Mizuho · 12 hours ago
Machine Identity Engineer
Mizuho Americas is a leading provider of corporate and investment banking services. They are seeking a Machine Identity Engineer to design, implement, and support identity and credential services for non-human identities across on-prem and cloud environments, with a focus on Azure-native identity services.
FinanceBankingVenture CapitalFinancial ServicesImpact Investing
Responsibilities
Manage and enhance the enterprise PKI and Venafi certificate lifecycle management platform ensuring scalable, secure, and policy-compliant certificate operations
Integrate certificate-based authentication into platforms, applications, network components, and Azure-native services, minimizing manual handling and outage risk
Establish and enforce certificate lifecycle standards, monitoring, and alerting to ensure certificate health, trust integrity, and regulatory compliance
Deploy and support secrets management platforms (e.g., CyberArk CCP, Azure Key Vault, HashiCorp Vault) to protect non-human credentials, API keys, and sensitive configuration data
Integrate secrets management with infrastructure automation and CI/CD pipelines; define and enforce rotation, expiration, and least-privilege access policies
Implement and support cloud workload identity patterns (e.g., Azure Managed Identities and service principals) to enable secure, identity-based access for non-human workloads and reduce reliance on static credentials
Partner with cloud and platform teams to integrate workload identities with enterprise PKI and secrets management solutions, enforce least-privilege access models, and support security, audit, and compliance requirements
Maintain accurate and complete inventories of certificates, keys, secrets, and machine identities aligned with CMDBs or authorized asset repositories
Ensure identity, credential, and key management controls are documented, monitored, and evidenced to support audit, risk, and regulatory requirements
Support regulatory exams, internal audits, and control testing activities, including evidence preparation, issue remediation, and control validation
Partner with infrastructure, cloud, cybersecurity, and DevOps teams to align machine identity, certificate, and secrets controls with enterprise architecture standards
Participate in design and architecture discussions to identify gaps and drive scalable, automation-friendly improvements
Qualification
Required
7+ years of experience in Identity & Access Management, cybersecurity engineering, or related infrastructure security roles, with a strong focus on non-human identities
Hands-on experience operating and supporting enterprise PKI and certificate lifecycle management platforms
Demonstrated experience with secrets management technologies such as CyberArk CCP/Secrets Manager, Azure Key Vault, or HashiCorp Vault
Experience integrating PKI, certificates, and secrets with infrastructure platforms, applications, and automation pipelines
Working knowledge of cloud workload identity concepts, including Azure Managed Identities and service principals
Familiarity with security controls and regulatory expectations related to identity, credential, and key management (e.g., SOX, NIST)
Strong collaboration and communication skills, with the ability to work effectively across infrastructure, cloud, security, and DevOps teams
Benefits
A generous employee benefits package
Discretionary bonus
Company
Mizuho
This is not your typical financial institution. It’s our people who make us a cut above.
H1B Sponsorship
Mizuho has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (49)
2024 (23)
2023 (43)
2022 (12)
2021 (10)
2020 (1)
Funding
Current Stage
Late StageRecent News
2025-11-14
2025-11-12
2025-11-12
Company data provided by crunchbase