8 months ago
St. Paul, MN, USA or Las Vegas, NV, USASenior
Base Salary
$150k - $184k/yr
Responsibilities
- Architect, engineer, and support enterprise IAM solutions across IGA, PAM, SSO, and MFA platforms.
- Own the organization’s cloud and hybrid identity architecture.
- Design and implement identity lifecycle management, access governance, RBAC, and least-privilege models.
- Lead application onboarding and integrations with SSO, MFA, and IGA platforms.
- Implement and manage PAM for privileged accounts, service accounts, and secrets management.
- Manage Azure AD/Entra ID, AWS IAM, and GCP IAM integrations.
- Develop IAM standards, architecture diagrams, and technical documentation.
- Serve as a subject matter expert for identity-related security incidents, audits, and compliance efforts.
- Integrate IAM platforms with SIEM, SOAR, and security monitoring solutions using APIs and automation.
- Mentor junior IAM engineers, contribute to IAM strategy and roadmap planning, and evaluate IAM tools and capabilities.
Requirements
- Bachelor’s degree in cybersecurity or computer science.
- At least seven years of experience in a related field.
- IAM or cybersecurity-related certifications, with cloud security or IAM certifications preferred.
- Hands-on experience with IGA, PAM, SSO, MFA, identity federation, conditional access, adaptive authentication, and Zero Trust identity controls.
- Experience with Active Directory, LDAP, Kerberos, enterprise directory services, and authentication and authorization protocols.
- Experience designing enterprise IAM architectures and managing hybrid identity environments.
- Experience with Azure AD/Entra ID, AWS IAM, GCP IAM, and IAM platforms such as SailPoint, Saviynt, Okta, Ping, CyberArk, BeyondTrust, or Delinea.
- Strong scripting or automation skills using PowerShell, Python, Bash, or similar tools.
- Experience integrating IAM with SaaS, cloud, and custom applications, including REST APIs and automation frameworks.
- Experience with regulatory and compliance frameworks including SOX, PCI, HIPAA, or SOC 2, as well as access reviews, certification campaigns, segregation of duties, and audit remediation.
- Experience with CI/CD pipelines, Infrastructure as Code, Git-based workflows, and Agile delivery methodologies.
- Must be authorized to work in the United States, pass a criminal background check, and be able to lead cross-functional initiatives.
Benefits
- Visa sponsorship is not available.
- The role may require various shifts or days in a 24-hour situation, some travel, and reporting to the assigned work location during declared national or state emergencies unless prohibited by law.
- Reasonable accommodations may be made for qualified individuals with disabilities.
