Staff Identity and Access Management EngineerReno, NV; San Ramon, CA
About the RoleAs a Staff Identity and Access Management Engineer, you will play a crucial role in refining our organization's approach to managing user access and permissions. You'll be responsible for creating a comprehensive inventory of accounts and permissions across our tools, all while ensuring that our identity and access management practices align closely with security principles. Your work will focus on automating workflows to enhance security and reduce the risks associated with over-privileged or duplicate service accounts, making a significant impact on our overall security posture.
The impact you will have- Implement access control policies to safeguard system resources. Regularly monitor and review user access levels to ensure compliance with security standards. Configure role-based access controls that reflect the organization's business needs and establish prompt mechanisms for revoking access for terminated users. Conduct periodic reviews and audits to maintain oversight of system access permissions.
- Create and maintain an exhaustive inventory of user accounts and permissions. Automate workflows to enhance user provisioning and de-provisioning efficiency. Ensure compliance with identity management best practices and security guidelines by collaborating with cross-functional teams to improve user identity lifecycle management.
- Develop security policies focused on identity and access management. Ensure all user access activities comply with these policies and conduct training sessions to educate staff on the requirements. Regularly review and update policies in response to regulatory changes while collaborating with security teams to identify and address any policy violations.
- Conduct regular audits of access logs to identify any suspicious activities. Analyze discrepancies in user access and permissions during these audits, and generate compliance reports that showcase our adherence to identity management policies. Collaborate with audit teams to ensure we align with regulatory standards and implement corrective actions for any identified compliance violations.
- Lead the incident response team to effectively address security breaches related to access management. Evaluate the impact of incidents and coordinate communication between technical teams and stakeholders to ensure a smooth resolution. Document response actions and outcomes for future reference while developing comprehensive incident response plans tailored to identity and access management.
- Develop comprehensive technical documentation for identity and access management processes. Create user manuals and guidelines that promote best practices in access management. Document workflow automation processes clearly and maintain updated documentation to reflect changes in systems and policies. Collaborate with engineering and security teams to gather essential information for accurate documentation.
What we look for- Bachelor's degree in Computer Science, Information Technology, or related field
- 5+ years with identity and access management solutions
- 3+ years with security policy development
- 4+ years with incident response and management
- Proficiency in identity and access management tools like Okta, Active Directory, or similar
- Experience with role-based access control (RBAC) implementation
- Familiarity with security frameworks and compliance standards such as NIST, GDPR, or ISO 27001
- Ability to conduct audits and analyze access logs for suspicious activity
- Skills in automating workflows using scripting languages like Python or PowerShell
- Knowledge of user lifecycle management processes
- Experience with security policy drafting and compliance monitoring
- Familiarity with incident response procedures and documentation
- Ability to create and maintain technical documentation and user manuals
- Experience with cross-functional teamwork in security and IT environments
- Successfully implemented access control policies that enhanced security posture
- Developed and maintained a comprehensive inventory of user accounts and permissions
- Automated workflows that increased efficiency in user provisioning and de-provisioning
- Conducted regular audits that improved compliance with identity management policies
- Led incident response efforts that effectively mitigated security breaches related to access management
- Produced detailed technical documentation that streamlined identity and access management processes
Compensation:The typical starting salary range for this role is: $138,000-$173,000.
Final compensation amounts are determined by multiple factors, including candidate experience and expertise, and may vary from the amount listed above.
As an employee at Ridgeline, you'll have many opportunities for advancement in your career and can make a true impact on the product.
In addition to the base salary, Ridgeline employees can participate in our Company Stock Plan subject to the applicable Stock Option Agreement. We also offer rich benefits that reflect the kind of organization we want to be: one in which our employees feel valued and are inspired to bring their best selves to work. These include unlimited vacation, educational and wellness reimbursements, and $0 cost employee insurance plans. Please check out our Careers page for a more comprehensive overview of our perks and benefits.
#LI-Hybrid