GDS Cyber - AI Driven IAM - Senior
About this role
The Opportunity
EY Global Delivery Services (GDS) is seeking a Senior AI Engineer to support the design and delivery of AI-led solutions across Identity and Access Management and Cybersecurity domains. This role will help shape how AI capabilities are applied to modern IAM challenges such as identity governance, access management, privileged access, directory services and non-human identity security.
As a senior profile, the candidate will work closely with IAM, Cyber, cloud and business stakeholders to understand client problems, identify practical AI opportunities and convert them into working solutions, prototypes and scalable delivery assets. The focus is not only on technology implementation, but also on improving identity risk visibility, access decisioning, governance efficiency and operational effectiveness.
The ideal candidate should bring strong hands-on engineering experience, curiosity to work in the IAM and Cyber domain, and the ability to apply AI, automation and analytics to solve real enterprise identity challenges. While the role requires practical exposure to AI and IAM technologies, the emphasis is on problem solving, consulting mindset, solution ownership and the ability to contribute to enterprise-scale IAM transformation programs.
Your Key Responsibilities
- Design, develop and operationalize AI solutions for IAM and Cybersecurity use cases across SSO, MFA, Conditional Access, IGA, PAM, AD/Entra ID and NHI domains.
- Build hands-on AI/ML capabilities using Python, PowerShell, LLM/SLM APIs, embeddings, RAG, LangChain, LangGraph, MCP, ADKs and AI orchestration engines.
- Develop agentic AI workflows, copilots and automation frameworks for access requests, certification campaigns, provisioning, privileged access, remediation and identity operations.
- Integrate AI solutions with SailPoint, Saviynt, CyberArk, Microsoft Entra ID, Active Directory, Azure, AWS, Microsoft Graph API, SIEM/SOAR, Splunk, Microsoft Sentinel, Microsoft Defender, CrowdStrike and XDR platforms.
- Analyze identity, access, privilege, vault, directory, activity and security logs to identify risk patterns, anomalies, access recommendations, role mining opportunities and policy gaps.
- Support AI-driven IAM governance including risk-based authentication, risk-based provisioning, access reviews, compliance checks, SOD, identity lifecycle orchestration and audit-ready reporting.
- Apply ML, classification, optimization, time series analysis, pattern recognition, NLP, UEBA, anomaly detection and predictive risk scoring for identity and access intelligence.
- Work on Non-Human Identity use cases including service accounts, managed identities, service principals, enterprise applications, API-based identities, workload identities, agent identities, token misuse and agent overreach controls.
- Contribute to PAM analytics and automation across CyberArk, Privilege Cloud, EPM, EPV, CPM, PSM, JIT/JEA, password rotation, secret lifecycle management, session monitoring and vault log analytics.
- Create dashboards and insights using Power BI, Tableau and identity analytics views to explain access risk, compliance posture, user activity trends and remediation priorities.
- Collaborate with business, cyber and IAM stakeholders to convert problem statements into working prototypes, scalable solutions and executive-ready recommendations.
QUALIFICATIONS:
Required Skills
- 5+ years of hands-on experience in AI engineering, software development, data science, automation, cybersecurity analytics or IAM technology delivery.
- Practical experience building AI applications using LLM/SLM APIs, RAG, embeddings, prompt engineering, agentic AI, AI agents, copilots and multi-agent workflows.
- Strong programming and automation experience in Python, PowerShell, APIs, SQL basics and Microsoft Graph API; exposure to HTML, CSS and JavaScript is preferred.
- Hands-on exposure to Azure AI, OpenAI, AWS, Python-based AI/ML frameworks, ML models, classification, optimization, NLP, pattern recognition, time series analysis and anomaly detection.
- Working knowledge of IAM concepts including SSO, MFA, Conditional Access, SAML, OAuth, OIDC with PKCE, authentication, authorization, federation, certificate management and key management.
- Working knowledge of Microsoft Entra ID, Active Directory, Entra Connect, Cloud Sync, Directory Services, DNS, Global Catalog, GPO, OU, Domains/Forests, FSMO roles and Sites and Services.
- Experience or strong exposure to IGA platforms and concepts such as SailPoint, Saviynt, identity lifecycle, access reviews, certification campaigns, role mining, SOD, access risk and policy compliance.
- Experience or strong exposure to PAM concepts and tools including CyberArk, Privilege Cloud, EPM, EPV, CPM, PSM, JIT/JEA, password rotation, secrets, session monitoring and vault logs.
- Understanding of NHI and AI identity security including service accounts, managed identities, service principals, enterprise applications, API-based identities, workload identities, agent identities and token controls.
- Experience with security monitoring or analytics platforms such as SIEM, SOAR, UEBA, Splunk, Microsoft Sentinel, Microsoft Defender, CrowdStrike, XDR and Identity Protection.
- Strong consulting mindset with the ability to communicate AI, IAM and Cybersecurity topics clearly to technical teams and leadership stakeholders.
Nice to have
- Experience identifying AI use cases for IAM transformation, identity analytics, access recommendations, privileged access recommendations, NHI governance and automated remediation.
- Experience with data pipelines, identity and privilege analytics pipelines, model monitoring, observability, MLOps and scalable deployment of enterprise AI solutions.
- Experience with Power BI, Tableau, dashboards and data storytelling for access risk, compliance posture and identity operations.
- Exposure to SOX, GDPR, HIPAA, ISO 27001, CISSP, CISM, SailPoint, Saviynt, CyberArk, Azure AI or Google ML certifications is preferred.
- Prior experience in a consulting, professional services or large enterprise environment is a plus.
What we offer you
At EY, we’ll develop you with future-focused skills and equip you with world-class experiences. We’ll empower you in a flexible environment, and fuel you and your extraordinary talents in a diverse and inclusive culture of globally connected teams. Learn more.
Are you ready to shape your future with confidence? Apply today.
To help create an equitable and inclusive experience during the recruitment process, please inform us as soon as possible about any disability-related adjustments or accommodations you may need.
Our Commitment: As a commitment, we persistently endeavour to embody our values, fulfil our purpose, and champion inclusiveness. Our dedication is to cultivate EY into an environment where diverse perspectives are celebrated, creating a supportive atmosphere for individuals to authentically be themselves and contribute their utmost.
Professional Development: From entry-level employees to senior leaders, we believe in continuous learning. We offer opportunities to build new skills, take on leadership roles, and connect and grow through mentorship.
People and Culture: In our dynamic workplace, diversity, equity, and inclusiveness are ingrained in our culture. We're united by a commitment to create an environment where every individual's differences are valued, practices are equitable, fost