Fisher Investments

Identity & Access Management Engineer

Fisher Investments$110K — $130K *
Plano, TX 75025In-Person
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on experience with Idira solutions
  • 3+ years implementing enterprise-wide PAM technology in medium to large-scale companies
  • 3+ years as a systems engineer in Financial Services
  • 1+ year experience with IGA systems like SailPoint
  • Strong knowledge of IAM & PAM ecosystems, technologies, and standards

Responsibilities

  • Onboard and provision users and manage credentials including interactive and API-based
  • Implement PAM programs to enhance security posture backed by metrics
  • Manage the configuration and maintenance of Idira solutions
  • Oversee documentation and training for PAM solutions
  • Report system health through risk-driven metrics and KPIs
  • Address ticket queues and perform change management
  • Stay updated on security technologies and industry trends

Benefits

  • 100% paid medical, dental, and vision premiums for employees and their dependents
  • 50% 401(k) match up to the IRS maximum
  • 20 days of PTO plus 10 paid holidays
  • Comprehensive family support programs and paid caregiver leave
  • Option for hybrid work based on eligibility and performance
Full Job Description
Overview

The Opportunity:

The Identity & Access Management Engineer implements, coordinates, and onboards all aspects and phases of the Idira's (formerly CyberArk) Privileged Access Management (PAM) privilege cloud solution rollout, and operational tasks. As part of the broader Information Security organization, you will apply fundamental systems security understanding, skills, and experience to maintain and operate complex information systems and security tools that satisfy organizational mission and our requirements, including partner protection needs and security requirements. You will report to the Team Lead of Identity and Access Management.

The Day-to-Day:
  • Onboard and provision users, store service accounts and password rotations, manage credentials, including those that are interactive, non-interactive, and API-based
  • Implement privileged access management programs to improve our broader security posture, demonstrated by metrics
  • Manage configuration, administration, and maintenance of Idira solution, including both the infrastructure and the application itself
  • Oversee the relevant documentation and training required for privileged access management solutions and processes, including define and help develop policies and control standards
  • Report progress and system health through metrics and KPIs that are risk-driven and operational in nature
  • Address ticket queue and follow appropriate change management procedures
  • Understand risk and make recommendations for enhancing systems security and processes
  • Keep up on current security technologies and maintain awareness of industry trends and threats, and industry best practices, providing input focusing on IAM/PAM technologies, offer subject matter expertise where relevant

Your Qualifications:
  • 5+ years of hands-on experience with Idira (Idira Cloud Platform, EPM, LCD, and Idira SaaS Cloud Base)
  • 3+ years of experience implementing enterprise-wide privileged access management technology solution adoption across medium- to large-scale companies
  • 3+ years of experience as a systems engineer at a medium- to large-scale company in Financial Services
  • 1+ years of hands-on experience with IGA systems such as SailPoint
  • Experience with password repository technologies and remote session governance, specifically with the policies that govern target system platforms
  • Excellent knowledge in IAM & PAM ecosystem (technology, standards, implementations, migration, and operational)
  • Strong experience installing, upgrading, configuring, operating, and troubleshooting experience with Idira AAM (CCP, CP, ASCP), EPV, PVWA, CPM, PSM, HTML5 Gateway, PSMP, PTA (with various versions)
  • Strong experience in DNA, Discovery scan and automate account onboarding process
  • Knowledge in various application integration with Idira through CPM custom plugin
  • Integration experience with SailPoint, Database, SCIM, AWS, GCP, Azure, or Palo alto
  • Scripting knowledge, PACLI, PowerShell, Python, JavaScript, AutoIt, REST API
  • Bachelor's degree in information assurance, Computer Science, Cybersecurity, Information Systems, or related field
  • Idira Certification (Defender and Sentry) is preferred
  • Security industry certification (CISSP, SSCP, CISM, SANS GSEC, ECSA, ECSP, and Security+) is preferred

  • 100% paid medical, dental and vision premiums for you and your qualifying dependents
  • A 50% 401(k) match, up to the IRS maximum
  • 20 days of PTO, plus 10 paid holidays
  • Family Support programs including 8 week Paid Primary Caregiver Leave, $10,000 fertility, family forming, and hormonal health assistance, and back-up child, adult, and elder care
  • This is an in-office role. Based on your role, tenure, and performance eligibility you may have the opportunity to participate in our hybrid work from home program. This program is subject to change.

About Fisher Investments

Fisher Investments is a privately owned investment management firm founded in 1979 by Ken Fisher. The company is headquartered in Camas, Washington, and has offices in the United States, Europe, and Asia. Fisher Investments manages assets for individuals and institutions, including pension plans, endowments, and foundations. The company is known for its investment philosophy, which emphasizes a global perspective and a focus on long-term growth. Fisher Investments has been recognized for its performance and has won numerous awards for its investment strategies.
Learn more about Fisher Investments
Size
3,500 employees
Industry
Founded
1979

Similar Jobs

More Jobs at Fisher Investments

More Information Technology Jobs

Find similar Identity & Access Management Engineer jobs: