Job Title: Security IDaaS Engineer (Access Management & Federation)
Role Overview
We are seeking a skilled and security-focused Security IDaaS Engineer to join our Federation Services team. In this role, you will leverage technology to improve, streamline, and automate information security systems, developing and maintaining robust security controls, rules, and safeguards to protect enterprise information assets.
This is a hands-on technical role where you will facilitate and configure complex application integrations, manage IAM objects (users, groups, service accounts, and API tokens), and build access management services. Collaborating across cross-functional teams, you will design secure Authentication, Authorization, IDaaS, and API services to reduce manual overhead, accelerate time-to-market, and strengthen overall security posture and change management practices. If you have a strong background in identity federation and cloud security, we want to hear from you.
Key Responsibilities
Identity, Federation & Access Management
• Integration & Configuration: Facilitate and configure secure application integrations using industry-standard protocols including SAML, OAuth, and OpenID Connect.
• IAM Administration: Manage lifecycle creation and governance of IAM objects, including users, groups, service accounts, and API tokens.
• Access Control Services: Design, code, and maintain scalable Access Management Services and IDaaS solutions in cloud environments.
Security Operations & Compliance
• Posture Management: Develop and maintain security posture rules, controls, and safeguards to protect enterprise assets.
• Incident & Change Management: Manage operational security incidents, adhere strictly to change management processes, and support rapid recovery practices.
• Documentation & Knowledge Sharing: Create comprehensive technical documentation, facilitate team knowledge sharing, and drive continuous process improvements.
Collaboration & Agile Delivery
• Cross-Functional Partnership: Collaborate with security architects, application teams, and business units to deliver secure, automated authentication and authorization solutions.
• Agile Participation: Engage actively in Agile ceremonies, sprint planning, and backlog refinement to deliver technical milestones.
Qualifications & Requirements
Minimum Qualifications
• Education: Bachelor's degree in Computer Science, Information Security, or a related discipline (or equivalent practical experience).
• Experience Baseline: 5+ years of relevant professional experience in Information Security, Identity & Access Management, or related IT engineering roles.
• Technical Mastery (Must Have):
oProven experience with IDaaS platforms (specifically Okta) and Identity
Governance & Administration (IGA) / Identity Management (IDM).
oDeep expertise in federation protocols: SAML, OAuth.
oCloud platform experience across AWS or Azure.
oScripting and API testing proficiency using Postman and PowerShell.
oDemonstrated experience working within Agile development environments.
• Citizenship / Work Authorization: U.S. Citizenship or U.S. Permanent Resident status required.
Preferred Attributes
• Hands-on security framework knowledge (e.g., NIST, FedRAMP, NIST CSF).
• Experience with Microsoft Entra ID and identity governance platforms like Saviynt.
• Proficiency in Python for security automation and scripting.
• Strong understanding of Role-Based Access Control (RBAC), REST APIs, and core networking infrastructure.
For temporary assignments lasting 13 weeks or longer, AllSTEM Connections is pleased to offer major medical, dental, vision, 401k and any statutory sick pay where required.
Additional Skills
(none specified)
AllSTEM Representative Contact Info
Account Executive:
Nichols
Branch Phone:
(909) 244-1777
Location:
Ontario, CA