First American

Principal Identity Engineer (Cloud IAM / CIAM)

First American$170K — $227K *
Enterprise Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of experience with identity platforms in enterprise settings.
  • In-depth expertise in Microsoft Entra, AWS IAM, and Google Cloud IAM; OCI experience a plus.
  • Proven capability in designing cloud-agnostic IAM models.
  • Strong knowledge of IAM security architecture and risk-based access controls.
  • Experience with least privilege design, JIT access, and Zero Trust identity frameworks.
  • Expertise in OAuth 2.0, OpenID Connect, and SAML protocols.
  • Demonstrated experience using Terraform and GitHub for IAM-as-Code implementations.

Responsibilities

  • Own the IAM strategy across cloud environments including Microsoft Entra, AWS, and Google Cloud.
  • Design and implement a Zero Trust identity model with continuous verification for access.
  • Lead the modernization and operationalization of IAM capabilities like SSO and MFA.
  • Develop customer identity solutions while balancing security and user experience.
  • Establish IAM governance frameworks for access lifecycle and compliance processes.
  • Define and execute an IAM-as-Code program to automate identity management workflows.
  • Engineer reliable CI/CD pipelines for seamless IAM deployments and monitoring.

Benefits

  • Comprehensive medical, dental, and vision plans.
  • 401k retirement savings options with company match.
  • Generous PTO and paid sick leave policy.
  • Employee stock purchase plans available.
  • Support for a diverse and inclusive workplace culture.
Full Job Description
As a Principal Identity Engineer, you will own the technical strategy, architecture, and engineering execution for enterprise Identity and Access Management (IAM) across First American’s cloud and hybrid environments. This role is central to strengthening our security posture by delivering secure, scalable identity capabilities across our cloud environments (Azure AD/AWS/GCP). You will lead workforce IAM, partner/federation (B2B), and customer identity (CIAM) architecture where applicable; establish Zero Trust identity controls; and set enterprise standards for IAM-as-code using Terraform + GitHub with automation in Python/Bash/JSON. This is a hands-on principal role requiring deep technical expertise, cross-org influence, and the ability to build repeatable platforms and guardrails teams can safely self-serve. WhatYou’llDo: • Own the enterprise IAM strategy and target-state architecture across Microsoft Entra, AWS, and Google Cloud (OCI a plus). Define secure, scalable identity patterns for workforce, partner, and customer access that align with security, risk, and compliance requirements.  • Design and operationalize a Zero Trust identity model with continuous verification, risk-based access, and adaptive authentication. Reduce standing privilege through least privilege design, just-in-time (JIT) access, and standardized entitlement models.  • Hands-on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments. Lead modernization efforts, including migration from hybrid Active Directory to Entra ID–based authentication.  • Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms. Balance security, privacy, performance, and customer experience while enabling scalable enterprise integrations.  • Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence. Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness.  • Define and lead an enterprise IAM-as-Code program using Terraform and GitHub. Build reusable, versioned modules and establish PR-based workflows with auditability, approvals, and security guardrails.  • Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, drift detection, and rollback strategies. Ensure reliable, auditable identity changes with operational monitoring and clear runbooks.  • Develop automation in Python, Bash, and JSON to scale identity operations and reduce manual risk. Support policy management, bulk changes, integrations, and identity-related incident response and diagnostics.  What You’ll Bring:  • Deep hands-on experience designing and operating identity platforms at scale in complex environments.  • Advanced expertise across Microsoft Entra ID, AWS IAM, and Google Cloud IAM, with OCI experience a plus.  • Proven ability to design cloud-agnostic IAM models and implement them consistently across platforms. • Strong background in IAM security architecture, governance, and risk-based access controls.  • Hands-on experience with least privilege design, JIT access, Zero Trust identity, and RBAC/ABAC models.  • Expert knowledge of OAuth 2.0, OpenID Connect, and SAML.  • Proven experience delivering enterprise-scale SSO and MFA solutions.  • Demonstrated experience establishing IAM-as-Code using Terraform with GitHub-based change control.  • Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design.  • Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs. (preferred)  • Ability to communicate complex identity concepts to both technical and non-technical audiences.  • Strong influence, documentation, and execution skills at the principal or senior architect level.  • Relevant security or identity certifications such as CISSP or identity-focused credentials.  • Bachelor’s degree or equivalent experience, with extensive background in enterprise security engineering.  Pay Range: $170,900.00 - $227,900.00 AnnuallyThis hiring range is a reasonable estimate of the base pay range for this position at the time of posting. Pay is based on a number of factors which may include job-related knowledge, skills, experience, business requirements and geographic location. What We Offer By choice, we don’t simply accept individuality – we embrace it, we support it, and we thrive on it! Our People First Culture celebrates diversity, equity and inclusion not simply because it’s the right thing to do, but also because it’s the key to our success. We are proud to foster an authentic and inclusive workplace For All. You are free and encouraged to bring your entire, unique self to work. First American is an equal opportunity employer in every sense of the term. Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and other great benefits like an employee stock purchase plan.

About First American

First American provides financial services through its Title Insurance and Services segment and its Specialty Insurance segment. The First American Family of Companies' core business lines include title insurance and closing/settlement services; title plant management services; title and other real property records and images; valuation products and services; home warranty products; property and casualty insurance; and banking, trust, and investment advisory services.

First American Careers

Join the vibrant team at First American, a leading company renowned for its commitment to innovation, leadership, and professional excellence. As one of the most respected names in the industry, First American offers unparalleled job opportunities that propel your career to new heights.

Work You’ll Do

At First American, your work transcends ordinary job responsibilities. You will be part of a dynamic team that drives industry standards through innovation and leadership. Engage in projects that transform our services and, by extension, the industry itself, making an impact that matters.

Explore a World of Opportunities

Whether you're looking for an entry-level position or a more senior role, First American presents a spectrum of career paths across various departments. Our job opportunities are designed to foster professional growth and personal achievement.

Internship Programs

Kickstart your career with First American’s internship programs. These opportunities are perfect for gaining real-world experience, enhancing your skills, and networking with industry leaders. Our internships provide a robust foundation for future employment and are a stepping stone to full-time positions within the company.

Culture and Benefits

First American is committed to creating a workplace where every team member feels valued. We celebrate diversity and are dedicated to creating an inclusive environment. Our benefits package is comprehensive, supporting both your professional and personal life, including health, wellness, and continuous learning opportunities.

Professional Development and Training

We believe in nurturing our team’s skills through targeted training programs, including leadership development and diversity training. These initiatives ensure that you are equipped to meet the challenges of today and tomorrow, fostering an environment of continuous improvement and personal growth.

Join Our Team

Embark on your First American journey today by exploring the various positions available. We are actively hiring and looking for talented individuals who are passionate, curious, and driven to excel. Check out our open positions, tailor your resume, and prepare for an interview where you can showcase your unique abilities.

Stay Connected

Keep up to date with the latest in career tips, industry news, and job openings at First American. Subscribe to our job alert emails and never miss an opportunity to advance your career with us.

Networking and Growth

At First American, career growth is complemented by opportunities to connect and collaborate with professionals across the company. Engage in networking events that can open doors to numerous career paths and professional relationships.

Why First American?

Choosing First American means opting for a career where your skills are appreciated and your contributions are valued. Here, every employee is empowered to reach their full potential, supported by our culture of growth, leadership, and innovation. Join First American today and be part of a team that is reshaping the future through exceptional service, dedication, and a commitment to excellence. Explore the positions we have available and take the first step towards a rewarding career at First American.
Learn more about First American
Size
22,233 employees
Market Cap
$5.4 billion
Industry
Net Income
$696.4 million
Founded
1889
5 Year Trend
+10.6%
Revenue
$7 billion
NASDAQ

Similar Jobs

More Jobs at First American

More Enterprise Technology Jobs

Find similar Principal Identity Engineer (Cloud IAM / CIAM) jobs: