Talent Apply
Log in
All jobs
E

Lead Security Governance Partner - Identity Architecture

Envestnet
Trivandrum, Kerala, India Posted Sep 30, 2026
Hybrid

About this role

Lead Security Governance Partner - Identity Architecture

Location: Trivandrum, KL, India

Date Posted: Sep 30, 2026

Description

  • Job Location

  • The primary work location for this role is Trivandrum, Kerala with a hybrid/ remote work model.

  • About Envestnet

  • Envestnet is an adaptive WealthTech company that is redefining the future of wealth management by helping advisors meet the moment with its comprehensive technology, actionable insights, and industry leading support. Backed by over 25 years of experience and approximately $7.0 trillion in platform assets, Envestnet is trusted by over one third of financial advisors across leading banks, wealth managers, brokerages, and RIAs.

  • For a deeper look at how Envestnet is shaping the future of financial advice, visit www.envestnet.com.

  • The Team You’ll Join

  • You will join Envestnet’s Technology team, where we design, build, and maintain scalable, secure, and robust WealthTech solutions that power the future of financial advice. The team collaborates closely with product, operations, and business stakeholders to drive innovation, enhance efficiency, and enable sustainable growth. Guided by modern engineering practices and a commitment to domain excellence, technical rigor, and collaboration, the Technology team ensures our platforms remain resilient, adaptable, and aligned with evolving business needs making it a core driver of Envestnet’s long term success.

  • How You’ll Contribute

  • Responsible for ensuring that technology decisions align with business strategy, regulatory requirements and client expectations. Encompasses administration of a strategic and comprehensive cybersecurity framework. Identifies, assesses and mitigates technology and information security risks to protect sensitive financial and client data. Establishes policies, controls and oversight to meet regulatory standards for the financial services and wealth management industry. Enables the company to operate securely, responsibly and at scale while maintaining trust with advisors, partners and regulators.

  • Provides Security Governance support and advice companywide.

  • Develops, validates, implements and maintains cybersecurity and related policies, standards, guidelines and procedures to ensure compliance with company and regulatory requirements.

  • Collaborates with cross-functional teams and leaders to ensure security related controls are understood, documented and managed.

  • Coordinates with Legal and across relevant compliance functions to ensure proper implementation of data privacy legislation and disclosure.

  • Establishes and maintains the framework and roadmap for Security Governance documentation.

  • Works with Cyber Security team members and business partners to define risk tolerance and construct risk scenarios.

  • Ensures risk scenarios provide a realistic and relatable view of risks based on business context, system environment and pertinent threats.

  • Identity Governance & Architecture — Contributes to and evolves the enterprise identity governance framework, target-state architecture, and roadmap across AD, Entra ID, Okta, IGA, PAM, and cloud identity; translates policy/compliance requirements into engineering standards and reference architectures.

  • Identity Lifecycle, IGA & Directory Implementation — Designs end-to-end JML workflows, access requests, approvals, and certification; leads technical implementation of IGA platforms (certification engines, role/entitlement models, connectors, application onboarding, control evidence) and secure AD/Okta/Entra ID configuration (SSO, MFA, federation, conditional access, RBAC/ABAC, provisioning, directory modernization).

  • Automation Engineering — Designs and maintains PowerShell/API-driven automation and pipelines for provisioning, deprovisioning, reporting, and certification/governance control evidence; contributes to team automation standards.

  • AI, Non-Human Identity, Cloud IAM & PAM Governance — Contributes governance controls, ownership models, and risk frameworks for AI agents, service accounts, workloads, secrets, and cloud IAM roles/service principals across multi-cloud (AWS, Azure); designs PAM architecture (vaulting, session management, JIT access) with PAM engineering.

  • Identity Risk, Hygiene & Stakeholder Engagement — Leads architecture-level remediation of identity threats (credential compromise, privilege escalation, excessive/orphaned access, cloud misconfigurations); establishes hygiene metrics to reduce identity sprawl and lifecycle risk; aligns architecture to NIST (CSF, 800-53, 800-63) and serves as technical liaison to audit, risk, compliance, and executive leadership.

  • AI Governance and Risk Management — Assess and secure AI/ML systems, agentic ecosystems, and AI-assisted development across the software lifecycle — including AI platforms (e.g., AWS Bedrock, Claude, Copilot), agent/orchestration frameworks, and RAG/LLM integrations — while identifying and mitigating AI-specific risks such as prompt injection, jailbreaking, data poisoning, and model exfiltration, in alignment with NIST AI RMF and ISO 42001.

  • What You’ll Need to Bring

  • Candidates should demonstrate the relevant experience, skills, and capabilities needed to successfully perform in the role. Relevant experience may be gained through current responsibilities, prior roles, project work, leadership opportunities, or other comparable experiences.

  • Deep hands-on expertise with enterprise IGA platforms (SailPoint, Saviynt, or equivalent) — access requests, UAR/certification, lifecycle workflows, RBAC, entitlement reviews, SoD controls, and identity hygiene metrics — paired with strong PowerShell/automation skills (APIs, workflow automation, identity connectors, evidence/reporting automation).

  • Deep understanding of identity lifecycle risk, privileged access governance, cloud IAM (AWS/Azure/GCP), non-human identities, and emerging AI identity risks, grounded in NIST frameworks (CSF, 800-53, 800-63) and their audit-facing application, with proven ability to contribute to technical design, mentor engineers, and communicate architecture, risk, and implementation status to technical stakeholders, auditors, and executives.

  • Nice-to-Haves

  • Experience in cybersecurity, IAM security, identity architecture/engineering, or IT risk, with strong hands-on experience in AD, Entra ID, Okta, IGA, PAM, and cloud identity security, and demonstrated architecture-level contribution.

  • Industry certifications such as CISSP, CISM, CRISC, CISA, or IAM-related certifications.

  • Experience with modern AI GRC and monitoring tools and platforms.

  • Background in financial services or other regulated industries.

  • Experience governing AI security programs.

  • Why You’ll Enjoy Working at Envestnet

  • Help shape the future of WealthTech. At Envestnet you’ll gain hands-on experience and collaborate with some of the industry’s brightest minds to deliver meaningful, innovative solutions that make a real difference.

  • We value flexibility in how and where work gets done, and we recognize strong performance with meaningful rewards—because your contributions should drive both business success and your own personal growth. If you’re looking for a place where your work has impact, your development is supported, and your contributions are truly valued, Envestnet is where you can build your future.

  • The opportunity is now!

  • Our Investment in You

  • At Envestnet, our total rewards philosophy is designed to attract, motivate, and grow exceptional talent. We offer competitive, market-aligned compensation complemented with performance-linked incentives and rewards programs that recognize and reward impact.

  • In addition, we provide a comprehensive suite of benefits - subject to Envestnet’s plan eligibility rules - that support your overall well-being, including medical insurance for you and your family, annual health check-ups, free online doctor consultations and telemedicine services, subsidized health club memberships, and an employee assistance program. Our investment in you means supporting you professionally, financially, and personally at every stage of your journey with us.

  • Our Commitment to Inclusion & Belonging

  • Envestnet is an Equal Employment Opportunity employer and does not discriminate in employment on the basis of religion, race, color, caste, sex, gender, gender identity or expression, pregnancy, age, disability, medical condition, nationality, ethnic origin, marital status, or any other status protected under applicable Indian law. This commitment is in accordance with the Constitution of India and applicable labor and employment laws. All employment decisions are made solely based on merit, qualifications, performance, and business needs

Your next opportunity starts here

Prepare, apply, track, interview and get hired — all from one platform, with AI in your corner.

Download app

Or sponsor Premium for someone who's job hunting →