yoinka

Lead AI Security Engineer, AI Identities-2

Mastercard

Pune, IndiaSenior
Sign in to applyVerified 2h ago
Location
Pune, India
Work model
On-Site
Level
Senior
Posted
Sep 7, 2026

About this role

Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title and Summary Lead AI Security Engineer, AI Identities-2 Job Description Summary As an Information Security Engineer – AI Identity Security, you will be responsible for securing the identities associated with AI systems, including models, agents, services, pipelines, and non‑human actors that interact with data, infrastructure, and other systems. This role focuses on the discovery, lifecycle management, control enforcement, and monitoring of AI identities to ensure they are properly governed, least‑privileged, and continuously assessed for risk.

Key Responsibilities

AI Identity Discovery & Inventory • Design and operate mechanisms to discover and inventory AI identities, including: o AI models, agents, and autonomous workflows o Service accounts, non‑human identities, and API principals used by AI systems o Identities created dynamically through AI pipelines, orchestration tools, and integrations • Maintain authoritative visibility into where AI identities exist, what they can access, and how they are used across environments. • Integrate AI identity discovery into broader identity, asset, and AI Security Posture Management (AI‑SPM) capabilities. AI Identity Lifecycle Management • Define and operationalize lifecycle controls for AI identities, including creation, modification, rotation, suspension, and decommissioning. • Ensure AI identities are created with strong provenance, ownership, and accountability, including linkage to business and technical owners. • Implement controls to prevent identity sprawl, orphaned AI identities, and unmanaged credentials. Access Control & Policy Enforcement • Design and enforce least‑privilege access models for AI identities, aligned with the sensitivity of data, models, and actions performed. • Partner with IAM and platform teams to implement policy‑based access controls, including role‑based, attribute‑based, and context‑aware authorization for AI systems. • Ensure AI identities comply with enterprise security standards for authentication strength, credential handling, and key/token management. Monitoring, Detection & Risk Assessment • Implement continuous monitoring of AI identity behavior, including access patterns, privilege use, and anomalous activity. • Detect and investigate identity‑based risks and threats, such as excessive permissions, credential misuse, lateral movement, or abuse of AI agents. • Leverage telemetry from identity platforms, cloud providers, and AI security tools to assess ongoing AI identity risk. AI Security Assessments & Control Validation • Conduct security assessments focused on AI identity usage, including architecture reviews, threat modeling, and control effectiveness testing. • Validate that AI identity controls are correctly implemented and enforced across development, testing, and production environments. • Partner with engineering teams to remediate identified gaps and track risk reduction over time. Governance, Standards & Compliance • Support development and operationalization of AI identity security standards, patterns, and control requirements, aligned with NIST, ISO, and emerging AI guidance. • Track regulatory, legal, and industry expectations related to identity, access, and AI accountability. • Provide evidence, reporting, and metrics to support audits, risk reviews, and governance forums. Documentation, Reporting & Metrics • Develop and maintain standard operating procedures

Listing verified 2h ago. Applications go through the company's official careers site.

← Back to Yoinka

Lead AI Security Engineer, AI Identities-2 at Mastercard, Pune, India | Yoinka