AI Identity Security Engineer

Regions Bank

Birmingham (AL)

Hybrid

USD 133,059 - 166,810

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
Disability Benefits

Job summary

Regions Bank is seeking a Cloud DevSecOps Engineer to enhance its cloud strategy. Key responsibilities include developing robust CI/CD pipelines and collaborating with various stakeholders to implement automation in deployments and operations. The ideal candidate will have extensive experience in DevSecOps, Python programming, and cloud technologies.

This position is full-time and primarily offsite, with occasional in-office requirements. The role offers competitive compensation and an array of benefits, including medical and retirement plans.

Qualifications

  • High School Diploma or GED and eight years of related experience in Information Security or IT.
  • Experience with cloud-native applications, AWS or Azure technologies.
  • Ability to develop CI/CD pipelines using YAML specs and automation tools.

Responsibilities

  • Develop and implement cloud CI/CD pipelines for automated deployments.
  • Collaborate with IT stakeholders to ensure pipeline integration.
  • Research new technologies for efficiency improvement.

Skills

DevSecOps
Python
Cloud Infrastructure
Automation tools (Ansible, Terraform)

Education

High School Diploma or GED with 8+ years experience in IT

Tools

AWS
Azure
Jenkins
Ansible
Terraform
Packer

Job description

Job Description

At Regions, the Cloud DevSecOps Engineer contributes to the advancement of cloud strategy. The primary focus of this role includes developing, communicating, and implementing robust and secure cloud continuous integration and continuous delivery (CI/CD) pipelines. This role works closely with stakeholders to create fully automated pipelines which support current DevSecOps best practices.

Primary Responsibilities
  • Partners with other engineers and information technology staff to orchestrate code builds, quality and security analyses, deployments, and automated testing through CI/CD release candidacy pipelines
  • Articulates business needs and translate them into technology solutions
  • Models release candidate CI/CD pipelines as a mechanism to communicate the states and steps necessary to determine a release candidate for each application and service
  • Designs and develops fully autonomous CI/CD pipelines which facilitate cloud deployments that include automation of all infrastructure, services and application build and deployment
  • Ensures that all parts of the pipeline follow good software engineering practices to include automated tests and infrastructure tests
  • Researches new technologies that will improve efficiency and effectiveness
  • Implements highly scalable CI/CD platforms to support high change volumes and fast feedback
  • Automates operational activities and tasks
  • Responds to performance issues identified by alerts and reported incidents related to CI/CD platforms
  • Builds tools which reduce errors and improve overall customer experiences
  • Assists in troubleshooting of production issues and ensures pipeline and infrastructure produces clear documentation and metrics which enable Root Cause Analysis
  • Develops and tests – Ansible Playbooks, Terraform Scripts, Packer Scripts and establishes immutable infrastructure such that patches are an artifact of the past
  • Works with Enterprise Architecture, Information Security (InfoSec), Software Delivery, and Quality Assurance to enable the organization to move to the cloud using complete automation
  • Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices

This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.

Requirements
  • High School Diploma or GED and eight (8) years of related post‑secondary education and/or experience in Information Security or Information Technology
Preferences
  • Four (4) years of relevant DevSecOps experience
  • AWS DevOps certification or Azure DevOps certification
  • Experience in building / deploying cloud native applications – OpenShift, Azure Kubernetes Service (AKS)
  • Experience in observing real‑time metrics in the pipeline and deployment strategies – Blue/Green, Canary Deployment
  • Experience with either AWS or Azure cloud technologies
  • Experience with interfacing with secrets management solutions like Hashicorp Vault
  • Familiar with implementing Chaos engineering principles in the pipeline to determine weak links and suggest solutions
  • Familiar with testing tools used to facilitate automation and integration of the tools into CI/CD pipelines
  • Must be comfortable in developing pipelines as code using YAML specs, Ansible playbooks
Skills and Competencies
  • Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance
  • Excellent communication skills and willingness to mentor developers and other team members in the art of DevSecOps
  • Excellent knowledge of Cloud infrastructure, networking, services, and cloud architectural patterns; specifically, compute using virtual machines, managed infrastructure, containers, serverless, as well as database services, security services, and application services
  • Proficient in Python programming language
  • Understanding of Shift Left principles and facilitation technologies
  • Working knowledge of Jenkins, Azure DevOps, Ansible, Terraform, Packer, Git, ServiceNow – a big plus
Additional Responsibilities and Preferred Qualifications
  • Design and enforce scalable authorization models for AI agents and non‑human identities across AWS and multi‑cloud, enabling secure, low‑friction deployment at scale
  • Define identity patterns for agents and workloads (ephemeral credentials, token‑based auth, delegation, scoped permissions) across their full lifecycle
  • Build automated guardrails for provisioning, privilege management, and runtime access—leveraging CI/CD pipelines, APIs, and reusable, idempotent frameworks
  • Establish enterprise standards for non‑human identity governance, including lifecycle controls, auditability, and policy enforcement across hybrid environments
  • Partner with platform and engineering teams to embed identity controls into agent frameworks, SDKs, and deployment pipelines
  • Apply strong engineering practices (Python, Java, PowerShell) to integrate systems via REST APIs and modern auth protocols (OAuth, OIDC, SAML, SCIM), with hands‑on experience in AWS IAM, Azure/Entra ID, and SailPoint integrations
  • Preferred experience: Strong background in identity governance automation, IAM, or DevSecOps, with hands‑on engineering experience; familiarity with AI/ML systems, agentic architectures, and their associated security risks.
Location

Riverchase Operations Center

Hoover, Alabama

Position Type

Full time

Compensation Details

Pay ranges are job specific and are provided as a point‑of‑market reference for compensation decisions. Other factors which directly impact pay for individual associates include: experience, skills, knowledge, contribution, job location and, most importantly, performance in the job role. As these factors vary by individuals, pay will also vary among individual associates within the same job.

The target information listed below is based on the Metropolitan Statistical Area Market Range for where the position is located and level of the position.

Job Range Target

Minimum: $133,059.85 USD

Median: $166,810.00 USD

Incentive Pay Plans

This job may participate in an annual discretionary bonus plan.

Benefits Information
  • Paid Vacation/Sick Time
  • 401K with Company Match
  • Medical, Dental and Vision Benefits
  • Disability Benefits
  • Health Savings Account
  • Flexible Spending Account
  • Life Insurance
  • Parental Leave
  • Employee Assistance Program
  • Associate Volunteer Program
Equal Opportunity Employer/including Disabled/Veterans

Regions is an Equal Opportunity Employer. All qualified applicants are considered, without regard to disability or veteran status, for all positions. All non‑discriminatory WMA, Title VII, ADA, 42 U.S.C. § 1981, and other laws to the extent applicable.

Important Employment Information

Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full‑time basis.

This position is currently offsite, preferably close to a Regions office within our retail branch footprint. Associates will work from their home primarily and may be expected to go on site for meetings or other events as needed.

Job applications at Regions are accepted electronically through our career site for a minimum of five business days from the date of posting. Job postings for higher‑volume positions may remain active for longer than the minimum period due to business need and may be closed at any time thereafter at the discretion of the company.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Identity Security Engineer
AI Identity Security Engineer

Regions Financial Corporation • Hoover (AL)

On-site
USD 133,059 - 166,810
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Cloud DevSecOps Engineer
Cloud DevSecOps Engineer

Regions Bank • Atlanta (GA)

On-site
USD 134,614 - 164,529
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+6
Cloud DevSecOps Engineer
Cloud DevSecOps Engineer

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 133,000 - 167,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+2
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Regions Bank • Town of Texas (WI)

On-site
USD 133,000 - 167,000
401K with Company Match
Medical, Dental and Vision Benefits
Paid Vacation/Sick Time
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 133,000 - 167,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+6
Cloud DevSecOps Engineer
Cloud DevSecOps Engineer

Regions Bank • Charlotte (NC)

On-site
USD 143,999 - 179,910
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Identity and Access Management (IAM) Manager
Identity and Access Management (IAM) Manager

Regions Bank • Atlanta (GA)

On-site
USD 140,000 - 185,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Regions Bank • Atlanta (TX)

On-site
USD 133,000 - 180,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Identity and Access Management (IAM) Engineer
Identity and Access Management (IAM) Engineer

Regions Bank • Charlotte (NC)

On-site
USD 134,000 - 176,000
Paid Vacation/Sick Time
401(k) with Company Match
Medical, Dental and Vision Benefits
+2
Identity and Access Management (IAM) Engineer
Identity and Access Management (IAM) Engineer

Regions Bank • Birmingham (AL)

On-site
USD 134,000 - 176,000
401K with Company Match
Medical, Dental and Vision Benefits
Disability Benefits
+6