A

Security Engineer III (~Senior Identity Security Engineer)

Anaplan · Gurugram, India

6–12 yrs experiencePosted Yesterday
Apply now →

Job description

At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market. What unites Anaplanners across teams and geographies is our collective commitment to our customers’ success and to our Winning Culture. Our customers rank among the who’s who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best-in-class platform. Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebrating our wins – big and small. Supported by operating principles of being strategy-led, values-based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together! What you’ll be doing: As a Senior Identity Security Engineer, you will be a key hands-on contributor to Anaplan’s identity security function. Working as part of a collaborative security team, you will administer and mature our IGA capability, contribute to the build-out of our Privileged Access Management programme, and help shape the governance of non-human and AI agent identities as part of our broader Zero Trust strategy. Your core responsibilities will be to: • IGA Platform Administration: Be a key contributor to the day-to-day administration and ongoing development of Anaplan’s Identity Governance and Administration platform (currently SailPoint). This includes supporting the full identity lifecycle (joiner, mover, leaver), configuring and maintaining application connectors, building and refining role models, and running access certification campaigns to ensure least-privilege access across the organisation. • PAM Programme Build-Out: Play a key role in the evaluation, selection, and initial implementation of Anaplan’s Privileged Access Management capability. Help define requirements, assess tooling options, and work with cross-functional stakeholders to design and deploy a PAM solution covering privileged account discovery and vaulting, just-in-time (JIT) access, session monitoring, and credential rotation. • Non-Human Identity (NHI) Lifecycle Management: Contribute to the development and implementation of governance frameworks for non-human identities across the enterprise, including service accounts, API keys, secrets, certificates, and OAuth tokens. Ensure all NHI are inventoried, governed, and subject to appropriate lifecycle controls, integrating with secrets management solutions where applicable. • AI Agent Identity & Security: Be a key technical contributor to identity security for AI agents and automated workflows, ensuring appropriate scoping, lifecycle management, and least-privilege access models are applied. Help develop and enforce policies governing how AI agents authenticate, authorise, and interact with Anaplan’s systems and data. • Identity Automation & Engineering: Build and maintain automation to streamline identity processes, including provisioning and de-provisioning workflows, access request fulfilment, and lifecycle rule development. Contribute scripts, integrations, and tooling that reduce manual effort and improve accuracy and consistency across identity operations. • Access Governance & Compliance: Support access review and certification processes, SoD (Separation of Duties) policy definition and enforcement, and identity-related audit reporting. Contribute to Anaplan’s compliance programmes (e.g. SOC 2, ISO 27001) by ensuring identity controls are well-documented, consistently applied, and evidenced for audit purposes. • Identity Architecture & Strategy: Contribute to the evolution of Anaplan’s identity security architecture, applying Zero Trust principles and advocating for least-privilege and just-in-time access across cloud and on-premises environments. Engage with engineering and platform teams to embed identity security requirements into new and existing systems. • Stakeholder Collaboration: Work closely with HR, IT, Engineering, and Security teams to define and maintain access policies, onboarding and offboarding processes, and role-based access models. Communicate identity risks, control gaps, and remediation plans clearly to both technical and non-technical audiences. What you’ll bring to the role: We are looking for an experienced identity security practitioner with deep hands-on IGA expertise and a strong foundation across the broader identity and access management discipline. You will bring: • IGA Platform Expertise: Demonstrated hands-on experience administering an enterprise IGA platform, with strong preference for SailPoint (IdentityNow or IdentityIQ). Experience should include identity lifecycle management, access certifications, connector configuration, role management, and lifecycle rule development. Familiarity with additional IGA platforms (e.g. Saviynt, Omada, One Identity) is highly desirable, given our intent to maintain platform-agnostic capability. • PAM Knowledge & Capability Building: Solid understanding of Privileged Access Management concepts and technologies, including privileged account vaulting, session recording, JIT access, and credential rotation. Prior experience evaluating or implementing a PAM solution is a strong advantage; candidates who have contributed to a PAM programme build from the ground up