CrawlJobs Logo

IAM Security Engineer – Identity Governance & Administration

United States, Indianapolis Employment contract 40.00 - 48.00 USD / Hour · Job Posted March 19, 2026
Apply Position
Job Link Share

Job Description

We are seeking a Senior IAM Security Engineer specializing in Identity Governance & Administration (IGA) to manage and execute the full lifecycle of access certifications across enterprise IAM platforms. This role will primarily focus on SailPoint and Saviynt, ensuring identity governance processes align with regulatory requirements, audit standards, and least-privilege security principles. The ideal candidate will bring strong hands-on experience with IGA platforms and access governance processes, including manager, entitlement, privileged access, and non-human identity certifications. This role will also support IAM operational activities such as Joiner-Mover-Leaver (JML) provisioning workflows and access revocation management when certification initiatives are not the primary focus.

Job Responsibility

  • IGA Certification Lifecycle Execution
  • Own the end-to-end lifecycle of access certifications, including design, configuration, launch, monitoring, escalation, closure, and documentation
  • Configure and manage certifications within SailPoint and Saviynt
  • Define certification parameters including scope, reviewers, schedules, escalation rules, and completion criteria
  • Monitor certification campaigns daily and manage reviewer follow-ups, escalations, and overdue items
  • Post-Certification Remediation & Follow-Through
  • Manage all post-certification remediation activities
  • Partner with IAM provisioning teams and application owners to ensure remediation activities are properly executed
  • Ensure certifications are closed with complete, audit-ready documentation and evidence
  • Audit Readiness & Governance
  • Identify audit risks, control weaknesses, and process gaps in identity governance processes
  • Implement improvements to reduce audit exposure and improve evidence quality
  • Serve as a subject matter expert during internal and external audits related to access governance
  • Produce clear documentation and reporting to support audit and compliance requirements
  • Efficiency & Continuous Improvement
  • Analyze certification performance metrics including completion rates, escalation trends, and remediation timelines
  • Identify opportunities for automation, standardization, and configuration improvements
  • Collaborate with IAM engineering teams to enhance SailPoint and Saviynt certification capabilities
  • Contribute to the ongoing improvement of IGA governance processes and data quality
  • IAM Operations & Provisioning Support
  • Support IAM operations including: Manual provisioning and deprovisioning for Joiner, Mover, and Leaver (JML) workflows, Execution of access revocations resulting from certification decisions, Processing revocation and exception tickets, Ensuring IAM operations follow least privilege principles and established SLAs
  • Collaboration & Technical Leadership
  • Serve as a senior IAM technical resource, providing guidance and knowledge sharing
  • Work closely with: Application owners, Information Security & Risk teams, Audit and Compliance partners, Security Engineering and IT Operations teams
  • Communicate certification status, risks, and outcomes through reports and stakeholder updates

Requirements

  • Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent experience)
  • Strong hands-on experience with IGA platforms such as SailPoint and/or Saviynt
  • Experience managing user, entitlement, privileged, and non-human identity certifications
  • Solid understanding of IAM concepts including: Least privilege and access governance, Role-Based Access Control (RBAC), Non-human identity management, Joiner / Mover / Leaver (JML) lifecycle
  • Experience supporting access governance audits and compliance activities
  • Strong Excel and documentation skills
  • Strong project coordination or project management experience

Nice to have

  • Experience working in regulated industries such as financial services or healthcare
  • Familiarity with NIST, SOX, SOC, or other security and audit frameworks
  • Experience collaborating with IAM operations and provisioning teams
  • Strong analytical, communication, and stakeholder management skills

What we offer

  • medical
  • dental
  • 401(k)
  • direct deposit
  • commuter benefits

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

IAM Security Engineer – Identity Governance & Administration

8 matching positions

Identity Governance and Administration (IGA) Engineer

Barbaricum is seeking an Identity Governance and Administration (IGA) Engineer t...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret clearance with SCI eligibility
  • Bachelor’s or Master’s degree in Cybersecurity, Information Technology, Computer Science, or related field
  • 3–10 years of relevant experience (Journeyman) or 10+ years of experience (Senior)
  • Hands-on experience implementing and administering SailPoint identity governance solutions
  • Strong knowledge of Active Directory, LDAP, and Azure Active Directory structures and management
  • Experience implementing Role-Based Access Control (RBAC), Separation of Duties (SoD), and access certification processes
  • Required: CompTIA Security+ CE (DoD 8570 IAT Level II)
Job Responsibility
Job Responsibility
  • Deploy and administer SailPoint IdentityNow or IdentityIQ across enterprise environments
  • Design and automate identity lifecycle processes including Joiner, Mover, and Leaver (JML) workflows
  • Define and manage identity attribute schemas supporting Attribute-Based Access Control (ABAC) models
  • Implement access certification campaigns and governance processes to maintain compliance with audit requirements
  • Develop and maintain role-based and attribute-based access models within SailPoint
  • Integrate SailPoint with Active Directory, Azure Active Directory (Entra ID), and enterprise applications
  • Support synchronization of identity data across classified and unclassified networks
Read More
Arrow Right

Senior Cyber Security Engineer II-Identity Governance

The Sr. Cyber Security Engineer II – Identity Governance is a pivotal role respo...
Location
Location
United States , Framingham
Salary
Salary:
139000.00 - 191000.00 USD / Year
staplespromo.com Logo
Staples Promotional Products
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field or equivalent work experience
  • 10 or more years of progressively complex experience in cybersecurity
  • Proven experience with cybersecurity frameworks (e.g., NIST, ISO 27001)
  • Hands-on experience with security systems, including firewalls, intrusion detection systems, anti-virus software, authentication systems, log management, and content filtering
  • Knowledge of network protocols and data encryption methods
  • Hands-on experience supporting Active Directory in an enterprise environment
  • Practical experience with identity and access management concepts including: user lifecycle provisioning, entitlement management, role-based access control (RBAC)
  • Experience building or supporting application integrations with an IGA platform
  • Experience supporting SSO and authentication integrations
  • Working knowledge of conditional access and modern authentication controls
Job Responsibility
Job Responsibility
  • Engineer, maintain, and secure Active Directory components including domains, OUs, group structures, service accounts, and delegated administration models
  • Support hybrid identity patterns integrating on‑premises Active Directory with cloud identity platforms
  • Partner with infrastructure and cloud teams to ensure directory services are resilient, monitored, and aligned to security best practices
  • Apply Zero Trust security concepts to identity systems, recognizing Active Directory and identity connectors as high‑risk control plane assets
  • Support privileged access separation, administrative role scoping, and least‑privilege enforcement across identity platforms
  • Participate in hardening initiatives to reduce privilege escalation paths and credential exposure within identity services
  • Implement and support SSO and federation integrations using industry‑standard protocols (SAML, OIDC, OAuth)
  • Assist in designing and maintaining conditional access policies based on user risk, role, device posture, and authentication context
  • Troubleshoot authentication and authorization issues across directories, identity providers, and integrated applications
  • Support joiner / mover / leaver lifecycle processes across Active Directory and downstream applications
What we offer
What we offer
  • Competitive base salary + bonus on eligible positions
  • 22 days plus 7 major holidays and 1 floating holiday
  • Company match 401(k) plan
  • Online and retail discounts
  • Physical and mental health wellness programs
  • Daycare, cafeteria, fitness center, and coffee shop at our HQ
  • Inclusive culture with associate-led Business Resource Groups
  • Fulltime
Read More
Arrow Right

Security Engineer, Identity & Access Management

The Security Team is seeking a highly skilled IAM Engineer with a strong focus o...
Location
Location
Poland
Salary
Salary:
225300.00 - 304800.00 PLN / Year
dropbox.com Logo
Dropbox
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in identity and access management (IAM), with direct ownership of Okta and/or SailPoint implementations
  • BS degree in Computer Science, Information Technology, Cybersecurity or related technical field, or equivalent technical experience
  • Demonstrated expertise in Okta platform administration, including Universal Directory, Okta Workflows, Lifecycle Management, and SSO integrations
  • Hands-on experience with SailPoint IdentityNow, configuring identity governance, access reviews, provisioning, and policy management
  • Strong understanding with authentication protocols, i.e. SAML, OAuth, OIDC, and MFA
  • Experience with automation and API integration and ability to build workflows and automations using tools like Okta Workflows, Python, or JavaScript, and comfort working with REST APIs
  • Background in security and compliance, namely familiarity with SOX, access certifications, and audit support for IAM environments
Job Responsibility
Job Responsibility
  • Design, implement, and maintain secure identity and access management (IAM) solutions using Okta, Okta Workflows, and SailPoint to support scalable, automated, and auditable identity lifecycle management
  • Lead SSO integration efforts for internal and third-party applications, ensuring secure authentication and seamless user experience across the enterprise
  • Develop and enforce access control policies and governance models to meet security, compliance, and SOX certification requirements
  • Support the onboarding of enterprise applications into Okta, including custom configuration, testing, and rollout to production
  • Enhance and maintain synchronization services between identity sources and downstream systems using SailPoint IdentityNow and directory services
  • Participate in incident response, troubleshooting, and resolution of identity-related issues across infrastructure and application stacks
  • Contribute to the development of documentation, standards, and reusable templates for identity workflows and access reviews
  • On-call work may be necessary occasionally to help address bugs, outages, or other operational issues
What we offer
What we offer
  • Competitive medical, dental and vision coverage
  • Retirement savings through a defined contribution pension or savings plan
  • Flexible PTO/Paid Time Off, paid holidays, Volunteer Time Off, and more
  • Income Protection Plans: Life and disability insurance
  • Business Travel Protection: Travel medical and accident insurance
  • Perks Allowance to be used on what matters most to you
  • Parental benefits including: Parental Leave, Fertility Benefits, Adoptions and Surrogacy support, and Lactation support
  • Mental health and wellness benefits
  • Fulltime
Read More
Arrow Right

Identity Access Management (IAM) Engineer

The Identity and Access Management (IAM) Engineer is responsible for designing, ...
Location
Location
United States
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong knowledge of IAM principles, frameworks, and best practices
  • Proficiency in authentication and authorization protocols (SAML, OAuth, OpenID Connect)
  • Experience implementing RBAC, MFA, and identity federation in hybrid environments
  • Strong knowledge of DoD IL2, IL4, and IL5 compliance frameworks and security controls
  • Demonstrated experience designing and managing IAM frameworks in cloud environments (AWS and/or Azure)
  • Experience configuring and managing identity governance and administration tools
  • Proven experience implementing zero-trust security models
  • Hands-on experience integrating IAM solutions across enterprise systems such as Microsoft Entra ID, Okta, Ping Identity, and AWS IAM
  • Experience supporting compliance and security requirements within regulated environments
  • Bachelor’s degree in Cybersecurity, Information Assurance, Computer Science, or a related field or minimum of five (5) years of equivalent experience in IAM engineering
Job Responsibility
Job Responsibility
  • Designing, implementing, and managing secure IAM solutions across cloud and on-premises environments
  • Protecting organizational assets by ensuring secure authentication, authorization, and identity governance aligned with compliance and security standards, including Department of Defense (DoD) frameworks
  • Supporting secure enterprise environments that span cloud and on-premises systems
  • Coordinating across cybersecurity, infrastructure, and application development teams
  • Fulltime
Read More
Arrow Right

IAM Engineer, Ford Energy

At Ford, you’ll work on ideas that matter, alongside passionate people who want ...
Location
Location
United States , Glendale Junction
Salary
Salary:
74300.00 - 144900.00 USD / Year
ford.com Logo
Ford Motor Company
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Cybersecurity, Computer Engineering, or Information Technology or 5+ years of experience in Identity and Access Management (IAM) engineering or architecture
  • Practical experience with enterprise IAM/IdP platforms (e.g., Okta, Ping Identity, Microsoft Entra ID/Azure AD) and PAM solutions (e.g., CyberArk, HashiCorp Vault)
  • Demonstrated experience with OAuth 2.0, OIDC, SAML, LDAP, and Active Directory structures
  • Strong communication skills with the ability to navigate cross-functional engineering and IT teams
Job Responsibility
Job Responsibility
  • Lead the technical design, deployment, and local governance of IAM frameworks for Ford Energy, collaborating with Enterprise Architects for final design approval
  • Define and maintain testable IAM requirements for cloud platforms, SCADA systems, and edge devices, ensuring traceability from concept to deployment
  • Establish secure identity lifecycle processes (provisioning, de-provisioning, and transfer) for internal employees, external partners, and utility customers
  • Implement and secure modern authentication (MFA, SSO, Passwordless) and federation standards (OIDC, OAuth 2.0, SAML 2.0)
  • Design secure machine-to-machine (M2M) authentication and API authorization mechanisms for connected BESS assets and grid controllers
  • Deploy and manage Privileged Access Management (PAM) solutions to secure high-risk administrative access to critical infrastructure
  • Ensure IAM architectures comply with industrial standards such as NERC CIP, NIST SP 800-82, and Ford's global cybersecurity policies
  • Lead access reviews, vulnerability assessments, and remediation plans for IAM-related risks
  • Develop technical security case materials, IAM documentation, and evidence for design gates, audits, and compliance reviews
  • Collaborate with software, cloud platform, OT network, and physical security teams to align identity strategies across IT and OT environments
What we offer
What we offer
  • Immediate medical, dental, vision and prescription drug coverage
  • Flexible family care days, paid parental leave, new parent ramp-up programs, subsidized back-up child care and more
  • Family building benefits including adoption and surrogacy expense reimbursement, fertility treatments, and more
  • Vehicle discount program for employees and family members and management leases
  • Tuition assistance
  • Established and active employee resource groups
  • Paid time off for individual and team community service
  • A generous schedule of paid holidays, including the week between Christmas and New Year's Day
  • Paid time off and the option to purchase additional vacation time
  • Fulltime
Read More
Arrow Right

SaaS Security Engineer (SSPM)

The Opportunity: We are seeking a SaaS Security Posture Management (SSPM) Engine...
Location
Location
United States , Phoenix
Salary
Salary:
Not provided
technologent.com Logo
Technologent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in Security Engineering, Cloud Security, SaaS Security, or related cybersecurity disciplines
  • Hands-on experience implementing and managing one or more SaaS Security Posture Management (SSPM) solutions, including: AppOmni, Obsidian, Palo Alto SaaS Security solutions, Adaptive Shield, Wing Security, Valence, or similar SSPM technologies
  • Strong understanding of: SaaS Security Architecture, Identity & Access Management (IAM), Data Protection & Privacy Controls, API Security, Security Monitoring & Detection, SaaS Governance & Risk Management
  • Experience securing and assessing SaaS environments integrated with AWS, Azure, GCP, and/or OCI
  • Proficiency with: Python, PowerShell, REST APIs, Terraform, GitHub, Security Automation Frameworks
  • Experience integrating security tools and building automated workflows across enterprise environments
  • Strong analytical, troubleshooting, documentation, and communication skills
  • Ability to work effectively with technical and business stakeholders in complex enterprise environments
Job Responsibility
Job Responsibility
  • Lead the implementation, configuration, and administration of SaaS Security Posture Management (SSPM) platforms across enterprise environments
  • Continuously assess SaaS applications for security risks, configuration weaknesses, identity governance issues, excessive permissions, and data exposure concerns
  • Monitor and remediate SaaS configuration drift and security posture deviations across business-critical applications
  • Identify and evaluate risks associated with third-party integrations, connected applications, and SaaS ecosystems
  • Establish SaaS security baselines, governance controls, and remediation processes to improve overall security posture
  • Support SaaS onboarding, certification, and security review activities to ensure compliance with enterprise security requirements
  • Develop and maintain integrations between SSPM platforms, Identity and Access Management (IAM) solutions, SIEM platforms, governance tools, and ticketing systems
  • Build automation workflows using APIs, scripting, and Infrastructure-as-Code methodologies to improve operational efficiency and security visibility
  • Create dashboards, reports, and metrics to provide stakeholders with actionable insights into SaaS security posture and compliance status
  • Assess cloud-connected SaaS environments across AWS, Microsoft Azure, Google Cloud Platform (GCP), and Oracle Cloud Infrastructure (OCI)
  • Fulltime
Read More
Arrow Right

Senior Solutions Engineer Identity - East

Location
Location
United States , New York
Salary
Salary:
198000.00 - 273000.00 USD / Year
paloaltonetworks.com Logo
Palo Alto Networks
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A passion for working with customers and a deep belief in problem solving as a team sport
  • Advanced knowledge (3-5 years) of Identity & Access Management, Identity Governance and Administration and/or Endpoint Security related technology – i.e., MFA/SSO, IDP/Directory Services/Federation, OAuth, OIDC, Identity lifecycle management, No-Code/Low-Code automation, Least Privilege principles, and other related topics
  • Knowledge of Identity & Access Management vendors and products
  • ability to compare with CyberArk products
  • An emphasis on (IAM/IGA) vendors and technologies in use across large enterprises for both on-premises and cloud is preferred
  • Exposure to and or administering identity platforms/directories like CyberArk, Active Directory, LDAP, SailPoint, Saviynt, Okta, or Microsoft Entra ID
  • An understanding of security concepts and the development of security roles within organizations that meet functional, technical, and regulatory requirements
  • Proficiency with REST APIs and use of API testing tools like Postman or Bruno
  • Deep understanding of IAM Compliance, Governance, Lifecycle and Workflows best practices
  • Excellent communication skills, with a strong drive to teach, document, and enable others
Job Responsibility
Job Responsibility
  • Act as a Subject Matter Expert (SME) to support both our Workforce IAM and IGA initiatives across the Central US region
  • Work directly with customers and prospects to understand their business goals and design secure, scalable identity solutions that meet them
  • Lead engaging product demonstrations, run workshops, guide evaluations, and partner with Sales Specialists to drive opportunities from discovery through technical close
  • Play a proactive role in the field beyond deal cycles—supporting marketing efforts that generate new pipeline, contributing to technical content like demos and videos, and offering real-world feedback to Product teams to make our solutions better
  • Clearly explain technical capabilities, identify integration paths, and troubleshoot challenges
  • Fulltime
Read More
Arrow Right

Senior Solutions Engineer Identity - East

CyberArk is looking for a customer-obsessed, technically curious Solutions Engin...
Location
Location
United States , New York
Salary
Salary:
198000.00 - 273000.00 USD / Year
paloaltonetworks.it Logo
Palo Alto Networks Italia
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A passion for working with customers and a deep belief in problem solving as a team sport
  • Advanced knowledge (3-5 years) of Identity & Access Management, Identity Governance and Administration and/or Endpoint Security related technology – i.e., MFA/SSO, IDP/Directory Services/Federation, OAuth, OIDC, Identity lifecycle management, No-Code/Low-Code automation, Least Privilege principles, and other related topics
  • Knowledge of Identity & Access Management vendors and products
  • ability to compare with CyberArk products
  • An emphasis on (IAM/IGA) vendors and technologies in use across large enterprises for both on-premises and cloud is preferred
  • Exposure to and or administering identity platforms/directories like CyberArk, Active Directory, LDAP, SailPoint, Saviynt, Okta, or Microsoft Entra ID
  • An understanding of security concepts and the development of security roles within organizations that meet functional, technical, and regulatory requirements
  • Proficiency with REST APIs and use of API testing tools like Postman or Bruno
  • Deep understanding of IAM Compliance, Governance, Lifecycle and Workflows best practices
  • Excellent communication skills, with a strong drive to teach, document, and enable others
Job Responsibility
Job Responsibility
  • Act as a Subject Matter Expert (SME) to support both our Workforce IAM and IGA initiatives across the Central US region
  • Work directly with customers and prospects to understand their business goals and design secure, scalable identity solutions
  • Lead engaging product demonstrations, run workshops, guide evaluations, and partner with Sales Specialists to drive opportunities from discovery through technical close
  • Support marketing efforts that generate new pipeline
  • Contribute to technical content like demos and videos
  • Offer real-world feedback to Product teams to make our solutions better
  • Fulltime
Read More
Arrow Right