Lead Software Engineer - PlainID
Wells Fargo
- Location
- Bengaluru, India
- Work model
- On-Site
- Level
- Senior
- Posted
- 16h ago
Skills
About this role
About this role: Wells Fargo is seeking a Lead Software Engineer In this role, you will: Lead complex technology initiatives including those that are companywide with broad impact Act as a key participant in developing standards and companywide best practices for engineering complex and large scale technology solutions for technology engineering disciplines Design, code, test, debug, and document for projects and programs Review and analyze complex, large-scale technology solutions for tactical and strategic business objectives, enterprise technological environment, and technical challenges that require in-depth evaluation of multiple factors, including intangibles or unprecedented technical factors Make decisions in developing standard and companywide best practices for engineering and technology solutions requiring understanding of industry best practices and new technologies, influencing and leading technology team to meet deliverables and drive new initiatives Collaborate and consult with key technical experts, senior technology team, and external industry groups to resolve complex technical issues and achieve goals Lead projects, teams, or serve as a peer mentor Required Qualifications: 5+ years of Software Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education Desired Qualifications: Design and govern enterprise-scale authorization, understanding of identity lifecycles (Joiner–Mover–Leaver), and enforcing least privilege and Zero Trust. Expertise in RBAC, ABAC, PBAC, and hybrid RBAC+ABAC models at scale Define and enforce enterprise authorization policies, ensure segregation of duties (SoD), and architect policy-based access control using PDP, PEP, PAP, and PIP patterns. Experience with policy engines (e.g., PlainID , OPA, custom PDPs) and policy-as-code is expected. OAuth 2.0, OIDC, SAML 2.0, federation, and SSO Designs secure integration patterns using LDAP, API- and JDBC-based access, enforcing least privilege with token-based auth, mTLS, and controlled service accounts. Lead Non ‑ Human Access (NHA) strategies by replacing static credentials with workload identities and short ‑ lived secrets. Expertise in vault-based secret management (dynamic credentials, rotation, auditing) integrated with OpenShift/Kubernetes and VM workloads identity-aware access, mTLS, API gateways, and network segmentation Strong understanding of identity and access management concepts, including authentication, authorization, access governance (PBAC/RBAC/ABAC), identity lifecycle management, and privileged access management. Define and enforce enterprise authorization policies, ensure segregation of duties (SoD), and architect policy-based access control using PDP, PEP, PAP, and PIP patterns. Hands-on experience working with and leading Agile teams using frameworks such as Scrum and Kanban, with a focus on delivering measurable business and security outcomes. Strong understanding of enterprise IAM ecosystems, including Access management, provisioning-deprovisioning, Certifications platforms. Strong ability to identify, assess, and proactively manage risks, interdependencies, and cross-functional impacts in large-scale enterprise environments. Work Location - Bangalore / Hyderabad Job Expectations: Design, architect and deliver innovation and modernization across IAM domains including Authorization, Policy based access management (PBAC), Access governance, identity lifecycle management, privileged access, and emerging areas such as dynamic access (ABAC/ReBAC), JIT access, and AI/agent identity governance. Define and track measurable outcomes including improvements in identity risk posture, access governance maturity, adoption, and user experience. Partner closely with engineering, cybersecurity, risk, compliance, and operations teams to deliver secure, scalable, and high-quality solutions. Posting End Date: 30 Aug