Senior Identity & Access Management Engineer

Uber Freight

$131K — $160K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of hands-on IAM experience in a medium-to-large enterprise environment.
  • Bachelor's degree in CS, IT, or equivalent practical experience.
  • Deep expertise in identity platforms: JumpCloud, Entra ID (Azure AD), Okta, and Active Directory.
  • Hands-on scripting proficiency in PowerShell, Bash, or Python to automate identity workflows.
  • Deep knowledge of federated protocols (SAML 2.0, OIDC, OAuth 2.0) with the ability to read raw assertions and debug ACS URL mismatches.

Responsibilities

  • Execute & Optimize the Identity Migration: Drive the execution of migrating ~175 enterprise applications from Okta and Entra ID to JumpCloud.
  • Automation & Process Improvement: Identify manual steps in identity lifecycle and author scripts to automate workflows.
  • Architectural Support: Manage complex technical sub-projects and align identity solutions with reliability goals.
  • Stakeholder Engagement & Project Management: Gather requirements from business partners and drive tasks to completion.
  • SOP Development & Knowledge Transfer: Create clear Standard Operating Procedures and technical manuals for seamless training.
  • Design & Implement Identity Platforms: Support the design and implementation of identity management systems and integrations.
  • User Lifecycle & Access Control: Own provisioning and access control processes, ensuring secure onboarding practices.
  • MDM & Conditional Access: Implement MDM and configure Conditional Access policies for compliance and security.
  • Operational Excellence & Troubleshooting: Resolve complex TechConnect tickets and perform application troubleshooting.
  • Change Management: Prepare Change Requests for the Change Advisory Board.

Benefits

  • Company sponsored health plan
  • Dental and vision benefits
  • 401k match
  • Financial and mental wellness benefits
  • Parental leave
  • Short- and long-term disability coverage
  • Life insurance
  • Eligible for performance or sales incentive bonus program
  • Participation in equity awards
Full Job Description
Schedule: Full Time

Job Type: Hybrid

Salary Type: Salary

Req #: 3259

No immigration sponsorship or transfer available for this role.

We are looking for a Senior Identity & Access Management (IAM) Engineer to build, support, and scale superior identity services. If you are an experienced identity professional with strong technical skills, solid business acumen, and project management capabilities, we want to meet you.

In this role, you will start by diving into our immediate operational challenges - accelerating our Entra ID to JumpCloud migration, managing the current ticket backlog, and establishing the Standard Operating Procedures (SOPs) required to eventually offload routine tasks through automation or to our End User Computing (EUC) team.

As a senior resource, you will look beyond the daily queue to identify systemic inefficiencies, automate workflows, and optimize our identity ecosystem. Your strategic input and ability to own complex technical tracks will directly allow our Infrastructure Architect to focus on long-term architecture and high-level strategy.

What the candidate will do
  • Execute & Optimize the Identity Migration: Drive the execution of migrating ~175 enterprise applications and directory sync architectures from Okta and Entra ID to JumpCloud. Resolve ongoing migration friction and manage the migration backlog efficiently.
  • Automation & Process Improvement: Actively identify manual steps within the identity lifecycle and migration pipelines. Author scripts in PowerShell, Bash, or Python to scale identity provisioning, expand automated requests, and build frictionless, self-healing solutions.
  • Architectural Support: Partner with and alleviate the Identity Architect by taking ownership of complex technical sub-projects, analyzing infrastructure dependencies, and ensuring identity solutions align with our 99.99% reliability goals.
  • Stakeholder Engagement & Project Management: Actively engage with internal business partners and application owners to gather requirements. Follow up assertively to ensure stakeholder availability, coordinate testing windows, and drive tasks to completion despite communication roadblocks.
  • SOP Development & Knowledge Transfer: Author comprehensive, clear Standard Operating Procedures (SOPs), technical manuals, and knowledge base articles. Define and document identity processes to seamlessly train, mentor, and eventually offload key KTLO (Keep the Lights On) activities to the EUC team.
  • Design & Implement Identity Platforms: Participate in the design, implementation, and support of identity, authentication, authorization, and certificate management platforms. Design reusable SAML/OIDC integration patterns across multiple environments.
  • User Lifecycle & Access Control: Own user provisioning, deprovisioning, role changes, and Role-Based Access Control (RBAC), ensuring onboarding access posture is consistent and secure across the organization.
  • MDM & Conditional Access: Execute MDM rollout plans, maintain device compliance baselines (Intune/JumpCloud), and configure complex Conditional Access policies to meet strict security and business requirements.
  • Operational Excellence & Troubleshooting: Diagnose and resolve complex TechConnect (Jira Service Management) tickets. Review logs, filter past noise, and perform remote troubleshooting for both legacy and web-based applications.
  • Change Management: Prepare, risk-assess, and represent Change Requests (CRs) through the Change Advisory Board (CAB) following established control processes.


Basic Qualifications:
  • 5+ years of hands-on IAM experience in a medium-to-large enterprise environment.
  • Bachelor's degree in CS, IT, or equivalent practical experience.
  • Deep expertise in identity platforms: JumpCloud, Entra ID (Azure AD), Okta, and Active Directory.
  • Hands-on scripting proficiency in PowerShell, Bash, or Python to automate identity workflows.
  • Deep knowledge of federated protocols (SAML 2.0, OIDC, OAuth 2.0) with the ability to read raw assertions and debug ACS URL mismatches.


Preferred Qualifications:
  • Relevant industry certifications (e.g., JumpCloud, Microsoft, or CISSP).
  • Hands-on experience with Microsoft Intune, CyberArk (PAM/EPM), CrowdStrike Falcon, or Cisco ISE.
  • Background managing access controls for Oracle Cloud Infrastructure or Google Cloud Directory.


Benefits & Compensation for U.S. Employees

Employees working more than 30 hours in the US at Uber Freight are eligible for benefits like a company sponsored health plan, dental and vision benefits, 401k match, financial and mental wellness benefits, parental leave, short- and long-term disability coverage, life insurance and more. US based employees may also be eligible for a performance or sales incentive bonus program, participation in Uber Freight equity awards, and other types of compensation depending upon the role.

For Chicago-based roles: The salary range for this role is $131,000.00 - $160,000.00 per year

Similar Jobs

More Jobs at Uber Freight

More Information Technology Jobs

Find similar Senior Identity & Access Management Engineer jobs: