Lead Security Engineer, Identity

Posted:
3/3/2026, 8:03:45 PM

Location(s):
Hyderabad, Telangana, India ⋅ Telangana, India

Experience Level(s):
Expert or higher ⋅ Senior

Field(s):
IT & Security

About Us

 

CDK Global is a leading provider of cloud-based software to dealerships and Original Equipment Manufacturers (“OEMs”) across automotive and related industries. The Company’s cloud-based, software as a service (“SaaS”) platform enables dealerships to manage their end-to-end business operations including the acquisition, sale, financing, insuring, repair, and maintenance of vehicles. By automating and streamlining critical workflows, the integrated platform of modern solutions enables dealers to sell and service more vehicles by creating simple and convenient experiences for customers and improves their financial and operational performance.

Position Summary

The Lead Identity Security Engineer is a senior technical leader responsible for defining, engineering, and governing CDK’s enterprise identity security architecture. This role establishes identity standards, authentication and authorization policies, privileged access controls, and lifecycle governance frameworks across corporate and product environments. The Lead Identity Security Engineer drives the implementation of scalable Identity & Access Management (IAM) solutions, embeds zero trust principles into access design, and partners cross-functionally to ensure secure, compliant, and automated identity operations aligned to enterprise risk and regulatory requirements.

 

Responsibilities

·       Define and maintain enterprise IAM architecture, standards, and reference models aligned to security and compliance objectives

·       Lead engineering and implementation of identity governance (IGA), privileged access management (PAM), federation, SSO, MFA, and conditional access platforms

·       Design and operationalize access lifecycle processes including provisioning, deprovisioning, role modeling, and access certifications

·       Implement zero trust identity controls and risk-based authentication mechanisms across enterprise platforms

·       Establish least-privilege and role-based access control (RBAC) models across corporate and cloud systems

·       Partner with Infrastructure, Cloud, Application, and HR teams to embed identity controls into enterprise workflows and platforms

·       Drive automation of IAM configurations and workflows using infrastructure as code and API-based integrations

·       Develop and report key IAM risk and performance metrics, including privileged access coverage and certification completion rates.

Qualifications

·       Bachelor’s Degree in Computer Science, Information Security, or equivalent combination of education and relevant experience.

·       10+ years of security experience with dedicated focus on Identity and Access Management (IAM).

·       Demonstrated experience designing and operating IAM architecture in complex enterprise or product environments.

·       Hands-on expertise with IGA, PAM, SSO, federation (SAML/OIDC), MFA, and conditional access technologies.

·       Experience implementing role-based access control (RBAC), least privilege, and privileged session management.

·       Experience integrating IAM platforms with cloud native platforms (Azure, AWS, GCP).

·       Strong understanding of zero trust identity architecture and modern authentication protocols.

Preferred Qualifications

·       Experience leading enterprise-wide IAM program maturity initiatives, including policy standardization and control harmonization.

·       Deep expertise in Identity Governance and Administration (IGA) including role engineering, access modeling, birthright access design, and certification optimization.

·       Advanced experience with Privileged Access Management (PAM), including vaulting strategies, just-in-time (JIT) access, session controls, and privileged account discovery.

·       Strong background in enterprise directory architecture, identity federation strategy, and multi-domain or multi-tenant identity design.

·       Relevant certifications such as CISSP, CISM, CIAM, or vendor-specific IAM certifications.

At CDK, we believe inclusion and diversity are essential in inspiring meaningful connections to our people, customers and communities. We are open, curious and encourage different views, so that everyone can be their best selves and make an impact.

CDK is an Equal Opportunity Employer committed to creating an inclusive workforce where everyone is valued. Qualified applicants will receive consideration for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, creed or religion, age, disability (including pregnancy), results of genetic testing, service in the military, veteran status or any other category protected by law.

Applicants for employment in the US must be authorized to work in the US.  CDK may offer employer visa sponsorship to applicants.

CDK Global

Website: https://cdkglobal.com/

Headquarter Location: Hoffman Estates, Illinois, United States

Employee Count: 5001-10000

Year Founded: 1972

IPO Status: Public

Last Funding Type: Post-IPO Equity

Industries: Automotive ⋅ Digital Marketing ⋅ Retail Technology ⋅ Sales ⋅ Software