Job Description: Identity and Access Management (IAM) EngineerPosition Title Identity and Access Management (IAM) Engineer
Job Summary We are seeking an experienced Identity and Access Management (IAM) Engineer to design, implement, maintain, and secure enterprise identity solutions. The ideal candidate will manage user identities, access controls, authentication mechanisms, and identity governance processes to ensure secure and compliant access to organizational resources.
Key Responsibilities - Design, implement, and maintain IAM solutions for enterprise environments.
- Manage user lifecycle processes including onboarding, role changes, access reviews, and offboarding.
- Configure and administer identity platforms, directories, and access management systems.
- Implement authentication and authorization controls including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC).
- Manage Identity Governance and Administration (IGA) processes including access certification, entitlement management, and segregation of duties (SoD).
- Integrate applications with IAM platforms using SAML, OAuth, OpenID Connect, LDAP, and Active Directory protocols.
- Develop and maintain IAM workflows, policies, and automation processes.
- Perform access provisioning, deprovisioning, and privilege management.
- Monitor IAM systems for security events, access anomalies, and policy violations.
- Support privileged access management (PAM) solutions and controls.
- Conduct periodic access reviews and compliance audits.
- Troubleshoot authentication, authorization, and integration issues.
- Collaborate with security, infrastructure, application, and compliance teams.
- Maintain IAM documentation, procedures, and operational standards.
Required Technical Skills - Strong understanding of IAM concepts:
- Identity lifecycle management
- Authentication and authorization
- Least privilege access
- RBAC and ABAC models
- Privileged Access Management (PAM)
- Identity Governance and Administration (IGA)
- Hands-on experience with:
- Active Directory
- LDAP
- Azure Active Directory / Microsoft Entra ID
- Identity providers (IdP)
- Knowledge of authentication technologies:
- SAML
- OAuth 2.0
- OpenID Connect
- Kerberos
- MFA technologies
- Experience with IAM integrations and API-based automation.
- Knowledge of scripting languages:
- Understanding of security frameworks and compliance requirements:
- ISO 27001
- NIST
- SOC 2
- GDPR
Preferred Tools & Technologies IAM / IGA Platforms - SailPoint IdentityIQ / IdentityNow
- Saviynt
- Okta Identity Cloud
- Microsoft Entra ID (Azure AD)
- CyberArk
- Ping Identity
- One Identity
Directory & Cloud Platforms - Active Directory
- Microsoft 365
- AWS IAM
- Google Cloud Identity
Security & Automation Tools - PowerShell scripting
- Python automation
- REST APIs
- ServiceNow integrations
- SIEM monitoring platforms
Preferred Certifications - Certified Identity and Access Manager (CIAM)
- Certified Information Systems Security Professional (CISSP)
- Microsoft Certified: Identity and Access Administrator Associate
- Okta Certified Professional
- SailPoint IdentityIQ Certification
- CyberArk Certification
- CompTIA Security+
Education & Experience - Bachelor's degree in Computer Science, Information Security, Information Technology, or related field preferred.
- Experience in IAM engineering, identity administration, security operations, or access management.
- Experience implementing IAM solutions in enterprise environments.
- Knowledge of cloud identity and security best practices.
Soft Skills - Strong analytical and troubleshooting skills.
- Ability to manage security requirements while supporting business needs.
- Strong communication and documentation skills.
- Attention to detail and compliance-focused mindset.
- Ability to collaborate with cross-functional teams.
Key Deliverables - Secure identity lifecycle management processes.
- IAM platform configuration and integrations.
- Access control improvements.
- Automated provisioning and deprovisioning workflows.
- Access review and compliance reports.
- IAM security enhancement recommendations.
Role Type Full-time / Contract
Department Cybersecurity / Identity Security / Information Security