AVP IAM AI Engineer

LPL Financial

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Fort Mill, NCCharlotte, NCNew York, NYSan Diego, CAAustin, TXTempe, AZ
Salary
$122,570–$204,249 / yr
Posted
31 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $185k
This role $163k
$110k most similar roles pay here $237k

This role pays less than 60% of similar roles. Most pay $149,462–$219,962 — the shaded band above. At the midpoint, this role pays about $163k versus about $185k for comparable roles.

Based on 240 similar postings.

Employer

About LPL Financial

LPL Financial is the largest independent broker-dealer in the United States, providing brokerage and investment advisory services to independent financial advisors and financial institutions. Industry: Financial Services & Wealth Management

LPL Financial currently has 59 open roles on FindRole.

Listed pay typically runs $140,959–$234,882 across 54 roles with salary data.

Most-posted roles

View all roles at LPL Financial

At a glance

TL;DR · AVP IAM AI Engineer

As an AVP, IAM AI Engineer, you will join a technical leadership team to design, operationalize, and automate identity controls for human and non-human actors. You will focus on building runtime controls, secrets workflows, and governance guardrails specifically for AI agents and agentic identities. Your daily work involves developing policy-as-code, establishing reference architectures for user-to-agent and agent-to-agent flows, and partnering with data science teams to embed authentication and authorization into new AI applications from the design phase. You will utilize technologies including Ping Identity, SailPoint, HashiCorp Vault, Python, Terraform, and CI/CD pipelines within AWS, Azure, or GCP environments. The role addresses the critical challenge of securing emerging AI systems by managing secrets, enforcing least-privilege access, and ensuring compliance in a regulated financial services environment while leading a team to scale these essential security capabilities.

What you'll do

  • Automate and operationalize identity runtime controls for both human and non-human actors across the environment.
  • Design and build governance controls for AI agents, including provisioning, rotation, and deprovisioning.
  • Develop automated secrets management workflows for AI systems using just-in-time and ephemeral credentials.
  • Define and enforce fine-grained, least-privilege authorization models expressed as policy-as-code.
  • Establish reference architectures and standards for user-to-agent and agent-to-agent authentication flows.
  • Partner with engineering teams to integrate identity and security controls into new AI applications during early design.
  • Integrate identity telemetry with SIEM/SOC tools to monitor and detect anomalies in non-human behavior.
  • Recruit, mentor, and lead a team to manage the roadmap for agentic and non-human identity systems.

What we're looking for

  • Must have 5+ years in identity and access management or information security with hands-on engineering experience.
  • Must have demonstrated experience building and leading technical teams.
  • Must have 5+ years of experience with Ping Identity or a comparable access-management/federation platform.
  • Must have 5+ years of experience with SailPoint or a comparable identity governance and administration platform.
  • Must have 3+ years of experience with Idira, HashiCorp Vault, or a comparable secrets-management platform.
  • Must possess proficiency in Python, infrastructure-as-code (Terraform), CI/CD pipelines, and REST API integration.
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
  • Relevant certifications such as CISSP, CyberArk, SailPoint, Ping, or major cloud security certifications are preferred.

More like this

Similar roles

Senior IAM Automation Engineer

Apex

Austin, TX 149 days ago $108,800$136,000
Okta Entra ID Tines Terraform Python PowerShell Go Active Directory Adaxes AWS IAM GCP Cloud Identity SAML OIDC SCIM CI/CD Ansible Workday ServiceNow Slack Teams M365
7+ yrs exp Hybrid

Principal Security Engineer, Identity and Access Management

Nordstrom

Seattle, WA 11 days ago $191,000$297,000
IAM Identity Governance Privileged Access Management PAM CIAM SSO OAuth 2.0 OpenID Connect SAML SCIM SPIFFE/SPIRE FIDO2 WebAuthn AWS IAM Azure Entra ID GCP IAM Zero Trust infrastructure-as-code CI/CD Identity Orchestration
10+ yrs exp Hybrid

Software Engineering SMTS, Enterprise IAM

Salesforce

Remote (Bellevue, WA) 46 days ago $148,500$223,900
IAM Identity Governance OAuth 2.0 OpenID Connect SAML SCIM LDAP REST JSON XML Java Go Python React Docker Kubernetes Terraform AWS Azure GCP CI/CD Git Jenkins Prompt Engineering
5+ yrs exp Remote

AVP API Engineer

Synchrony

Alpharetta, GA +2 10 days ago $115,000$200,000
Microservices Spring Boot Spring Cloud J2EE RESTful APIs Pivotal Cloud Foundry CI/CD Jenkins Bitbucket uDeploy SQL MySQL Gemfire Splunk GitHub Copilot SAFe Agile JSON XML SOAP
8+ yrs exp

AVP Software Engineer

LPL Financial

Fort Mill, NC +1 25 days ago $140,500$234,100
SDLC AWS Azure Google Cloud Platform Python Java C# JavaScript SQL NoSQL Data Warehousing FinTech Cybersecurity Infrastructure
8+ yrs exp

AVP AI Developer

State Street

Burlington, MA 86 days ago $90,000$157,500
LLMs RAG Python Azure Kafka Vector Databases Microservices CI/CD API Management Distributed Systems Prompt Engineering Redis Hazelcast Snowflake TypeScript Java C# event-driven architecture Agile SDLC
2+ yrs exp