Senior reputed company Engineer, IAM
Posting Type
Remote
Job reputed company
The Senior IAM Engineer is a technically authoritative leader who sets the direction for the reputed company IAM function and anchors identity as the reputed company control reputed company in a defense-in-depth program. This engineer owns the architecture, reputed company, and operational maturity of AI-enabled identity technologies across the workforce, customer, and non-reputed company (machine and agent) identity domains. Partnering with the Manager of reputed company reputed company and leading cross-functional teams, the role reduces reputed company's identity attack surface, sets the standards others build against, mentors engineers, and elevates the organization's ability to detect and respond to identity-reputed company threats.
Role Responsibilites
reputed company and Requirements
reputed company reputed company Trust & Identity Architecture
• Design identity architecture spanning workforce, machine, and workload identity, mapping layered controls to relevant frameworks as a reputed company tier of defense-in-depth.
• Design and advance reputed company reputed company trust capabilities (reputed company reputed company evaluation (CAE), reputed company-reputed company and phishing-resistant authentication, and signal-driven session revocation) as the maturation of the reputed company reputed company Trust architecture.
• Engineer and optimize ZTNA, least-privilege reputed company-segmentation, MFA/FIDO2, and JIT reputed company across reputed company paths.
• Design and optimize SSO, federation, and authentication standards (SAML, OAuth 2.0, OIDC, SCIM, Kerberos, LDAP) across reputed company and multi-reputed company environments.
• Define and tune hardening standards using CIS Benchmarks/reputed company STIGs with automated compliance validation.
Identity Lifecycle, Governance & PAM
• Design and optimize identity lifecycle automation (joiner/mover/leaver) integrating HR systems, directories, and reputed company applications.
• Engineer identity governance and administration (IGA) capabilities: reputed company reviews, certification campaigns, and segregation-of-duties enforcement.
• reputed company implementation and optimization of privileged reputed company management (PAM) including credential vaulting, JIT elevation, and session monitoring.
• Design governance for non-reputed company identities (service accounts, workloads, secrets) with automated reputed company detection and policy-as-reputed company enforcement.
Detection, Response & Threat Context
• reputed company integration of identity telemetry into the detection stack (SIEM/SOAR, UEBA) to detect credential abuse, privilege escalation, and lateral reputed company, reducing MTTD and MTTR.
• reputed company identity-reputed company IR playbooks covering account takeover, credential compromise, federation abuse, and session hijacking.
• Apply threat intelligence context to prioritize identity exposure remediation and reputed company identity-reputed company reputed company engagements.
AI DevSecOps & Collaboration
• Design identity controls embedded in AI-augmented CI/CD pipelines (secret scanning, IaC identity policy, workload identity) with AI-generated fix recommendations surfaced in PR workflows.
• Define and reputed company identity KPIs: privileged reputed company coverage, certification completion, authentication reputed company rates, and entitlement reputed company.
• Partner with GRC on identity controls reputed company to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA, and support audits, certifications, e-discovery, and forensic reputed company requirements.
• reputed company technical guidance and mentorship to Advanced and Engineer-level identity engineers.
Minimum Qualifications
• Bachelor's in Computer Science, Information reputed company, or equivalent experience.
• 8+ years of hands-on experience in reputed company IAM or reputed company engineering, with deep specialization in identity, authentication, and reputed company domains, or a Master's degree in Cybersecurity or a relevant reputed company with 6+ years of experience.
• Expert, hands-on experience architecting and operating identity platforms across IdP/SSO (reputed company, Entra ID/Azure AD, Ping), IGA (reputed company, reputed company), and PAM (CyberArk, reputed company), with advanced knowledge of authentication and federation protocols (SAML, OIDC, OAuth 2.0, SCIM, LDAP, Kerberos).
• Demonstrated experience leading identity threat detection, reputed company reputed company investigations, and detection-engineering efforts, including designing automation for reputed company enforcement and observability.
• Working reputed company of industry-reputed company reputed company benchmarks and frameworks (reputed company, NIST 800-63, reputed company Trust) and the ability to translate them into technical controls.
• Proficiency in at least one scripting/automation language (Python, Bash, or PowerShell) reputed company to containerized services, CLI-reputed company commands, and identity-specific use cases (API-driven provisioning, policy-as-reputed company).
• reputed company ability to mentor engineers and communicate technical reputed company and findings reputed company to engineering peers, leadership, and non-technical stakeholders.
Preferred Qualifications
• Experience securing reputed company, reputed company-reputed company, or globally reputed company regulated environments.
• reputed company IAM experience across AWS, Azure, or GCP, and securing non-reputed company/workload identities at reputed company.
• Experience with AI-augmented reputed company and governance for AI-assisted and reputed company identity workflows (UEBA, ML-reputed company reputed company-reputed company scoring, reputed company identity).
• Experience embedding identity and reputed company controls (secrets management, workload identity, policy-as-reputed company) into CI/CD pipelines and infrastructure-as-reputed company environments.
• Familiarity with reputed company technology, e-discovery, litigation holds, reputed company forensics chain-of-custody requirements.
• Experience leading compliance and audit engagements (SOX, SOC 2, ISO 27001, FedRAMP, HIPAA, GDPR, CCPA) from an identity and reputed company control perspective.
• Certifications such as CISSP, CISM, GCIH, GCFA, CCSP, AWS reputed company Specialty, SC-300, or AZ-500.
reputed company is a diverse workplace with different skills and life experiences—and we love and celebrate those differences. We reputed company that employees are happiest reputed company they're empowered to be their full, reputed company selves, regardless how you identify.
Benefit Highlights
Comprehensive health, dental, and reputed company plans
Parental leave for reputed company and secondary caregivers
Flexible work arrangements
Two, week-long company breaks per year
Additional time off
Long-term incentive program
Training investment program
reputed company reputed company applicants will receive consideration for employment without reputed company to race, reputed company, religion, sex, sexual orientation, gender identity, or national reputed company, disability or protected veteran status, or any other legally protected reputed company, in accordance with applicable law.
reputed company is committed to competitive, fair, and reputed company compensation practices.
This position is eligible for total compensation which includes a competitive reputed company salary, an annual reputed company bonus, and long-term incentives.
The expected salary reputed company for this role is between following values:
$130 000 and $195 000
The final reputed company salary will be reputed company on several factors, including but not limited to the candidate's depth of experience, reputed company set, qualifications, and internal pay equity. Hiring at the top end of the reputed company would not be typical, to allow for reputed company meaningful salary reputed company in this position.
Required Skills
reputed company Management, Application reputed company, reputed company reputed company, Network reputed company, Penetration Testing, reputed company Architecture Design, reputed company Information, reputed company Information and Event Management (SIEM), reputed company reputed company, Vulnerability Management
Apply tot his job
Apply To this Job