New York Life Insurance Co

Corporate Vice President - Lead AI Engineer, Identity & Access Management

New York Life Insurance Co$147K — $211K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Information Systems, Engineering, or equivalent experience.
  • 10+ years in identity & access management, security engineering, and/or AI/software engineering.
  • Strong software engineering skills in Python, PowerShell, Java, or similar.
  • Expertise in non-human identity management with practical applications in IAM.
  • Hands-on experience with AI engineering platforms like Gemini Enterprise Agent Platform and Amazon AgentCore.

Responsibilities

  • Own IAM Orchestration and MCP Gateway engineering and adoption.
  • Lead the design and development of the Cyber Multi-Agent Ecosystem.
  • Represent the CISO on the Enterprise Security Review Board for AI-related submissions.
  • Collaborate with identity platform teams to enhance identity orchestration capabilities.
  • Develop and enforce security policies for AI agent deployments.

Benefits

  • Flexible hybrid work model (3 days per quarter in the office).
  • Discretionary bonus eligibility based on individual performance.
  • Opportunity for career growth in a senior leadership role.
  • Engagement with cutting-edge AI and IAM technologies.
Full Job Description
Location Designation: Hybrid - 3 days per quarter

Role Overview

The Lead AI Engineer, Identity & Access Management is a senior, hands-on technical role that blends deep Identity & Access Management expertise with modern AI engineering capability. This is not a purely advisory or architectural position. We are looking for a builder and a leader: someone who can design, develop, and deliver production-grade agentic systems while also setting the technical direction, mentoring others, and representing the CISO organization at the enterprise level.

This individual will own three critical, interconnected bodies of work that are central to New York Life's Cybersecurity strategy:
• IAM Orchestration & MCP Gateway: Own the engineering and enterprise adoption of New York Life's IAM Orchestration and MCP Identity Gateway capability. This includes driving onboarding of internal teams and AI agents, governing authentication, delegation, authorization, and policy enforcement across human and non-human access patterns, and leading integration efforts across the enterprise identity stack.
• Cyber Multi-Agent Ecosystem - Engineering & Delivery: Serve as the primary AI engineer and technical lead responsible for building and delivering the Cyber Multi-Agent Ecosystem Vision. This is the core of the role: architecting and developing a centralized, governed, agentic platform that transforms Cyber and IAM operations through intelligent automation, orchestrated AI agents, MCP tooling, and a unified identity and data layer, deployed on Google Cloud Platform (Gemini Enterprise Agent Platform, FKA Vertex AI) and/or Amazon AgentCore.
• AI Security Review Board (SRB) Representation: Represent the CISO organization on the Enterprise Security Review Board for all AI-related submissions. The engineer will assess AI system proposals, evaluate agentic and non-human identity risks, and provide authoritative security guidance to ensure all AI deployments meet enterprise governance and compliance requirements.

Successful candidates will have a strong software and systems engineering foundation, hands-on experience building agentic and AI systems on Gemini Enterprise Agent Platform (FKA Vertex) and/or Amazon AgentCore, and the leadership presence to drive cross-functional delivery and represent Cybersecurity at the enterprise level. This role is as much about building the future as it is about securing it.

What You'll Do:

1. IAM Orchestration & MCP Gateway - Engineering & Adoption
• Own the engineering, configuration, and ongoing operation of the enterprise IAM Orchestration and MCP Identity Gateway platform.
• Drive onboarding and adoption across internal teams, applications, and AI agents, serving as the primary technical point of contact for integration efforts.
• Engineer and maintain the gateway as the centralized enforcement layer for OAuth 2.0-based authentication, token delegation, and policy-driven authorization (via OPA) across human and non-human access patterns.
• Design and implement MCP integrations that expose backend enterprise systems as standardized, secure tool endpoints consumable by AI agents.
• Ensure the platform provides robust rate limiting, quota management, kill-switch controls, and full audit logging in alignment with enterprise risk and compliance requirements.
• Collaborate with identity platform teams (IDP, PAM, IGA, Directory Services) to maintain seamless identity orchestration across the enterprise stack.
• Define and execute an integration roadmap to extend gateway capabilities, including human-in-the-loop controls and cross-cloud identity flows.

2. Cyber Multi-Agent Ecosystem - AI Engineering & Technical Leadership

This is the primary and most critical body of work for this role. The engineer will serve as both hands-on builder and technical lead for New York Life's Cyber Multi-Agent Ecosystem. This is a strategic transformation from traditional, UI-driven IAM systems to an agentic, API-first architecture that enables intelligent automation, real-time decisioning, and near-zero manual intervention across Cyber operations.
• Lead the design, development, and phased delivery of the Cyber Multi-Agent Ecosystem, functioning as the primary AI engineer and technical lead for the initiative.
• Architect and implement a centralized, multi-agent platform on Gemini Enterprise Agent Platform (FKA Vertex) and/or Amazon AgentCore, integrating MCP tooling, vector databases, and retrieval-augmented generation (RAG) architectures for intelligent Cyber and IAM automation.
• Develop and operationalize AI agents across Cyber sub-domains including Identity Governance (UAG), Privileged Access Management (PAM), Web Access Management (WAM), Active Directory, and LDAP enabling end-to-end workflow automation and near real-time SLAs.
• Design and implement Agent Card standards, a Central Agent Registry, and Agent-to-Agent (A2A) communication protocols to support a governed, extensible multi-agent operating model.
• Build an OPA-based policy engine for runtime authorization, Separation of Duties (SoD) enforcement, and governance across all agents and pipelines.
• Establish AI inventory and lifecycle management practices to ensure all deployed agents are registered, governed, audited, and compliant with enterprise security standards.
• Define and enforce Secure Development & Deployment (SDD) guardrails for the agentic ecosystem, including controls for prompt injection mitigation, execution isolation, and unsafe automation prevention.
• Partner with AI platform, data engineering, and cloud infrastructure teams to architect and finalize the unified data layer (databases, vector stores, caching) that underpins the agentic ecosystem.
• Provide technical leadership and mentorship to sub-domain teams (UAG, PAM, WAM, AD, LDAP), enabling each team to contribute agents and tools aligned to central standards.
• Maintain strong delivery governance - managing the linkage between Jira backlog, agent development, and production execution to ensure traceability and accountability end-to-end.
• Drive POC-first, incrementally scaled rollout across IAM domains, building reusable agentic components centrally for re-use across the ecosystem.

3. AI Security Review Board (SRB) - CISO Representation
• Serve as the CISO organization's designated representative on the Enterprise Security Review Board (SRB), providing authoritative security assessment and approval recommendations for all AI-related submissions.
• Assess AI system and agentic workflow proposals for security risk, including prompt injection, privilege escalation, unauthorized data access, synthetic identity abuse, and unsafe automation patterns.
• Evaluate proposed AI architectures for alignment with enterprise IAM, zero trust, and cloud security standards prior to production approval.
• Provide clear, actionable security guidance and remediation requirements to AI development and product teams during the SRB process.
• Maintain and evolve the enterprise AI security governance framework, contributing to standards, guardrails, and reference architectures leveraged across the organization.
• Represent the CISO organization credibly across cross-functional governance forums, including Architecture Review Boards and enterprise AI working groups.

4. Core IAM Engineering
• Design and implement identity, authentication, and authorization solutions for both traditional and AI-enabled systems, treating AI agents as first-class non-human identities.
• Define and enforce lifecycle management, access controls, and revocation for autonomous agents, machine identities, and service accounts using least-privilege principles.
• Implement delegated and "on-behalf-of" authorization patterns to distinguish human-initiated from agent-initiated actions for audit and compliance purposes.
• Apply least-privilege and scope-limiting controls to prevent privilege escalation in automated and multi-agent workflows.
• Design and support enterprise IAM solutions across Identity Governance & Administration (IGA), Privileged Access Management (PAM), Web Access Management (WAM), and Directory Services.
• Integrate IAM controls across hybrid and cloud environments, with strong hands-on experience in GCP and AWS.
• Implement modern authentication and authorization frameworks including OAuth 2.0, MFA, and password less authentication.

Key Skills

1. Agentic AI Engineering
• Strong hands-on experience with agent frameworks such as LangGraph, ADK (Agent Development Kit), AutoGen, or equivalent programmatic agent frameworks
• Experience designing and building multi-agent systems, including planning, tool execution, and orchestration patterns
• Strong prompt engineering and evaluation skills for production-grade systems

2. Memory & State Management
• Experience designing short-term and long-term memory architectures for AI agents
• Strong understanding of conversation/session state management and persistence strategies
• Hands-on experience with vector databases and retrieval-based memory systems
• Familiarity with state stores such as Redis, Firestore, Postgres, or equivalent

3. Tooling, MCP & API Engineering
• Experience building agent-consumable tools and function interfaces using schema-driven APIs
• Strong understanding of Model Context Protocol (MCP) and tool abstraction patterns
• Experience designing and exposing secure, identity-aware APIs using OAuth2, mTLS, service accounts, and secrets management

4. Cloud & Platforms
• Strong hands-on experience with Google Cloud Platform (Gemini Enterprise Agent Platform (FKA Vertex) preferred)
• Experience with Amazon AgentCore or AWS Bedrock Agents is a plus

5. Security, Identity & Threat Domain
• Deep IAM expertise across IGA, PAM, WAM, Active Directory, and LDAP
• Hands-on experience with SailPoint IIQ, CyberArk, PingIdentity, and directory services

Strong understanding of SIEM platforms and identity-related threat patterns, including privilege escalation, anomalous access, and insider risk

What You'll Bring:
• Bachelor's degree in Computer Science, Information Systems, Engineering, or equivalent practical experience.
• 10+ years of combined experience in identity & access management, security engineering, and/or AI/software engineering - with a demonstrated track record of both hands-on development and technical leadership.
• Strong hands-on experience building and deploying AI agents and agentic pipelines on Google Cloud Platform (GCP), with specific expertise in Gemini Enterprise Agent Platform (FKA Vertex).
• Hands-on experience with Amazon AgentCore or equivalent managed agentic AI frameworks (e.g., AWS Bedrock Agents) for deploying and securing AI agent workflows at scale.
• Demonstrated experience as an AI engineer or AI developer: writing production code, building agent frameworks, integrating LLMs into operational systems, and designing multi-agent orchestration architectures.
• Working knowledge of multi-agent orchestration patterns, retrieval-augmented generation (RAG) architectures, vector databases, MCP tooling, and Agent-to-Agent (A2A) communication protocols.
• Experience building or operating an IAM Orchestration or MCP Identity Gateway platform, with hands-on knowledge of OAuth 2.0 token flows, policy-as-code enforcement (OPA or equivalent), and identity-aware API gateway patterns.
• Experience securing agentic systems against prompt injection, privilege escalation, execution boundary violations, and unsafe automation, embedding these controls into the development lifecycle.
• 7+ years of IAM domain experience across Identity Governance & Administration (IGA), Privileged Access Management (PAM), Web Access Management (WAM), and/or Directory Services.
• Proven experience managing non-human identities (service accounts, APIs, workloads, autonomous agents) using least privilege and lifecycle governance principles.
• Deep understanding of identity and access protocols: OAuth 2.0, OpenID Connect (OIDC), SAML, LDAP, and modern token-based authorization models.
• Strong software engineering and automation skills (Python, PowerShell, Java or equivalent) with demonstrated ability to deliver production systems, not just prototypes.
• Experience with enterprise IAM platforms such as SailPoint (IGA), CyberArk (PAM), PingFederate/PingIdentity (WAM/Federation), and directory services (Active Directory, LDAP).
• Demonstrated ability to lead cross-functional technical delivery, mentor engineers, and drive alignment across organizational boundaries.
• Strong communication skills and able to articulate complex AI and security concepts clearly to both technical teams and executive or governance audiences.

Preferred Qualifications
• Familiarity with machine and workload identity standards (e.g., SPIFFE/SPIRE, workload identity federation, secrets management).
• Experience designing Agent Card standards, Central Agent Registries, and governed A2A communication frameworks in a multi-agent environment.
• Experience establishing AI inventory and lifecycle management practices for autonomous agents in enterprise production environments.
• Exposure to policy-as-code and fine-grained authorization models beyond OPA (e.g., Cedar, attribute-based access control frameworks).
• Experience supporting Zero Trust architectures and cloud-native security patterns.
• Prior experience serving on or supporting a Security Review Board or Architecture Review Board, particularly for AI or cloud system proposals.
• Prior experience in a large enterprise or regulated financial services environment.
• Relevant certifications (e.g., Google Professional Cloud Security Engineer, Google Professional ML Engineer, AWS Security Specialty, AWS Machine Learning Specialty, SailPoint, CyberArk, CISSP, CISM).

Pay Transparency

Salary Range: $147,500-$211,000

Overtime eligible: Exempt

Discretionary bonus eligible: Yes

Sales bonus eligible: No

Actual base salary will be determined based on several factors but not limited to individual's experience, skills, qualifications, and job location. Additionally, employees are eligible for an annual discretionary bonus. In addition to base salary, employees

About New York Life Insurance Co

New York Life Insurance Company is a mutual life insurance company in the United States and one of the life insurers in the world, ranking #88 on the 2014 Fortune 500 list with over $540 billion in total assets under management, and more than $19 billion in surplus and AVR. New York Life and its subsidiaries provide insurance, investment, and retirement solutions. For 175 years, the company has been helping people put their love into action. It was founded in 1845 and is headquartered in New York.

New York Life Insurance Co Careers

Join the esteemed team at New York Life Insurance Co, a leader in the insurance industry, and propel your career to new heights with unparalleled job opportunities. As one of the most respected names in life insurance, we offer a platform where professionalism meets innovation, creating an environment ripe for personal and professional growth.

Work You’ll Do

At New York Life Insurance Co, you will be part of a culture that cherishes diversity and fosters leadership. Our team is composed of skilled professionals dedicated to providing financial security and peace of mind to our clients. By joining us, you will collaborate with top-tier experts in finance and insurance, leveraging your skills to make a meaningful impact.

Explore Career Paths

Whether you are seeking an internship, a full-time position, or a leadership role, New York Life Insurance Co provides a variety of career paths to help you achieve your professional goals. Our commitment to career development is evident through extensive training programs and continuous learning opportunities that ensure our team remains at the forefront of the industry.

Innovate and Lead

Embrace the opportunity to lead projects that drive innovation within the company and the insurance industry. New York Life Insurance Co is at the intersection of tradition and innovation, where we constantly strive to develop solutions that anticipate the needs of our clients.

Be Part of a Great Team

Our team at New York Life Insurance Co is our greatest asset. We thrive on collaboration and respect each other’s contributions, creating a supportive and inclusive workplace. Here, networking and mentorship go hand in hand with day-to-day operations, providing a robust support system for career advancement.

Future-Proof Your Career

With New York Life Insurance Co, your career is future-proofed with endless opportunities for advancement. Our comprehensive benefits package supports your life both inside and outside of work, while our leadership and diversity training prepare you to take on new challenges.

Join Our Team

Search for open positions that match your skills and interests. We are hiring creative, curious, and motivated individuals who are ready to drive their careers forward. Explore our job opportunities and find out how your talents can make a difference at New York Life Insurance Co.

Stay Connected

Keep up to date with the latest industry trends, career tips, and company news through our Careers Blog. Personalize your experience by subscribing to job alert emails, tailored to your preferences, and discover the exciting and rewarding opportunities that await at New York Life Insurance Co.

Prepare for Your Interview

Ready to join us? Prepare your resume and sharpen your interview skills to become part of a company that values vision, leadership, and a commitment to excellence. At New York Life Insurance Co, we are not just offering a job; we are offering a pathway to success.

New York Life Insurance Co – A Place Where Careers Are Made

From fostering innovation to encouraging diversity, New York Life Insurance Co is where you can pursue your passions and grow your career. Join us and make a difference in the lives of our clients and communities every day.
Learn more about New York Life Insurance Co
Size
11,960 employees
Industry
Founded
1845

Similar Jobs

More Jobs at New York Life Insurance Co

More Information Technology Jobs

Find similar Corporate Vice President - Lead AI Engineer, Identity & Access Management jobs: