408,526open jobs
14,178companies
72,784added this week
Browse all
Salary
$175k – $250k per year
Location
In office
Seniority
Principal · 10+ years exp
Overview
Company
Impact
Profile match
Citizens Financial Group is one of the oldest and largest financial institutions in the United States, offering a comprehensive suite of commercial and retail banking services. Headquartered in Providence, Rhode Island, the enterprise operates an extensive network of physical branches, ATMs, and digital platforms across multiple regions. Through its tailored personal, private, and corporate solutions, the bank assists individuals, small businesses, and institutions in managing capital and achieving their financial goals.

DISTINGUISHED ENGINEER, AGENTIC IDENTITY & NON HUMAN IDENTITY SECURITY

Position Summary

Your role as Distinguished Engineer is to work with engineering teams and architecture to produce high quality technology solutions that enable Citizens' next generation identity, security, and AI capabilities. You will be given the autonomy to lead, design, and develop innovative solutions addressing some of the most complex challenges facing the banking industry as organizations evolve from human centric identity models toward AI driven, machine driven, and autonomous systems.

As a Distinguished Engineer, you will serve as a peer leader and technical visionary responsible for defining and advancing the enterprise strategy for Agentic Identity, Non Human Identities (NHIs), machine identity governance, and secure AI enabled ecosystems. You will partner across engineering, architecture, security, and product organizations to establish secure identity frameworks that support APIs, workloads, AI agents, service accounts, and emerging autonomous technologies at enterprise scale.

The breadth of Citizens operations ensures a diverse set of opportunities to shape the future of identity, security, and AI as the bank continues its transformation toward innovation and customer centric experiences.

Responsibilities

Technical Leadership & Engineering Excellence

  • Collaborate with engineering teams and architects to design innovative identity and security solutions that align with enterprise architecture principles and strategic business goals.
  • Lead the design, development, and implementation of modern software platforms, services, and security capabilities that support enterprise scale digital transformation initiatives.
  • Serve as a technical leader and trusted advisor across multiple engineering organizations, influencing strategic technology decisions and architectural direction.
  • Infuse scalability, reliability, resiliency, maintainability, and security into distributed systems and service based architectures.
  • Promote engineering excellence, innovation, and accountability through mentoring, technical leadership, and thought partnership.
  • Communicate complex technical concepts effectively to engineers, architects, executives, and business stakeholders.

Agentic Identity & Non Human Identity Architecture

  • Design and champion enterprise architectures for Non Human Identities (NHIs), including AI agents, service accounts, workload identities, machine identities, APIs, autonomous systems, and cloud native workloads.
  • Define and implement identity security frameworks for AI agents, including authentication, authorization, secrets management, token governance, lifecycle management, and policy enforcement.
  • Lead the development of secure identity architectures supporting agentic systems across cloud, SaaS, hybrid, and on premises environments.
  • Establish enterprise standards for machine identity governance, workload identity management, credential security, and privileged access controls.
  • Design secure authentication and authorization models supporting autonomous interactions between AI agents, applications, APIs, cloud services, and enterprise platforms.
  • Architect solutions that support continuous authentication and continuous authorization across highly distributed digital ecosystems.
  • Develop scalable identity strategies for machine to machine communications, API interactions, workload identities, service meshes, and microservices architectures.
  • Define governance frameworks that ensure accountability, visibility, auditability, and compliance for AI agents and machine identities operating across the enterprise.
  • Partner with engineering and architecture teams to secure emerging identity patterns associated with AI agents, autonomous workflows, and non human actors.

Modern Identity & Access Management

  • Design and implement identity solutions leveraging OAuth 2.0, OpenID Connect (OIDC), token based security, API authorization frameworks, and modern identity standards.
  • Establish secure identity patterns for cloud native applications, distributed systems, APIs, microservices, and SaaS platforms.
  • Strengthen enterprise identity controls through least privilege access, workload identity governance, privileged access management, credential management, and authorization policy design.
  • Drive innovation in identity security to address evolving risks associated with machine identities, AI systems, non human accounts, and autonomous technologies.

Risk Management & Security Strategy

  • Identify, assess, and mitigate risks associated with credential compromise, excessive privileges, unmanaged machine identities, orphaned service accounts, and unauthorized agent activity.
  • Collaborate with governance, risk, compliance, and security teams to align identity strategies with regulatory requirements and enterprise risk objectives.
  • Evaluate emerging technologies, industry trends, and market developments related to identity, AI, machine identity governance, and autonomous systems.
  • Influence long term enterprise strategy for identity security, agentic identity, and next generation access management capabilities.

Required Qualifications

  • 10+ years of hands on software engineering, platform engineering, identity engineering, security engineering, or related technical experience.
  • Deep expertise in Identity and Access Management (IAM), Customer Identity and Access Management (CIAM), Non Human Identity (NHI), machine identity, workload identity, privileged access management, or related disciplines.
  • Demonstrated expertise designing and implementing modern authentication and authorization architectures using OAuth 2.0, OpenID Connect (OIDC), token based security models, and API security frameworks.
  • Experience securing machine identities, service accounts, workload identities, cloud native platforms, APIs, and distributed application ecosystems.
  • Strong understanding of modern cloud architectures and identity challenges across hybrid, SaaS, and cloud native environments.
  • Experience developing software in Python and mastery of at least one additional modern programming language.
  • AWS experience, including securing and managing sensitive assets and enterprise workloads.
  • Bash and Linux experience.
  • Experience with CI/CD pipelines including Jenkins, CircleCI, GitHub Actions, or equivalent technologies.
  • Strong understanding of distributed systems, APIs, microservices, and cloud architecture patterns.
  • Demonstrated ability to lead, mentor, and influence senior engineering teams.
  • Proven ability to communicate highly technical concepts to executive and business audiences.
  • Strong problem solving, analytical, and strategic thinking skills.
  • Understanding of data structures and algorithms including linked lists, arrays, dictionaries, maps, and object oriented design principles.

Preferred Qualifications

  • Experience designing identity solutions for AI agents, autonomous systems, machine identities, and emerging agentic technologies.
  • Experience within financial services, fintech, cloud, cybersecurity, or highly regulated industries.
  • Experience leading enterprise scale identity modernization or transformation programs.
  • AWS, Azure, Google Cloud, or identity related certifications.
  • Recognized thought leadership through publications, conference presentations, patents, open source contributions, or industry participation.

Education and Certifications

Required

  • Bachelor's Degree in Computer Science, Software Engineering, Information Security, Computer Engineering, or a related technical discipline.

Preferred

  • Master's Degree in a related field.
  • Industry certifications in cloud architecture, security, IAM, CIAM, or identity governance.

Why This Role Matters

This role will help define how Citizens securely enables AI agents, machine identities, APIs, cloud workloads, and emerging non human actors across the enterprise. The Distinguished Engineer will play a critical leadership role in shaping the future of Agentic Identity, ensuring secure, scalable, and governed interactions between people, applications, AI systems, and autonomous technologies.

Compensation

The salary range for this position is $175,000 to $250,000 per year, plus an opportunity to earn additional incentive earnings. Actual pay is based on various factors including, but not limited to, the budget, work location, and relevant skills and experience.

Benefits

Comprehensive benefits include medical, dental, and vision coverage, retirement plans, parental leave, flexible work arrangements, education reimbursement, wellness programs, and generous paid time off exceeding local requirements.

https://jobs.citizensbank.com/benefits.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
408,526 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$13k – $31k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Chennai
AI/ML
AI Agents
Edge AI
Apply
$13k – $30k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Mumbai
AI/ML
AI Agents
Edge AI
Apply
$13k – $29k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Mumbai
SQL
Databases
MS SQL
AI/ML
AI Agents
Edge AI
DevOps
Azure
Analytics
Power BI
Tableau
Apply
$18k – $43k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Mumbai
AI/ML
AI Agents
Edge AI
DevOps
IAM
Incident Management
Apply
$14k – $37k per year (Estimated) • Remote/Hybrid • Full-Time • Bachelor's Degree • Mumbai
COBOL
Java
TypeScript
JavaScript
Java
Hibernate
Databases
Apache Solr
AI/ML
AI Agents
Edge AI
Frontend
Angular
DevOps
Azure
Apply
$105k – $110k per year • In office • Bachelor's Degree • New York
Apply
$266k – $323k per year • In office • Bachelor's Degree
Apply
$58k – $72k per year • In office • 2+ years exp • High School Diploma
Apply
Remote/Hybrid • 2+ years exp • High School Diploma • Riverside
Apply
In office • 10+ years exp
Apply
See all jobs
This is one of many
408,526 more open roles from verified company boards, updated every day.