Location(s)
Alpharetta, Georgia, Birmingham, Alabama, Chicago, Illinois, Downers Grove, Illinois, Jacksonville, Florida
Position SummaryThe IAM Engineer is responsible for design, development, automation, and deployment of identity and access management (IAM) solutions for the enterprise. This includes SSO optimization and federation integrations, enforcement of policy controls through scripting, and working with cross-functional teams to secure identity lifecycles across IT and OT environments.
Position Responsibilities- Generate solutions and policies in support of the Privileged Access Management and Identity Governance for the company and consumers
- Integrate and manage SSO and MFA for cloud and on-prem applications using SAML, OAuth, and SCIM
- Automate identity workflows, group assignments, access revocations, and certification campaigns using tools like PowerShell, Python, or IDP Workflows
- Enforce access controls aligned to Zero Trust, RBAC, and JML (Joiner-Mover-Leaver) lifecycle policies
- Harden IAM configurations in hybrid environments (e.g., password policies, conditional access, privileged account handling)
- Participate in the evaluation and integration of IAM-related technologies and security enhancements
- Assist with privileged access management (PAM), identity federation design, and role based grants
- Support audit and compliance efforts by maintaining evidence, resolving control gaps, and improving access visibility
- Engage application teams and stakeholders to design and implement secure authentication / authorization to their workstreams
- Drive standards and support implementations with integrations to and from third party directories
Position Qualifications- 5+ years of experience in IT, preferably in Security
- Identity and Access Management experience
- Privileged Access Management experience
- Identity Governance experience
- NIST and/or SOC2 experience a plus
- In-depth understanding of modern authentication solutions using SAML/OAuth/OIDC
- In depth knowledge of Microsoft Active Directory
- Proven track record in the area PAM security
- Capable in all information security domains including regulatory compliance, risk assessments, controls implementations, governance frameworks and audit processes
- Ability to collaborate with high-performance teams and individuals to drive results
- Able to integrate with cloud based IAM vendors
- Demonstrated customer service orientated work ethic
- Experience with tools such as MS Entra, Active Directory, ForgeRock, OKTA, CyberArk, SailPoint
- This position works in the Kemper office or can be remote if candidate is not local.
The range for this position is $89000 to $148100. When determining candidate offers, we consider experience, skills, education, certifications, and geographic location among other factors. This job is eligible for an annual discretionary bonus and Kemper benefits (Medical, Dental, Vision, PTO, 401k, etc.).
#LI-AK
#LI-Remote