AI Identity Security Engineer

Regions Financial Corporation

Hoover (AL)

On-site

USD 133,059 - 166,810

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
Disability Benefits

Job summary

Regions Financial Corporation is looking for a Cloud DevSecOps Engineer in Hoover, Alabama. This role focuses on developing secure CI/CD pipelines and automating cloud deployments to enhance DevSecOps practices.

The ideal candidate will have extensive experience in cloud technologies, security, and process improvement. Benefits include paid time off, 401K with company match, and medical benefits.

Qualifications

  • 8+ years of experience in Information Security or IT.
  • Experience with deploying cloud native applications.
  • AWS or Azure DevOps certification preferred.

Responsibilities

  • Develop and implement CI/CD pipelines for cloud applications.
  • Partner with IT staff to automate workflow and testing.
  • Ensure compliance with risk management and cybersecurity practices.

Skills

Python programming language
Excellent communication skills
Knowledge of cloud infrastructure
DevSecOps best practices

Education

High School Diploma or GED
Related post‑secondary education or experience

Tools

Jenkins
Azure DevOps
Ansible
Terraform

Job description

Job Description

At Regions, the Cloud DevSecOps Engineer contributes to the advancement of cloud strategy. The primary focus of this role includes developing, communicating, and implementing robust and secure cloud continuous integration and continuous delivery (CI/CD) pipelines. This role works closely with stakeholders to create fully automated pipelines which support current DevSecOps best practices.

Primary Responsibilities
  • Partners with other engineers and information technology staff to orchestrate code builds, quality and security analyses, deployments, and automated testing through CI/CD release candidacy pipelines
  • Articulates business needs and translate them into technology solutions
  • Models release candidate CI/CD pipelines as a mechanism to communicate the states and steps necessary to determine a release candidate for each application and service
  • Designs and develops fully autonomous CI/CD pipelines which facilitate cloud deployments which includes automation of all infrastructure, services and application build and deployment
  • Ensures that all parts of the pipeline follow good software engineering practices to include automated tests and infrastructure tests
  • Researches new technologies that will improve efficiency and effectiveness
  • Implements highly scalable CI/CD platforms to support high change volumes and fast feedback
  • Automates operational activities and tasks
  • Responds to performance issues identified by alerts and reported incidents related to CI/CD platforms
  • Builds tools which reduce errors and improve our overall customer experiences
  • Assists in troubleshooting of production issues and ensures pipeline and infrastructure produce clear documentation and metrics which enable root cause analysis
  • Develops and tests – Ansible playbooks, Terraform scripts, Packer scripts, and establishes immutable infrastructure such that patches are an artifact of the past
  • Works with Enterprise Architecture, Information Security (InfoSec), Software Delivery, and Quality Assurance to enable the organization to move to the cloud using complete automation
  • Ensures compliance with risk management programs, rules and regulations, and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices
Requirements
  • High School Diploma or GED and eight (8) years of related post‑secondary education and/or experience in Information Security or Information Technology
Preferences
  • Four (4) years of relevant DevSecOps experience
  • AWS DevOps certification or Azure DevOps certification
  • Experience in building/deploying cloud native applications – OpenShift, Azure Kubernetes Service (AKS)
  • Experience observing real‑time metrics in the pipeline and deployment strategies – Blue/Green, Canary Deployment
  • Experience with either AWS or Azure cloud technologies
  • Experience with interfacing with secrets‑management solutions like Hashicorp Vault
  • Familiar with implementing chaos engineering principles in the pipeline to determine weak links and suggest solutions
  • Familiar with testing tools used to facilitate automation and integration of the tools into CI/CD pipelines
  • Must be comfortable developing pipelines as code using yaml specs, Ansible playbooks
Skills and Competencies
  • Ability to interpret and ensure compliance with applicable rules, regulations, and industry guidance
  • Excellent communication skills and willingness to mentor developers and other team members in the art of DevSecOps
  • Excellent knowledge of cloud infrastructure, networking, services, and cloud architectural patterns; specifically, compute using virtual machines, managed infrastructure, containers, serverless, as well as database services, security services, and application services
  • Proficient in Python programming language
  • Understanding of shift‑left principles and facilitation technologies
  • Working knowledge of Jenkins, Azure DevOps, Ansible, Terraform, Packer, Git, ServiceNow a big plus
Additional Responsibilities and Preferred Qualifications
  • Design and enforce scalable authorization models for AI agents and non‑human identities across AWS and multi‑cloud, enabling secure, low‑friction deployment at scale
  • Define identity patterns for agents and workloads (ephemeral credentials, token‑based auth, delegation, scoped permissions) across their full lifecycle
  • Build automated guardrails for provisioning, privilege management, and runtime access—leveraging CI/CD pipelines, APIs, and reusable, idempotent frameworks
  • Establish enterprise standards for non‑human identity governance, including lifecycle controls, auditability, and policy enforcement across hybrid environments
  • Partner with platform and engineering teams to embed identity controls into agent frameworks, SDKs, and deployment pipelines
  • Apply strong engineering practices (Python, Java, PowerShell) to integrate systems via REST APIs and modern auth protocols (OAuth, OIDC, SAML, SCIM), with hands‑on experience in AWS IAM, Azure/Entra ID, and SailPoint integrations
  • Preferred experience: Strong background in identity governance automation, IAM, or DevSecOps, with hands‑on engineering experience; familiarity with AI/ML systems, agentic architectures, and their associated security risks
Offsite Work Location

This position is currently offsite, preferably close to a Regions office within our retail branch footprint. Associates will work from their home primarily and may be expected to go on site for meetings or other events as needed.

Visa Sponsorship

Regions will not sponsor applicants for work visas for this position at this time. Applicants for this position must currently be authorized to work in the United States on a full‑time basis.

Position Type

Full time

This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.

Compensation Details

Pay ranges are job specific and are provided as a point‑of‑market reference for compensation decisions. Other factors which directly impact pay for individual associates include: experience, skills, knowledge, contribution, job location and, most importantly, performance in the job role.

Job Range Target:

Minimum: $133,059.85 USD

Median: $166,810.00 USD

Incentive Pay Plans: This job may participate in an annual discretionary bonus plan.

Benefits Information
  • Paid Vacation/Sick Time
  • 401K with Company Match
  • Medical, Dental and Vision Benefits
  • Disability Benefits
  • Health Savings Account
  • Flexible Spending Account
  • Life Insurance
  • Parental Leave
  • Employee Assistance Program
  • Associate Volunteer Program
Location Details

Riverchase Operations Center

Location

Hoover, Alabama

Equal Opportunity Employer

Equal Opportunity Employer/including Disabled/Veterans

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

AI Identity Security Engineer
AI Identity Security Engineer

Regions Bank • Birmingham (AL)

Hybrid
USD 133,000 - 167,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Regions Bank • Atlanta (TX)

On-site
USD 133,000 - 180,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1
Identity and Access Management (IAM) Engineer
Identity and Access Management (IAM) Engineer

Regions Bank • Atlanta (GA)

On-site
USD 134,000 - 176,000
Paid Vacation/Sick Time
401(k) with Company Match
Medical, Dental and Vision Benefits
+3
Identity and Access Management (IAM) Engineer
Identity and Access Management (IAM) Engineer

Regions Bank • Charlotte (NC)

On-site
USD 134,000 - 176,000
Paid Vacation/Sick Time
401(k) with Company Match
Medical, Dental and Vision Benefits
+2
Cloud DevSecOps Engineer
Cloud DevSecOps Engineer

Regions Bank • Atlanta (GA)

On-site
USD 134,614 - 164,529
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+6
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Regions Bank • Town of Texas (WI)

On-site
USD 133,000 - 167,000
401K with Company Match
Medical, Dental and Vision Benefits
Paid Vacation/Sick Time
Cloud DevSecOps Engineer - Amazon Connect
Cloud DevSecOps Engineer - Amazon Connect

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 133,000 - 167,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+6
Identity and Access Management (IAM) Manager
Identity and Access Management (IAM) Manager

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 140,000 - 185,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+3
Cloud DevSecOps Engineer
Cloud DevSecOps Engineer

Fayette Chamber of Commerce • Atlanta (GA)

On-site
USD 133,000 - 167,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+2
Identity and Access Management (IAM) Manager
Identity and Access Management (IAM) Manager

Regions Bank • Charlotte (NC)

On-site
USD 140,000 - 185,000
Paid Vacation/Sick Time
401K with Company Match
Medical, Dental and Vision Benefits
+1