Director, Privileged Access Management and Non-Human Identity

Huntington National Bank
Huntington National Bank

Full-time

Remote

Posted on Sep 22, 2026

Description

This is a remote role - preferred EST or CST candidates.

Summary:

Huntington is seeking a strategic and transformational leader to serve as Director of Privileged Access Management (PAM) and Non-Human Identity Security.

This leader will own the strategy, governance, engineering, operation, and continuous improvement of the bank's privileged access and non-human identity capabilities. The role is responsible for protecting the organization's most sensitive identities, credentials, accounts, systems, and administrative functions by ensuring privileged access is appropriately governed, monitored, controlled, and continuously improved. The Director will lead teams responsible for privileged user identities, service accounts, machine identities, application identities, secrets management, credential lifecycle management, privileged session controls, and non-human identity governance. The position will establish the strategic direction of the capability while ensuring delivery of operational objectives, risk reduction initiatives, regulatory commitments, and modernization efforts.

This role partners extensively with Cybersecurity, Infrastructure Engineering, Application Development, Architecture, Technology Operations, Enterprise Risk Management, Audit, and business stakeholders to establish secure, scalable, and compliant privileged access capabilities across the enterprise. The successful candidate will possess a deep understanding of Identity Security, strong leadership and organizational development capabilities, and the ability to translate complex security and regulatory requirements into practical solutions that enable the business while reducing risk.

Duties and Responsibilities:

  • Strategic Leadership
    • Develop and execute the enterprise strategy for Privileged Access Management and Non-Human Identity Security.
    • Define and maintain a multi-year roadmap aligned to Huntington's Identity Security strategy and cybersecurity objectives.
    • Drive continuous maturity improvement across privileged access management, service account governance, machine identity management, and credential security.
    • Serve as the senior accountable leader for PAM and Non-Human Identity Security capabilities.
    • Develop business cases, investment proposals, and modernization strategies that improve control effectiveness and reduce risk.
  • Privileged Access Management
    • Establish governance and operational standards for privileged access across enterprise infrastructure, applications, cloud platforms, databases, and administrative systems.
    • Ensure privileged access follows least privilege, Just-In-Time access, and Zero Standing Privilege principles where appropriate.
    • Oversee privileged account onboarding, credential vaulting, password rotation, privileged session monitoring, emergency access controls, and deprovisioning processes.
    • Drive continuous improvement in privileged access controls, analytics, monitoring, and reporting.
  • Non-Human Identity Security
    • Establish governance frameworks for service accounts, application identities, APIs, machine identities, workloads, automation platforms, and emerging AI identities.
    • Develop ownership, lifecycle management, authentication, authorization, credential protection, monitoring, and review requirements for non-human identities.
    • Lead efforts to centralize secrets management and credential governance.
    • Define controls supporting the adoption of emerging technologies, cloud platforms, and AI-enabled systems.
  • Organizational Leadership
    • Lead and develop managers, engineers, analysts, architects, and other identity professionals supporting the capability.
    • Create a high-performing culture focused on accountability, partnership, execution, and continuous improvement.
    • Develop succession plans and talent pipelines for critical Identity Security roles.
    • Establish clear objectives, performance expectations, and career development opportunities for team members.
  • Risk, Audit & Regulatory Engagement
    • Own and drive remediation of any PAM-related high-risk issues and findings.
    • Partner closely with Three-Lines, including Risk, Compliance, and Internal Audit to ensure privileged access controls remain effective and defensible.
    • Ensure the capability remains audit-ready with appropriate reporting, evidence, inventory management, and documentation.
    • Develop KPIs, KRIs, and executive reporting that demonstrate program effectiveness and risk reduction.
  • Stakeholder Management
    • Serve as the primary executive partner for PAM and Non-Human Identity Security matters.
    • Influence architecture, engineering, cloud, infrastructure, application development, and business decisions affecting privileged access risk.
    • Communicate effectively with executive leadership, cybersecurity leadership, regulators, auditors, and technology stakeholders.
    • Build strong partnerships that balance security requirements with operational efficiency and business objectives.
  • Performs other duties as assigned.

Basic Qualifications:

  • Bachelor’s Degree or 4+ additional years of equivalent experience.
  • 10+ years of progressive experience in Identity Security, Identity & Access Management, Cybersecurity, Infrastructure Security, or related disciplines.
  • 5+ years leading managers, engineering teams, cybersecurity teams, or identity programs.

Preferred Qualifications:

  • Financial services, banking, or other highly regulated industry experience.
  • Experience and savvy operating within the Three-Lines Model (formerly Three Lines of Defense).
  • Experience with Privileged Access Management platforms and practices.
  • Experience with service account governance, machine identity management, secrets management, and native cloud identity security.
  • Experience implementing Zero Trust, Just-In-Time (JIT) access, or Zero Standing Privilege controls.
  • Experience building and maturing Identity Security organizations.


Exempt Status: (Yes = not eligible for overtime pay) (No = eligible for overtime pay)

Yes

Workplace Type:

Remote

Our Approach to Office Workplace Type

Certain positions outside our branch network may be eligible for a flexible work arrangement. We’re combining the best of both worlds: in-office and work from home. Our approach enables our teams to deepen connections, maintain a strong community, and do their best work. Remote roles will also have the opportunity to come together in our offices for moments that matter. Specific work arrangements will be provided by the hiring team.

Compensation Range:

$125,000 - $255,000 Annual Salary

The compensation range represents the anticipated low and high end of the base compensation range for this position. Actual compensation will vary based on various factors including but not limited to location, experience, and education. Colleagues in this position are also eligible to participate in an applicable incentive compensation plan. In addition, Huntington provides a variety of benefits to colleagues, including health insurance coverage, wellness program, life and disability insurance, retirement savings plan, paid leave programs, paid holidays and paid time off (PTO).


Huntington is an Equal Opportunity Employer.


Tobacco-Free Hiring Practice: Visit Huntington's Career Web Site for more details.


Note to Agency Recruiters: Huntington will not pay a fee for any placement resulting from the receipt of an unsolicited resume. All unsolicited resumes sent to any Huntington colleagues, directly or indirectly, will be considered Huntington property. Recruiting agencies must have a valid, written and fully executed Master Service Agreement and Statement of Work for consideration.