CrawlJobs Logo

IAM Security Engineer

truveta.com Logo

Truveta

Location Icon

Location:
United States , Seattle

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

128000.00 - 155000.00 USD / Year

Job Description:

Truveta is the world’s first health provider led data platform with a vision of Saving Lives with Data. Our mission is to enable researchers to find cures faster, empower every clinician to be an expert, and help families make the most informed decisions about their care. The successful candidate will design, implement and support solutions that support the company’s Digital Workplace strategy. They will work on leading edge technologies that help modernize endpoint management by leveraging the cloud to quickly deliver end-user improvements.

Job Responsibility:

  • Identity Lifecycle & Access Management: Manage and improve provisioning, de-provisioning, and modification processes for user accounts and service principals across cloud and enterprise systems
  • Conduct access reviews, entitlement cleanups, and role evaluations to ensure least-privilege access
  • Identify gaps in lifecycle processes and recommend enhancements or workflow automation opportunities
  • Access Requests & Role Governance: Process and validate access requests, ensuring alignment with RBAC models, security policies, and job function requirements
  • Contribute to the development and refinement of RBAC roles, access policies, and approval workflows
  • Partner with stakeholders to analyze access patterns and propose more efficient and secure role structures
  • Application Integration & IAM Enablement: Support onboarding applications into IAM systems, including SSO configuration, SCIM provisioning, OAuth app integration, and secure authentication setup
  • Work with application and engineering teams to ensure proper identity integration and consistent enforcement of IAM standards
  • Assist with evaluating and implementing new IAM tools or capabilities as the organization evolves
  • Security Controls & Identity Governance: Implement and support IAM security controls such as MFA, Conditional Access policies, PIM, and identity governance features
  • Monitor for identity threats, misconfigurations, and anomalies
  • proactively recommend remediation steps
  • Participate in maturing identity governance processes such as certification campaigns, privileged access workflows, and separation-of-duty reviews
  • Incident Response & Operational Support: Troubleshoot and resolve identity-related issues with moderate complexity, including authentication failures, directory sync issues, and access conflicts
  • Investigate identity-related security alerts and coordinate escalation with Security Operations team as needed
  • Provide SME support to IT, security, and engineering teams for IAM-related questions and problems
  • Compliance, Auditing & Reporting: Support internal and external audits by preparing access-related evidence, reports, and documentation
  • Ensure IAM controls and workflows meet regulatory, security, and policy requirements
  • Develop periodic reports on access activity, privileged accounts, anomalies, and IAM policy adherence
  • Documentation, Knowledge Sharing & Process Improvement: Maintain accurate and detailed documentation of IAM processes, workflows, configurations, and standards
  • Contribute to internal knowledge bases, runbooks, training materials, and user guides
  • Continuously evaluate IAM processes and tools to identify opportunities to streamline, standardize, or automate.

Requirements:

  • Bachelor's degree or equivalent in Computer Science, Information Security, or Information Systems
  • 3-5 years of hands-on experience in an Identity and Access Management (IAM) role with a strong focus on Azure environments
  • Strong understanding of Azure Entra ID (Azure Active Directory), including Conditional Access, MFA, Identity Governance, PIM, directory services, and RBAC
  • Experience supporting SSO integrations and identity protocols such as SAML, OAuth 2.0, OpenID Connect, and SCIM provisioning
  • Ability to analyze and improve access models, workflows, and entitlements, applying least privilege and zero-trust principles
  • Proficiency with PowerShell or similar scripting tools to automate IAM tasks
  • Experience monitoring for identity-related threats, anomalous login behavior, and misconfigurations in cloud IAM environments
  • Working knowledge of IT/security governance and compliance frameworks (e.g., SOC 2, ISO 27001, NIST) and experience supporting audits or access reviews
  • Strong troubleshooting and diagnostic skills for identity issues involving authentication, authorization, directory sync, and permissions
  • Excellent written and verbal communication skills, including the ability to work cross-functionally with engineering, IT, and security teams
  • Ability to work effectively in a fast-paced environment, handle multiple priorities, and take ownership of IAM responsibilities
  • This position requires onsite work at Truveta’s Bellevue, WA office.

Nice to have:

Relevant certifications preferred, such as Microsoft SC-300 (strongly preferred), AZ-104, AZ-500, or Security+.

What we offer:
  • Interesting and meaningful work for every career stage
  • Comprehensive benefits with strong medical, dental and vision insurance plans
  • 401K plan
  • Professional development & training opportunities for continuous learning
  • Work/life autonomy via flexible work hours and flexible paid time off
  • Generous parental leave
  • Regular team activities (virtual and in-person)
  • Additional compensation such as incentive pay and stock options for certain roles.

Additional Information:

Job Posted:
January 04, 2026

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for IAM Security Engineer

Principal Security Engineer

We’re seeking a Principal Security Engineer with deep expertise in cloud securit...
Location
Location
United States , San Francisco
Salary
Salary:
136000.00 - 241000.00 USD / Year
ethoslife.com Logo
Ethos
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in security engineering or architecture roles
  • Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or related field from a reputable institution
  • Deep expertise in cloud platforms (particularly AWS), including infrastructure-as-code (e.g., Terraform, CloudFormation)
  • Strong experience in secure software development and application security (e.g., OWASP Top 10, SAST, DAST, threat modeling)
  • Experience designing and implementing zero-trust architectures, secure API gateways, and identity/access controls
  • Proficient in scripting or development languages (e.g., Python, Go, JavaScript) and secure coding practices
  • Demonstrated leadership in cross-functional security initiatives and technical mentorship
  • Ability to come into our San Francisco, CA office once a week
Job Responsibility
Job Responsibility
  • Design and implement secure architectures for applications, APIs, microservices, and containerized workloads
  • Develop and enforce application security best practices across SDLC
  • partner with DevOps and engineering teams to integrate security into CI/CD pipelines
  • Conduct threat modeling, security design reviews, and risk assessments for new and existing systems
  • Evaluate and implement cloud security tools, controls, and frameworks (e.g., CSPM, CWPP, IAM, KMS, logging, and monitoring)
  • Provide technical leadership and mentorship to security engineers, software developers, and DevOps personnel
  • Lead response to complex security incidents or architectural flaws
  • conduct root cause analysis and recommend strategic remediations
  • Contribute to and influence security policies, standards, and governance
  • Stay current with emerging threats, vulnerabilities, and security technologies, advising stakeholders on evolving risks and mitigations
  • Fulltime
Read More
Arrow Right

Security Engineer

Location
Location
Salary
Salary:
Not provided
ryzlabs.com Logo
Ryz Labs
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years total technical or security engineering experience with security focus
  • 2+ years of AWS or GCP experience implementing security and hardening activities, especially in a large or complex environments
  • 2+ years working in a CI/CD DevSecOps environment (Jenkins, Travis, Jira, GitHub, GitLab, etc.)
  • Experience with IAM solutions such as Okta and deep knowledge of AWS or GCP IAM and how to configure and maintain least-privilege and segregation of duty across boundaries
  • Knowledge and experience with EC2, ECS, S3, LBS, API Gateways, Bastion Hosts, VPC, Cloud Trail, Cloud Watch, Data Dog, SIEM and other cloud technologies
Job Responsibility
Job Responsibility
  • collaborate with our customers and suppliers to model security requirements against cloud capabilities
  • work closely with engineering teams, program management and senior stakeholders to translate requirements into achievable designs that raise the bar
  • function across teams ensuring that the strategic architecture is met across design, implementation, deployment and operation
  • playing a key role in defining the mechanisms that the company will use to validate how services are meeting all the security operational controls
  • work closely with the product and platform engineering teams to architect, implement, and operate effective cloud security controls
  • Partner with internal IT & Product Engineering stakeholders to assess gaps in products and platforms, design mitigating controls, and train and educate staff on remediations
  • Partner with the Business Technology and IAM teams to build a new Access Management and User Access Review system based on Lumos
  • Maintain inventory of cloud assets and ensure secure bootstrapping of deployed assets while monitoring for drift and potential threats across product engineering environment
  • Design and build the security components of the next phase of Sonder Security Roadmap
Read More
Arrow Right

Security Engineer

As a Security Engineer, you’ll play a key role in shaping the security and resil...
Location
Location
France , Aix en Provence
Salary
Salary:
Not provided
voyage-prive.co.uk Logo
Voyage Privé
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5–7 years of experience in software engineering, security engineering, DevSecOps, or equivalent technical security roles
  • Strong development background (Python, Node.js, Java, Go, PhP or similar)
  • Hands-on experience with modern CI/CD systems (GitHub Actions, GitLab, Jenkins)
  • Solid understanding of cloud security principles (AWS, GCP, Azure)
  • Experience securing both virtualized systems (VMs) and containerized workloads
  • Strong knowledge of secure coding, OWASP Top 10, and application security fundamentals
  • Experience with SAST, SCA, container/IaC scanning, runtime security tools, IAM, and secrets management
  • Pragmatic, engineering-first mindset: able to balance security with developer experience, velocity, and real-world constraints
  • Excellent communication skills: able to translate complex security issues into actionable guidance for both technical and non-technical stakeholders
  • Proactive, autonomous, critical thinker with a continuous improvement mindset
Job Responsibility
Job Responsibility
  • Strengthen the security posture across products and infrastructure: secure coding practices, code reviews, threat modeling, vulnerability remediation, cloud, and network hardening
  • Develop automated security guardrails integrated into CI/CD pipelines (SAST, SCA, secrets scanning)
  • Design secure architectures for applications, APIs, data flows, and integrations in partnership with engineering teams
  • Secure hybrid environments combining virtual machines, containerized workloads, and cloud-native services, ensuring consistent security standards across the entire platform
  • Drive proactive risk identification through continuous scanning, threat modeling sessions, risk assessments, and architecture reviews
  • Enable engineering teams to build secure-by-design practices by acting as a trusted advisor, developing internal tools, and leading security awareness sessions
  • Operational security & incident readiness: participate in on-call rotations, investigate security events, and improve incident response workflows
  • Lead security improvement projects: build automation, enhance tools, optimize processes, and foster a culture of security ownership
What we offer
What we offer
  • Access our large on-site fitness center morning, noon, and night
  • Private padel court
  • Company Breaks, Carnival, Annual Convention, meetups and talks
  • Free tickets to every Provence Rugby home match and live music nights at the Dalida Institute
  • Up to 20% off our exclusive getaway offers
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Sailpoint Development Lead - IAM

We are seeking an experienced and motivated Sr. Engineer to lead the Sailpoint d...
Location
Location
United States , Bethesda
Salary
Salary:
108300.00 - 176300.00 USD / Year
https://www.marriott.com Logo
Marriott Bonvoy
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information systems, cybersecurity or a related field or equivalent experience/certification
  • 7+ years of progressive Information Technology/Information Security experience in engineering and development of IGA features & Application integration including at least 4 years of experience in SailPoint IIQ Implementation, Configuration, Customization, and deployment in an enterprise environment
  • 4 + years of experience in technologies such as Java, JavaScript, JSON, XML, Python and REST development
  • 4 + years of experience in writing and troubleshooting rules, workflows, custom connectors
  • 4 + years of developing/understanding of requirements, design, implementation, integration, testing
  • 2+ years’ experience working in agile methodologies
Job Responsibility
Job Responsibility
  • Makes decisions on the architecture and design of software projects, validating that the system design meets scalability, reliability, and performance requirements
  • Provides technical direction, mentoring, and support to team members
  • Solves complex technical issues and functions as an escalation for the team in problem-solving
  • Leads code reviews to ensure high-quality, maintainable, and efficient code
  • Establishes and ensures compliance with coding standards
  • Exercises strong interpersonal/relationship/communication skills, with the ability to convey technical concepts to non-technical stakeholders
  • Contributes to the codebase, particularly for critical or complex components
  • Participates in project planning, including estimation of tasks, defining milestones, and ensuring realistic timelines
  • Assigns tasks to team members based on their skills and project requirements
  • Monitors progress and adjusting plans as necessary
What we offer
What we offer
  • Bonus program
  • Comprehensive health care benefits
  • 401(k) plan with up to 5% company match
  • Employee stock purchase plan at 15% discount
  • Accrued paid time off (including sick leave where applicable)
  • Life insurance
  • Group disability insurance
  • Travel discounts
  • Adoption assistance
  • Paid parental leave
  • Fulltime
Read More
Arrow Right

Pam engineer iam transformation

As an IAM PAM Engineer, you’ll be responsible for designing, implementing, and m...
Location
Location
Netherlands , Amsterdam
Salary
Salary:
Not provided
riverflex.com Logo
Riverflex
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s or Master’s degree in Computer Science, Cybersecurity, or a related field
  • Minimum of 3 years’ experience as a PAM Engineer, Cloud Security Engineer, or IAM Engineer in enterprise environments
  • Strong expertise in Microsoft Entra ID PIM and/or CyberArk
  • Proficient with Terraform for building reusable IAM/PAM infrastructure
  • Familiarity with Azure Cloud Services, including RBAC, Conditional Access, and Identity Governance
  • Experience with CI/CD automation using GitHub and GitHub Actions
  • Solid understanding of security principles, compliance standards, and identity lifecycle management
  • Experience working within hybrid (on-prem and cloud) environments
  • Excellent communication skills in English
Job Responsibility
Job Responsibility
  • Design, implement, and manage Privileged Access Management solutions using Microsoft Entra ID PIM and CyberArk
  • Define and maintain PAM processes and workflows for privileged account lifecycle management, access elevation, approvals, and monitoring
  • Build Infrastructure-as-Code (IaC) components with Terraform to automate and standardize PAM infrastructure and policies
  • Develop CI/CD pipelines using GitHub Actions for deployment and configuration automation
  • Integrate PAM with broader IAM services (Entra ID, SailPoint, Azure AD groups, RBAC)
  • Support application and infrastructure teams with onboarding, access modeling, role mapping, and policy configuration
  • Configure Azure RBAC policies and Conditional Access scenarios for privileged identities
  • Monitor PAM usage, report on security events, and contribute to audits and compliance activities
  • Advise on continuous improvements to privileged access processes, with a strong focus on automation and security best practices
  • Troubleshoot and optimize PAM functionality across hybrid environments
What we offer
What we offer
  • Competitive market hourly rate, depending on experience
  • Flexible working hours and hybrid setup
  • A collaborative and forward-thinking technology culture
  • Fulltime
Read More
Arrow Right

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
United Kingdom
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right

Security Engineer - Product & Production Infrastructure

Wiz is looking for a Security Engineer for Product & Production Infrastructure w...
Location
Location
Germany
Salary
Salary:
Not provided
wiz.io Logo
Wiz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in security engineering or security operations work in cloud environments
  • AWS platforms and services (we will also consider equivalent experience in Azure and GCP)
  • Kubernetes (AWS EKS) and container infrastructure
  • IAM and managing cloud identities at-scale
  • Secure development and application of IAC solutions (Terraform, Helm)
  • Cloud-native observability and management tools
  • Development experience in Go, Python and Rust
Job Responsibility
Job Responsibility
  • Lead threat modeling and security review exercises across Wiz’s production and CI/CD environments – identifying and mitigating risks in our products and the cloud services that support them
  • Drive vulnerability management and remediation efforts – prioritizing issues, implementing mitigations, and designing strategic preventative controls
  • Extend our detection and response capabilities – building scalable solutions to identify malicious activity, triage alerts, and investigate and remediate incidents
  • Build deep functional partnerships with Wiz’s engineering and operations teams – helping them deliver secure-by-design solutions
Read More
Arrow Right

Senior Security Engineer

PagerDuty is seeking a Senior Security Engineer (Infrastructure & Identity Secur...
Location
Location
United States
Salary
Salary:
172000.00 - 289000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience as a full-stack Security Engineer in an AWS native, micro-service SaaS environment with focus on IAM
  • Deep expertise in cloud security, particularly AWS services including but not limited to: GuardDuty, CloudTrail, Config, IAM family, Secrets Manager, KMS, EKS, Service Mesh architectures
  • Strong expertise and experience implementing and managing identity providers, specifically Okta and/or Microsoft Entra at scale (1000+ users)
  • Strong understanding of zero trust principles and modern authentication patterns
  • Experience working with multiple development teams and technology stacks
  • 5+ years experience leading technical security initiatives, with proven ability to scope ambiguous projects, break down complex work into actionable items, and successfully delegate responsibilities while maintaining project momentum
  • Proficiency with security tools: Vulnerability Management & EDR: Wiz, Snyk, Qualys/Nessus, Crowdstrike
  • SIEM: SumoLogic or Splunk
  • Experience with Infrastructure as Code and CI/CD: Terraform, Helm, Chef, Ansible, Buildkite, Jenkins, ArgoCD
  • 4+ years of experience and proficiency in at least one programming language and framework (Python, Java, or similar)
Job Responsibility
Job Responsibility
  • Lead and implement comprehensive IAM strategy across cloud infrastructure
  • Work closely with Product Engineering teams and conduct architecture reviews and threat modeling sessions focusing on but not limited to identity and access patterns
  • Design and implement modern service-to-service authentication patterns using technologies such as IRSA (IAM Roles for Service Accounts) and pod identity
  • Develop and maintain a robust secrets management framework and strategy
  • Drive adoption of principle of least privilege across all services and applications
  • Design and implement automated workflows for access reviews and certification
  • Design and implement security controls for AWS cloud infrastructure and containerized environments
  • Develop metrics and monitoring for IAM-related security events and access patterns
  • Monitor and maintain security tooling supporting infrastructure security controls
  • Design and implement security automations and tool integrations
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right