About this role:
Wells Fargo is seeking a Senior Information Security Engineer to join the Directory Security Engineering team. This position will engineer, secure, automate, and support enterprise directory platforms that store and manage system and external-user authentication information.
The DSE service includes Ping Directory, delivering secure, scalable, low-latency directory capabilities for enterprise identity and authentication
systems.
The successful candidate will work independently on complex engineering and operational challenges, contribute to platform modernization, and partner with Information Security, Identity and Access Management, application, infrastructure, risk, and operations teams.
In this role, you will:
- Lead or participate in security incident response activities for moderately complex events, including technical investigations, digital forensics, root cause analysis, and the development of corrective, preventive, and mitigation strategies.
- Review, correlate, and analyze security logs, events, and alerts to identify threats, vulnerabilities, security incidents, and operational issues.
- Provide security consulting and guidance for projects and technology initiatives to ensure compliance with corporate information security policies, standards, regulatory requirements, and industry best practices.
- Design, implement, document, test, maintain, and support security solutions across networking, cryptography, cloud, authentication, directory services, email, internet, application, and endpoint security domains.
- Engineer, configure, deploy, and support enterprise directory platforms, with primary emphasis on Ping Directory and related directory service technologies.
- Design, implement, and maintain highly available and resilient directory architectures, including replication, synchronization, proxy services, data distribution, backup, recovery, and disaster recovery capabilities.
- Support the full directory infrastructure lifecycle, including development, testing, deployment, maintenance, patching, upgrades, modernization, migrations, automation, troubleshooting, and production support.
- Implement and maintain secure LDAP/LDAPS configurations, certificate management, encryption, access controls, authentication policies, identity security controls, and security hardening standards.
- Develop and maintain automation for installation, configuration, upgrades, backups, monitoring, health checks, validation, and operational maintenance using Ansible, scripting, and Infrastructure-as-Code practices.
- Monitor service availability, performance, capacity, authentication activity, replication health, resource utilization, configuration drift, and critical system events; conduct capacity planning, performance analysis, and tuning for large-scale environments.
- Identify, assess, and remediate security vulnerabilities, technology risks, control weaknesses, and lifecycle gaps; perform risk assessments and recommend remediation strategies aligned with enterprise risk management requirements.
- Partner with application teams, engineering groups, and business stakeholders to gather requirements, define secure integration patterns, support application onboarding, communicate technical risks and dependencies, and drive successful project delivery.
- Create and maintain engineering standards, technical designs, operational procedures, support playbooks, disaster recovery documentation, and knowledge management artifacts.
- Participate in on-call support rotations and serve as an escalation point for critical production incidents and complex technical issues.
- Collaborate with peers, colleagues, managers, and cross-functional teams to resolve issues, share expertise, and achieve business and security objectives.
Required Qualifications:
- 4+ years of Information Security Engineering experience, or equivalent demonstrated through one or a combination of the following: work experience, training, military experience, education
- Hands-on experience administering or engineering enterprise LDAP directory platforms.
- Strong knowledge of LDAP concepts, including directory information trees, schemas, entries, attributes, indexes, access controls, password policies, replication, synchronization, and proxy services.
- Experience supporting secure, highly available, distributed production infrastructure.
- Experience with Linux or Unix administration, including system configuration, performance analysis, patching, log analysis, and troubleshooting.
- Experience with SSL/TLS, PKI, certificates, encryption, key stores, trust stores, and secure client-to-server communications.
- Experience using scripting or automation technologies such as Ansible, Python, Bash, Shell, or PowerShell.
- Knowledge of network technologies including TCP/IP, DNS, firewalls, load balancers, ports, routing, and secure connectivity.
- Experience with monitoring, alerting, logging, incident response, change management, and problem management.
- Understanding of cybersecurity risks, vulnerability remediation, technology controls, and regulatory compliance requirements.
- Ability to independently manage complex technical issues and collaborate across geographically distributed teams.
Desired Qualifications:
- Hands-on engineering experience with one or more of the following:
- Ping Directory
- Ping Data Sync
- Ping Directory Proxy Server
- Oracle Unified Directory
- Experience designing replication, synchronization, proxy, data migration, and disaster-recovery solutions.
- Experience automating infrastructure operations through Ansible Automation Platform or comparable enterprise automation platforms.
- Experience with CI/CD, source-code management, configuration management, and infrastructure-as-code practices.
- Experience with Splunk, SiteScope, or comparable enterprise monitoring and observability platforms.
- Experience with ServiceNow incident, change, problem, request, and configuration-management processes.
- Experience supporting identity, authentication, authorization, or customer-access platforms in a large enterprise environment.
- Experience leading platform upgrades, operating-system migrations, technology refreshes, data-center migrations, or infrastructure modernization initiatives.
- Knowledge of secure coding, software-engineering practices, API integrations, and server-side extensibility.
Job Expectations:
- Participate in a rotating 24x7 production support and on-call schedule on weekend coverage approximately once every eight weeks, to support critical authentication and directory infrastructure services.
- Work standard business hours of 6:30 AM to 3:30 PM IST and maintain flexibility to attend periodic evening meetings and operational calls to effectively collaborate with global teams and support cross-regional initiatives.
Posting End Date:
6 Oct 2026*Job posting may come down early due to volume of applicants.
We Value Equal Opportunity
Wells Fargo is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other legally protected characteristic.
Employees support our focus on building strong customer relationships balanced with a strong risk mitigating and compliance-driven culture which firmly establishes those disciplines as critical to the success of our customers and company. They are accountable for execution of all applicable risk programs (Credit, Market, Financial Crimes, Operational, Regulatory Compliance), which includes effectively following and adhering to applicable Wells Fargo policies and procedures, appropriately fulfilling risk and compliance obligations, timely and effective escalation and remediation of issues, and making sound risk decisions. There is emphasis on proactive monitoring, governance, risk identification and escalation, as well as making sound risk decisions commensurate with the business unit’s risk appetite and all risk and compliance program requirements.
Candidates applying to job openings posted in Canada: Applications for employment are encouraged from all qualified candidates, including women, persons with disabilities, aboriginal peoples and visible minorities. Accommodation for applicants with disabilities is available upon request in connection with the recruitment process.
Applicants with Disabilities
To request a medical accommodation during the application or interview process, visit Disability Inclusion at Wells Fargo.
Drug and Alcohol Policy
Wells Fargo maintains a drug free workplace. Please see our Drug and Alcohol Policy to learn more.
Wells Fargo Recruitment and Hiring Requirements:
a. Third-Party recordings are prohibited unless authorized by Wells Fargo.
b. Wells Fargo requires you to directly represent your own experiences during the recruiting and hiring process.

