WHEN YOU NEED TO MEET A HIGHER STANDARD® in US | ASIA | EUROPE | AUSTRALIA
Workday Security & Integration Developer
Location
United States
Posted
12 days ago
Salary
$105K - $130K / year
Seniority
Mid Level
Job Description
Workday Security & Integration Developer
CAI
Role Description We are seeking an experienced Workday Security & Integration Developer to help shape and support our Workday transformation across Finance, HR, and Reporting. This role will evaluate the current security posture, design a future-state role and domain framework, manage day-to-day security configurations, and partner with our Integration Developer to troubleshoot and maintain Workday integrations. The ideal candidate brings deep expertise in Workday HCM and Finance security, along with strong integration knowledge and a collaborative, solutions-oriented mindset. This position is full-time and remote. "This position does not offer employment sponsorship. All candidates must be eligible to work without need for sponsorship by employer." What You’ll Do - Lead the redesign of Workday security to reduce excessive access, eliminate role overlap, address segregation of duties (SoD) gaps, and improve clarity across business units. - Collaborate with Finance, HR, IT, and other stakeholders to gather security requirements, validate configurations, and communicate access design decisions clearly and transparently. - Design, implement, and maintain comprehensive security solutions, policies, procedures, and guidelines that safeguard the Workday environment. - Ensure security solutions align with SOC 2 Type 2 requirements. - Develop compliance dashboards, audit reports, and notifications to monitor access, configuration changes, and data flow within Workday. - Recommend durable security design choices that support evolving AI and agent-based use cases, including agent identities, permissions, human-in-the-loop approval models, and audit trails for agent-initiated actions. - Troubleshoot issues related to EIB, Core Connector, and Studio integrations. - Build and maintain Workday Studio integrations. - Partner with cross-functional teams to design, implement, and support Workday solutions aligned with business objectives. - Create and maintain detailed documentation of processes, integrations, and configurations to support knowledge sharing and future reference. Qualifications - Minimum of 5 years of Workday configuration experience, including at least 3 years focused on Workday security administration across both Finance and HCM security domains. - Demonstrated experience redesigning Workday security models at enterprise scale, including role rationalization and persona-based security frameworks. - Deep knowledge of Workday security constructs, including domain security policies, business process security policies, security groups, and security analysis tools. - Understanding of SOC 2 compliance requirements as they apply to Workday security, with the ability to embed compliance controls throughout configuration. - Demonstrated understanding of how Workday security supports downstream identity, role, and access consumers, including familiarity with SSO, identity provider integrations, and federated access concepts. - Minimum of 1 year of experience with Workday integrations, preferably Workday Studio. - Strong knowledge of XML and XSLT for designing and maintaining integrations. - Strong analytical and problem-solving skills, with the ability to translate complex business access requirements into technical security configurations. - Excellent communication and collaboration skills, with the ability to work effectively across functional teams and with program stakeholders at all levels. - Highly self-motivated and able to work independently in a fully remote contract environment. Requirements - Workday certifications in Integrations and/or Security (preferred). - Experience supporting SOC 2 Type 2 audits or similar control environments (preferred). - Familiarity with AI agent access control frameworks and how Workday security governance applies to emerging agent-based use cases (preferred). - Bachelor’s degree in Computer Science, Information Systems, or a related field (preferred). Physical Demands - Ability to safely and successfully perform the essential job functions. - Sedentary work that involves sitting or remaining stationary most of the time with occasional need to move around the office to attend meetings, etc. - Ability to conduct repetitive tasks on a computer, utilizing a mouse, keyboard, and monitor. Benefits - $105,000 - $130,000 per year. - Benefit packages include medical, dental, and vision insurance, as well as 401k retirement account access. - Employees in this role receive paid time off and may also be entitled to paid sick leave and/or other paid time off as provided by applicable law. Reasonable Accommodation Statement If you require a reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employment selection process, please direct your inquiries to application.accommodations@cai.io or (888) 824 – 8111.
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Senior AI Security Engineer
Highmark HealthCreating remarkable health experiences, freeing people to be their best.
• Secures AI/ML, Generative AI, and agentic systems across the enterprise • Designs, tests, and operates controls to protect systems at scale • Advises engineering and security leadership on emerging AI threats • Develops security controls for AI/ML, GenAI, and agentic systems • Engineers guardrails to mitigate data leakage and insecure workflows • Analyzes agent logic and identifies systemic security weaknesses • Builds monitoring, logging, and alerting for AI systems • Partners with AI platform and data engineering teams for security integration
Senior M&A Security Professional
HumanaLouisville, Kentucky-based Humana is a leading healthcare company that offers a variety of health, wellness, and insurance products and services designed to off
• acts in a security assessor role to review acquisition environments of diverse scopes and complexity ranging from moderate to substantial against well-known cyber security frameworks. • help Humana assess and integrate acquired companies into the organization. • work with Humana's technology organization and various internal groups to review and contribute to integration initiatives with available technology including hardware, software, applications, and peripherals with the purpose of ensuring that security meets Humana's expectations. • review acquisition environments and assists the teams with creating, tracking, and implementing remediation plans to address identified security gaps. • Lead a risk assessment and/or audit of IT controls and systems. • conduct audit review procedures and evaluate the company's technological infrastructure against HITRUST, NIST, PCI and other internal security control frameworks. • communicate well verbally and in writing to various types of audiences. • understand when an identified risk is worthy of escalation to leadership and can manage discussions that support the escalation.
• Design and build scaffolds to automate attacker/threat modeling, attack discovery and exploitation techniques at scale • Identify promising attack surfaces and scenarios across Wealthsimple’s stack. • Architect and tune agents, prompts, and toolchains that implement real attacker TTPs. • Define success metrics and evaluation criteria for automations/ai so we can select and fine tune tooling and model use • Design and iterate on multi-step agent strategies that combine observation, planning, action, and self-learning • Improve effectiveness and automation coverage and reduce unproductive actions and loops • Propose and validate new tools or environment features that enable richer or more realistic attacks. • Research and design new AI-driven attack strategies and scenarios in anticipation of what adversaries might misuse LLMs to do in future, then help design detections and defensive measures • Analyze AI behavior and results to discover systemic weaknesses and strengths and improve platform design / outputs and compensate for weaknesses. • Compare different models, prompts, and tool sets on the same scenarios. • Measure meaningful outcomes (bugs found, depth of compromise, time-to-finding, false-positive behaviour). • Benchmark AI-driven testing against our other tooling and manual test results to understand return on investment and where to invest effort and expertise to best advantage • Translate agent outputs into high-quality findings and systemic improvements. • Identify high-confidence vulnerabilities and attack paths. • Analyze findings to uncover recurring vulnerability types and control gaps, then help us fix them • Understand how agents discovered issues and what that implies for our defences. • Share learnings and help build guardrails, detections, systemic framework fixes, libraries, or new agents/experiments
Enterprise Account Director, Data Security
Capital OneAt Capital One, we think and work like a tech company, using our digital fluency to transform everything about the customer experience. We’re bending data to our will, and turning a stodgy industry on its head. That’s reflected in our ranking as the number one business technology innovator in the U.S. in the 2016 InformationWeek Elite 100.
• Own enterprise deals end-to-end: Source, develop, and close ARR through new logo acquisition and strategic expansion • Navigate complex buying centers: Build and execute multi-stakeholder strategies across security, data platform, compliance, legal, and procurement organizations • Run disciplined proof of concept: Lead technical evaluations with clear success criteria, tight timelines, and executive alignment to accelerate deals • Master security reviews: Guide customers through vendor risk assessments, architecture reviews, penetration tests, and compliance validation (SOC2, ISO, PCI-DSS, HIPAA) • Build compelling business cases: Quantify value across risk reduction (PCI scope reduction, breach prevention) and enablement outcomes (faster analytics, safe AI access, compliant data sharing) • Negotiate complex contracts: Navigate DPAs, security exhibits, BAAs, indemnities, and enterprise licensing terms to mutually beneficial close • Drive expansion: Develop land-and-expand strategies that grow initial deployments across lines of business, environments, and use cases • Partner strategically: Leverage cloud ecosystem relationships (AWS, Snowflake, Databricks, etc.) and GSI partnerships to accelerate deals




