Principal Cloud Iam Engineer

Workday

Reston, VA, USA
Base: $184,800 - $277,200 usd (reston); base: $167...
Fully remote
10+ years cloud security or iam experience
Aws iam foundations scps multi-account architecture
Okta enterprise scale sso adaptive mfa scim
This role serves as the central line of defense for Workday's vital data, infrastructure, and applications through proactive security posture leadership

Job Summary

  • This role serves as the central line of defense for Workday's vital data, infrastructure, and applications through proactive security posture leadership.
  • You will architect bold solutions for human and non-human identity, including emerging patterns for securing AI agents in production environments.
  • Workday offers a flexible work approach requiring at least half of your time each quarter in-office or with customers, combined with comprehensive benefits.

Matching Summary

This role serves as the central line of defense for Workday's vital data, infrastructure, and applications through proactive security posture leadership.

Salary

Base: $184,800 - $277,200 USD (Reston); Base: $167,200 - $300,000 USD (Other US locations); Bonus/Equity: Eligible for Workday Bonus Plan and annual refresh stock grants

Skills & Requirements

Must-have

  • 10+ years cloud security or IAM experience
  • AWS IAM foundations SCPs multi-account architecture
  • Okta enterprise scale SSO adaptive MFA SCIM
  • Federation protocols SAML OIDC OAuth2 debugging
  • Terraform infrastructure-as-code CI/CD integration
  • AI agentic identity lifecycle management NHI
  • Zero Trust implementation identity-aware perimeters

Nice-to-have

  • GCP familiarity advantageous
  • AI security tooling LLM access governance
  • Risk mitigation mindset pragmatic trade-offs
  • Mentoring less senior engineers
  • Cross-functional technical alignment without authority

Key Requirements

  • 10+ years experience in cloud security or IAM
  • 3+ years in senior or architect-level role
  • Hands-on engagement with AI and agentic identity
  • AWS Certified Security Specialty signal of depth
  • Proven ability to drive technical alignment across stakeholders

Work Rights

Not specified

Tailored Resume

Cover Letter