Security Engineer III (~Senior Identity Security Engineer)

Anaplan

Gurugram District

On-site

INR 1,800,000 - 2,400,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Anaplan, Gurugram, India, is seeking an experienced Identity Security Engineer to advance our identity governance and administration program. You will administer SailPoint-like IGA, help implement Privileged Access Management, and shape governance for non‑human identities and AI agents.

You will also build automation, collaborate with HR, IT and Security, and help enforce least‑privilege access across hybrid cloud environments.

Qualifications

  • Demonstrated hands-on experience administering an enterprise IGA platform with lifecycle, connectors, and certifications.
  • Solid understanding of PAM concepts, vaulting, JIT access, and credential rotation.
  • Experience governing non‑human identities at scale, including API keys and secrets.
  • Knowledge of AI agent identity governance and lifecycle management.
  • Ability to build automation for provisioning and de-provisioning workflows.
  • Hands-on cloud IAM experience (AWS, Entra ID, or GCP) and PIM concepts.
  • Familiarity with core identity standards and security controls aligned to audits.

Responsibilities

  • IGA Platform Administration: manage SailPoint-style lifecycle and access governance.
  • PAM Build-Out: contribute to tool selection, requirements, and deployment.
  • NHI Lifecycle: govern service accounts, API keys, and tokens across the org.
  • AI Agent Identity: govern machine identities for AI-driven workflows.
  • Identity Automation: develop scripts and integrations to reduce manual work.
  • Access Governance: support reviews, SoD policy, and audit reporting.
  • Identity Architecture: align with Zero Trust and least-privilege across environments.
  • Stakeholder Collaboration: partner with HR, IT, Eng, and Security on policies.

Skills

IGA Platform Expertise
PAM Knowledge
Non‑Human Identity Mgmt
AI Agent Identity
Identity Automation
Cloud IAM
Scripting & Automation
Security Frameworks

Job description

Security Engineer III (~Senior Identity Security Engineer)

Gurugram, India

At Anaplan, we are a team of innovators focused on optimizing business decision‑making through our leading AI‑infused scenario planning and analysis platform so our customers can outpace their competition and the market.

What unites Anaplanners across teams and geographies is our collective commitment to our customers’ success and to our Winning Culture.

Our customers rank among the who’s who in the Fortune 50. Coca‑Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best‑in‑class platform.

Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebratingour wins – big and small.

Supported by operating principles of being strategy‑led, values‑based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together!

What you’ll be doing:

As a Senior Identity Security Engineer, you will be a key hands‑on contributor to Anaplan’s identity security function. Working as part of a collaborative security team, you will administer and mature our IGA capability, contribute to the build‑out of our Privileged Access Management programme, and help shape the governance of non‑human and AI agent identities as part of our broader Zero Trust strategy. Your core responsibilities will be to:

  • IGA Platform Administration: Be a key contributor to the day‑to‑day administration and ongoing development of Anaplan’s Identity Governance and Administration platform (currently SailPoint). This includes supporting the full identity lifecycle (joiner, mover, leaver), configuring and maintaining application connectors, building and refining role models, and running access certification campaigns to ensure least‑privilege access across the organisation.
  • PAM Programme Build‑Out: Play a key role in the evaluation, selection, and initial implementation of Anaplan’s Privileged Access Management capability. Help define requirements, assess tooling options, and work with cross‑functional stakeholders to design and deploy a PAM solution covering privileged account discovery and vaulting, just‑in‑time (JIT) access, session monitoring, and credential rotation.
  • Non‑Human Identity (NHI) Lifecycle Management: Contribute to the development and implementation of governance frameworks for non‑human identities across the enterprise, including service accounts, API keys, secrets, certificates, and OAuth tokens. Ensure all NHI are inventoried, governed, and subject to appropriate lifecycle controls, integrating with secrets management solutions where applicable.
  • AI Agent Identity & Security: Be a key technical contributor to identity security for AI agents and automated workflows, ensuring appropriate scoping, lifecycle management, and least‑privilege access models are applied. Help develop and enforce policies governing how AI agents authenticate, authorise, and interact with Anaplan’s systems and data.
  • Identity Automation & Engineering: Build and maintain automation to streamline identity processes, including provisioning and de‑provisioning workflows, access request fulfilment, and lifecycle rule development. Contribute scripts, integrations, and tooling that reduce manual effort and improve accuracy and consistency across identity operations.
  • Access Governance & Compliance: Support access review and certification processes, SoD (Separation of Duties) policy definition and enforcement, and identity‑related audit reporting. Contribute to Anaplan’s compliance programmes (e.g. SOC 2, ISO 27001) by ensuring identity controls are well‑documented, consistently applied, and evidenced for audit purposes.
  • Identity Architecture & Strategy: Contribute to the evolution of Anaplan’s identity security architecture, applying Zero Trust principles and advocating for least‑privilege and just‑in‑time access across cloud and on‑premises environments. Engage with engineering and platform teams to embed identity security requirements into new and existing systems.
  • Stakeholder Collaboration: Work closely with HR, IT, Engineering, and Security teams to define and maintain access policies, onboarding and off‑boarding processes, and role‑based access models. Communicate identity risks, control gaps, and remediation plans clearly to both technical and non‑technical audiences.
What you’ll bring to the role:

We are looking for an experienced identity security practitioner with deep hands‑on IGA expertise and a strong foundation across the broader identity and access management discipline. You will bring:

  • IGA Platform Expertise: Demonstrated hands‑on experience administering an enterprise IGA platform, with strong preference for SailPoint (IdentityNow or IdentityIQ). Experience should include identity lifecycle management, access certifications, connector configuration, role management, and lifecycle rule development. Familiarity with additional IGA platforms (e.g. Saviynt, Omada, One Identity) is highly desirable, given our intent to maintain platform‑agnostic capability.
  • PAM Knowledge & Capability Building: Solid understanding of Privileged Access Management concepts and technologies, including privileged account vaulting, session recording, JIT access, and credential rotation. Prior experience evaluating or implementing a PAM solution is a strong advantage; candidates who have contributed to a PAM programme build from the ground up are particularly sought after.
  • Non‑Human Identity Management: Experience governing NHI at scale, including service accounts, API keys, OAuth/OIDC tokens, certificates, and secrets. Familiarity with enterprise secrets management platforms (e.g. HashiCorp Vault, AWS Secrets Manager, Azure Key Vault, CyberArk Conjur) and an understanding of the unique risks associated with unmanaged or over‑privileged NHI.
  • AI Agent & Agentic Workflow Identity: Understanding of the identity and access challenges posed by AI agents and automated systems, including how to scope, govern, and lifecycle‑manage machine identities operating within or on behalf of AI‑driven workflows. Experience in this area is emerging and will be valued highly.
  • Identity Protocols & Standards: Strong working knowledge of core identity protocols and standards including SAML 2.0, OAuth 2.0, OIDC, SCIM, LDAP, and Kerberos, and their practical application in hybrid enterprise environments.
  • Cloud IAM: Hands‑on experience with cloud IAM platforms, particularly AWS IAM, Microsoft Entra ID (formerly Azure AD), and/or GCP IAM, including policy design, role management, and Privileged Identity Management (PIM) capabilities.
  • Scripting & Automation: Proficiency in one or more scripting or programming languages commonly used in identity automation (e.g. Python, PowerShell, Java/BeanShell for SailPoint rule development). Ability to build integrations and workflows that reduce manual identity operations.
  • Security Frameworks & Compliance: Familiarity with identity‑relevant security frameworks and compliance standards (e.g. NIST SP 800‑63, NIST CSF, ISO 27001, SOC 2), and an understanding of how IGA and PAM controls map to audit and regulatory requirements.

Communication & Collaboration: Strong ability to translate complex identity security concepts for non‑technical stakeholders, and to work cross‑functionally across HR, IT, Engineering, and Security to deliver identity outcomes. Clear documentation skills are essential

Our Commitment to Diversity, Equity, Inclusionand Belonging (DEIB)

We believe attracting and retaining the best talent and fostering an inclusive culture strengthens our business. DEIB improves our workforce, enhances trust with our partners and customers, and drives business success. Build your career in a place where diversity, equity, inclusion and belonging aren’t just words on paper – this is what drives our innovation, it’s how we connect, and it contributes to what makes us a market leader. We believe in a hiring and working environment where all people are respected and valued, regardless of gender identity or expression, sexual orientation, religion, ethnicity, age, neurodiversity, disability status, citizenship, or any other aspect which makes people unique. We hire you for who you are, and we want you to bring your authentic self to work every day!

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive equitable benefits and all privileges of employment. Please contact us to request accommodation.

C andidate data processed during our recruitment activities is handled in accordance with our Candidate Privacy Notice. This may include the use of artificial intelligence or automated tools to assist our team in evaluating qualifications.

As set forth in Anaplan’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Engineer III (~Senior Identity Security Engineer)
Security Engineer III (~Senior Identity Security Engineer)

Anaplan Inc • Gurugram District

On-site
INR 4,000,000 - 7,000,000
Security Engineer III (Senior Enterprise Security Engineer/Corporate IT Security Engineer)
Security Engineer III (Senior Enterprise Security Engineer/Corporate IT Security Engineer)

Anaplan Inc • Gurugram District

On-site
INR 2,500,000 - 3,500,000
VAPT-DevSecops Experts(Individual contributor)
VAPT-DevSecops Experts(Individual contributor)

Anaplan Inc • India

On-site
INR 2,000,000 - 2,800,000
Hybrid work model
Security Engineer III -SOC
Security Engineer III -SOC

Anaplan • Gurugram District

On-site
INR 1,500,000 - 2,100,000
Security Engineer III, Product Security-Senior Vulnerability Remediation Engineer
Security Engineer III, Product Security-Senior Vulnerability Remediation Engineer

Anaplan Inc • Gurugram District

Hybrid
INR 2,500,000 - 4,200,000
Hybrid work model
Senior Data Engineer
Senior Data Engineer

Anaplan Inc • India

On-site
INR 2,200,000 - 3,500,000
Security Engineer III, Product Security-P4 Senior Vulnerability Remediation Engineer
Security Engineer III, Product Security-P4 Senior Vulnerability Remediation Engineer

Anaplan • Gurugram District

Hybrid
INR 2,500,000 - 4,000,000
Senior Data Engineer
Senior Data Engineer

Anaplan • Gurugram District

On-site
INR 1,200,000 - 1,800,000
Principal Engineer - Devops
Principal Engineer - Devops

Anaplan Inc • Gurugram District

Hybrid
INR 4,000,000 - 7,000,000
Health insurance
Flex hours
Remote/hybrid options
+2
Data & Analytics Systems Engineer
Data & Analytics Systems Engineer

Anaplan Inc • India

On-site
INR 1,000,000 - 1,400,000