, privilege use, and anomalous activity.
• Detect and investigate identity‑based risks and threats, such as excessive permissions, credential misuse, lateral movement, or abuse of AI agents.
• Leverage telemetry from identity platforms, cloud providers, and AI security tools to assess ongoing AI identity risk. AI Security Assessments & Control Validation • Conduct security assessments focused on AI identity usage, including architecture reviews, threat modeling, and control effectiveness testing.
• Validate that AI identity controls are correctly implemented and enforced across development, testing, and production environments.
• Partner with engineering teams to remediate identified gaps and track risk reduction over time. Governance, Standards & Compliance • Support development and operationalization of AI identity security standards, patterns, and control requirements, aligned with NIST, ISO, and emerging AI guidance.
• Track regulatory, legal, and industry expectations related to identity, access, and AI accountability.
• Provide evidence, reporting, and metrics to support audits, risk reviews, and governance forums. Documentation, Reporting & Metrics
• Develop and maintain standard operating procedures (SOPs), design patterns, and runbooks for AI identity security.
• Produce clear reports on AI identity posture, including coverage, risk, and remediation progress.
• Contribute to AI identity KPIs and KRIs, such as unmanaged identities, privilege levels, and anomalous activity trends. Advisory, Training & Enablement
• Act as a trusted advisor on AI identity security, providing guidance on secure patterns and operational best practices.
• Educate engineering and platform teams on AI identity risks, controls, and monitoring expectations.
• Support internal communities of practice focused on AI security, IAM modernization, and responsible AI adoption. Research, Experimentation & Continuous Improvement
• Stay current on emerging trends in AI agents, autonomous systems, and non‑human identity security.
• Design and execute proofs of concept (POCs) to evaluate new AI identity security tools, controls, and monitoring approaches.
• Continuously improve AI identity security through automation, integration, and control refinement. Qualifications • Bachelor’s or Master’s degree in Computer Science, Information Security, Engineering, or a related field.
• Strong experience in identity and access management, security engineering, or security operations, with exposure to AI or highly automated systems.
• Expertise in Least Agency frameworks, Zero Trust Architecture, Delegated Authority Management, Cryptographic Identities, and Short Lived Credentialing.
• Practical experience securing non‑human identities, service accounts, APIs, or machine‑to‑machine access.
• Understanding of AI/ML architectures and how identities are used across data pipelines, model execution, and agent‑based systems.
• Proven ability to design, assess, and operationalize identity controls at scale.
• Strong analytical and communication skills, with the ability to translate identity risk into actionable security outcomes.
• Relevant certifications such as CISSP, GIAC, CIAM/IAM‑related certifications, or cloud security certifications are desirable.
This role aligns to the NICE Cybersecurity Workforce Framework, with primary alignment to Identity and Access Management, Security Control Assessment, Cybersecurity Architecture, Systems Security Management, and Incident Response work roles. Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
- Abide by Mastercard’s security policies and practices;
- Ensure the confidentiality and integrity of the information being accessed;
- Report any suspected information security violation or breach, and
- Complete all periodic mandatory security trainings in accordance with Mastercard’s guidelines.
- ...choices, making transactions secure, simple, smart and... ...potential. Title and Summary Lead Response Technology and Automation Security Engineer Overview The... ...operationalizing response automation, AI-augmented workflows, and... ...SOAR, SIEM, EDR, identity, ticketing, threat...SuggestedFull timeWorldwide
- ...payments choices, making transactions secure, simple, smart and accessible.... ...Summary Senior Data Scientist-2 Overview Product Data &... .... Technical Leadership • Lead the development of advanced... ...actionable insights. • Integrate AI/ML models to enhance the...SuggestedFull timeWorldwideFlexible hours
- ...and Australia. AI is the default operating... ...Opportunity The Security Operations (SecOps)... ...Security Engineer, SaaS & Integration... ...response for SaaS and identity-related events. You... ...documentation (SOC 2 reports, pen test... ...Incident Responder. Lead incidents through all...SuggestedRemote jobFull timeWork experience placementWork at officeRelocationHome officeFlexible hours
- ...technological convergence, our engineering talent is a catalyst for... ...diagnostics and resolving Tier 2 and Tier 3 incidents that impact... ...corrections Implementation of AI-driven diagnostic tools to... ...sex, sexual orientation, gender identity, national origin, disability,...SuggestedLocal areaFlexible hoursNight shift
- ...cybersecurity, online privacy, identity protection and... ...them grow, manage and secure their digital and financial... ...-impact talent who see AI as a teammate –... ...Fullstack Senior Software Engineer with strong MERN stack... ...execution focused: you will lead the design and delivery...SuggestedFull timeFlexible hours
- ...payments choices, making transactions secure, simple, smart and accessible.... ...and Summary Data Scientist II-2 Job Description Summary... ...to apply and leverage AI at scale. The AI team is responsible... ...) and services (recommendation engine, anti-money laundering, fraud risk...Full timeWorldwide
- ...choices, making transactions secure, simple, smart and... ...potential. Title and Summary Lead Software Engineer Job Description Summary... ...development lifecycle for Mastercard Identity Solution program. As a... ...• Must have knowledge of AI Agents and hands on using AI...Full timeContract workWorldwide
$3,200 per month
...Software Engineer Hybrid Bangalore or Pune, India... ...be able to write secure, efficient,... ...on experience with AI-assisted coding tools... ...fervor for industry-leading next-generation technology... ..., gender identity, gender expression,... ...job application. 2. How We Use Personal...Hourly payPermanent employmentFull timeLocal areaRemote work- ...digital payments choices, making transactions secure, simple, smart and accessible. Our... ...greatest potential. Title and Summary AI Engineer Mastercard’s Business & Market Insights... ...complex data into actionable strategies that lead to better outcomes and sustained...Full timeWork experience placementWorldwide
- ...a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation,... ...governments realize their greatest potential. Title and Summary AI Engineer Job Description Summary We believe in power of data. We...Full timeWorldwide
- ...a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation,... ...governments realize their greatest potential. Title and Summary AI Engineer Job Description Our Purpose Mastercard powers...Full timeWorldwide
- ...About Ping Identity: At Ping Identity, we believe in... ...digital experiences both secure and seamless for all users... ...a Staff Software Engineer to lead the evolution of our global... ...maintainable code. AI Adoption : Passionate... ...IAM), including OAuth 2.0 , OpenID Connect ,...Full timeLocal areaWorldwideFlexible hours
- ...digital payments choices, making transactions secure, simple, smart and accessible. Our... ...greatest potential. Title and Summary Senior AI Data Engineer Overview As a Senior AI Data... ...'s AI Center of Excellence, you will lead the design, development, and optimization...Full timeWorldwide
- ...digital payments choices, making transactions secure, simple, smart and accessible. Our... ...potential. Title and Summary Manager AI Engineering Mastercard's Business & Market Insights... ...advantage. We are looking for a Lead Engineer, Generative AI & ML Engineering...Full timeWorldwide
- ...technological convergence, our engineering talent is a... ...Lead the design, execution... ...scaling of end-to-end AI/ML and GenAI initiatives... ...integration into scalable, secure cloud-native... ...or AI, and at least 2+ years in a leadership... ..., gender identity, national origin, disability...Local area
- ...choices, making transactions secure, simple, smart and... ...Summary Manager, Software Engineering Overview We are... ...Software Engineering to lead the development of scalable... ...and code, and leverages AI-powered engineering... ...building production systems. 2+ years of engineering...Full timeTemporary workFor contractorsWorldwide
- ...choices, making transactions secure, simple, smart and... ...Director, Software Engineering Who is Mastercard?... ...Framework and experience leading multiple teams. Excellent... ...Applied knowledge of AI and scalable implementations... ...About You Manage 2 – 4 teams (10 – 12...Full timeWorldwide
- ...About Ping Identity: At Ping Identity, we believe... ...experiences both secure and seamless for... ...critical parts of the engineering system that help... ...capabilities, and AI-enabled engineering... ...developer platform, lead engineers, shape technical... ...engineering ~2+ years of...Full timeWork at officeLocal areaWorldwideFlexible hours2 days per week3 days per week
- ...a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships... ...greatest potential. Title and Summary Information Security Engineer II Overview Who is Mastercard? Mastercard is a global...Full timeWorldwide
- ...range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation... ...realize their greatest potential. Title and Summary Lead Business Analyst - Product Owner-2 Lead Product Manager – Technical (Product Owner) L6...Full timeWorldwide
- ...choices, making transactions secure, simple, smart and accessible.... ...Title and Summary Software Engineer II Overview: Mastercard... ...practices. Drive adoption of AI technologies across the Software... ...senior engineers and technical leads to receive mentorship and...Full timeWorldwide
- ...Kyber Network). About the role You'll be the dedicated security engineer at a derivative exchange (~250 people, 50-100 person dev team)... ...years in infrastructure or security engineering, with at least 2 years focused on AWS security ~ IAM beyond basic roles — you...Remote jobFull time
- ...for technological convergence, our engineering talent is a catalyst for innovation... ...Penetration Testing (VA/PT) operations. The Lead / Staff Operational Security Engineer will serve as the... ...religion, sex, sexual orientation, gender identity, national origin, disability, or...Local areaShift work
- ...at the intersection of AI and fintech. At Ocrolus... ...-the-loop verification engine, Ocrolus captures data... ...business requirements that securely scale over millions of... .... ~ Experience leading and owning projects from... ...of race, gender, gender identity, age, disability, national...Remote jobFull time
- ...payments choices, making transactions secure, simple, smart and accessible.... .... Title and Summary Software Engineer II – Integrations & API... ...• Plus: Java / Spring Boot, AI-assisted tools (e.g., GitHub Copilot... ...What You Bring - Required • 2-4 years of professional software...Full timeWorldwide
- ...choices, making transactions secure, simple, smart and... ...Senior Software Engineer Overview Be part... ...and validate cardholder identity. Our patented Java-based... ...like to develop industry leading solutions for fighting... ...Experience with Angular 2 or modern SPA frameworks...Full timeWorldwide
- ...choices, making transactions secure, simple, smart and accessible.... ...Title and Summary Software Engineer II Overview Mastercard is... ...DevSecOps best practices, automation, AI-enabled productivity, and... ...and Reverse Proxies Identity & Access Management (IAM) Authentication...Full timeWorldwide
- ...cryptocurrency landscape. Senior Software Engineer - Risk Location: Bengaluru (Onsite)... ...and derivative instruments, has financed $2.5B+ in loan originations and is the 1st... ...own voluntary survey questions about your identity that best aligns with your most true self...Full timeLocal area
- ...stress-test production software that helps evaluate frontier large language models before release. You will work directly with an AI lab engineering manager on fast-moving projects, integrating pre-release model APIs and contributing working code early in the engagement....Hourly payFull timeWeekday work
- ...cybersecurity, online privacy, identity protection and... ...grow, manage and secure their digital and... ...talent who see AI as a teammate – leveraging... ...Principal Data Engineer to serve as a... ...Cross-Team Projects: Lead projects that cross... ...development) Code Reviews: 2+ comprehensive...Remote jobFull timeFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead AI Security Engineer, AI Identities-2. Be the first to apply!

