CrawlJobs Logo

Senior Identity Access Management Engineer

United States, Boston Employment contract 158000.00 - 279000.00 USD / Year · Job Posted June 09, 2026
Apply Position
Job Link Share

Job Description

Roku is seeking a senior-level Identity Engineer to enhance its Zero-Trust architecture, drive standardization initiatives, and optimize its Microsoft-centric identity platform for a geographically distributed workforce. The ideal candidate has hands-on experience in identity and access management (IAM) and securing cloud environments within the Microsoft ecosystem, with deep expertise in Azure Entra ID. Equally important is a strong automation mindset—designing, scripting, and building repeatable workflows. The role also requires the ability to communicate complex technical concepts clearly to both technical and non-technical audiences.

Job Responsibility

  • Lead enterprise-wide IAM standardization, including identity lifecycle, access governance, and policy enforcement across global regions.
  • Drive automation across IAM to streamline administration and deliver a smoother user experience.
  • Support enterprise applications onboarding into Azure Entra ID, including SSO, Conditional Access, and role-based access control (RBAC).
  • Enhance privileged access management and implement scalable monitoring, alerting, and auditability solutions to support a secure, geographically distributed workforce.
  • Collaborate with IT, Networking, and Security teams to troubleshoot identity-related issues and support global infrastructure initiatives.
  • Advance Zero Trust Identity Fabric principles like continuous verification, least-privilege access, and identity-aware policy enforcement across users, devices, workloads, and non-human identities.
  • Build identity automation with a DevOps mindset, writing scripts, developing pipelines, and engineering tooling from scratch rather than just configuring them.

Requirements

  • 8+ years of hands-on experience with identity and access management and automating cloud technologies, particularly within the Microsoft ecosystem.
  • Strong analytical skills and attention to detail, with the ability to troubleshoot complex infrastructure and identity-related issues.
  • Excellent communication skills, with the ability to clearly explain technical concepts to both technical and non-technical stakeholders.
  • Deep experience with Microsoft Entra ID, including Conditional Access, Identity Governance, and Privileged Identity Management.
  • Familiarity with Microsoft 365 services: Exchange Online, Defender, Purview, Sentinel, Intune, and related platforms.
  • Automation and scripting skills using PowerShell, Azure CLI, and Microsoft Graph API
  • working knowledge of Azure services such as Function Apps and Logic Apps.
  • Experience in onboarding and managing enterprise applications in Azure Entra ID.
  • Advanced knowledge of Azure Single Sign-On (SSO) login methods, including OAuth2, OpenID Connect, and SAML, and their integration with enterprise applications.
  • Knowledge of privileged access tools (Azure PIM, CyberArk, etc), secrets management (HashiCorp or Azure Key Vault), and workload identity patterns SPIFEE & SPIRE.
  • Familiarity with NHI governance concepts for service accounts and AI agents, and exposure to OPA / Rego or similar policy-as-code frameworks.
  • Good to have familiarity with Microsoft Purview for DLP and data classification.
  • Strong understanding of multi-factor authentication and FIDO2.
  • Familiarity with IT security frameworks and compliance standards.
  • Knowledge of logging, monitoring, and alerting practices for identity and access events.
  • Basic understanding of email security and DNS.
  • Experience with backup and recovery strategies for identity-related services.
  • Understanding of Zero Trust Architecture principles.
  • Familiarity with Jira and Confluence.
  • B.S. in Computer Science, Information Technology, Engineering, or equivalent experience.

Nice to have

Familiarity with Microsoft Purview for DLP and data classification.

What we offer

  • Health insurance
  • equity awards
  • life insurance
  • disability benefits
  • parental leave
  • wellness benefits
  • paid time off
  • global access to mental health and financial wellness support and resources
  • healthcare (medical, dental, and vision)
  • life
  • accident
  • disability
  • commuter
  • retirement options (401(k)/pension)

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Senior Identity Access Management Engineer

8 matching positions

Senior Identity & Access Management Engineer

Join the Identity & Access Management team within our Global Technology Platform...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
justeattakeaway.com Logo
Just Eat Takeaway.com
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience implementing IAM and Identity Governance concepts including RBAC, Segregation of Duties, and Access Recertification
  • Hands-on experience administering Okta Identity Governance or similar platforms
  • Solid understanding of SSO, SCIM, SAML, and OpenID authentication protocols
  • Ability to work with minimal supervision on projects and support activities, while mentoring team members
  • Experience with Okta Workflows or similar automation tools
  • Scripting capability in Okta Expression Language or willingness to learn
  • Clear communication skills working across global teams and time zones
Job Responsibility
Job Responsibility
  • Design and implement governance processes for global IAM systems
  • Develop and enhance Identity Governance automation using Okta Identity Governance
  • Manage project delivery in two-week agile sprints, mentoring engineers
  • Resolve 3rd line technical issues and participate in on-call rotation
  • Communicate technical updates clearly to stakeholders across Global Technology Platforms
  • Ensure audit compliance through process walkthroughs and internal reviews
  • Proactively identify and address platform issues before business impact occurs
  • Fulltime
Read More
Arrow Right

Senior Identity & Access Management Engineer

The Identity & Access Management (IAM) team is a new, foundational group within ...
Location
Location
United States
Salary
Salary:
92000.00 - 150000.00 USD / Year
li.me Logo
Lime
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3-5+ years of hands-on experience in Identity & Access Management
  • Strong, hands-on experience with enterprise identity providers, with a preference for Okta
  • Experience with IGA platforms (e.g., Saviynt, SailPoint, Okta IGA) is a significant plus
  • Solid scripting and automation skills (e.g., Python, PowerShell) for identity workflows
  • A strong understanding of core security principles, including Zero Trust models and least privilege
  • Experience working in an environment with compliance frameworks such as SOX, GDPR, or CCPA
  • Strong collaboration skills and experience working on complex, cross-functional projects
  • A customer-first mindset focused on creating secure yet frictionless access experiences
Job Responsibility
Job Responsibility
  • Be a key driver in the greenfield implementation of Lime’s enterprise IGA platform
  • Implement, manage, and automate the identity lifecycle (joiner, mover, leaver) to ensure seamless and secure transitions
  • Execute on a high volume of new application integrations for Single Sign-On (SSO) and MFA
  • Collaborate with the security team to implement Zero Trust principles through hands-on configuration of risk-based policies
  • Support automated user access review (UAR) campaigns to ensure continuous compliance with SOX and other regulatory requirements
  • Assist in providing evidence and support for internal and external auditors regarding identity and access controls
  • Partner with application owners across the company to successfully integrate their systems into our centralized IAM platforms
  • Help develop and maintain clear documentation for IAM processes and configurations
What we offer
What we offer
  • Comprehensive Health & Wellness: A choice of medical, dental, and vision plans
  • Company-paid life and disability insurance
  • Company-funded mental health benefits
  • Financial & Retirement Planning: 401(k) plan with both pre-tax and Roth options
  • Access to a Health Savings Account (HSA) with a monthly company contribution
  • Family & Fertility Support: Paid parental leave for birthing and non-birthing parents
  • Fertility and family-forming benefits
  • Paid Time Off: Unlimited vacation
  • Paid leaves
  • 10 company holidays
  • Fulltime
Read More
Arrow Right

Senior Identity & Access Management Engineer

The Identity & Access Management (IAM) team is a new, foundational group within ...
Location
Location
Canada
Salary
Salary:
90000.00 - 138000.00 CAD / Year
li.me Logo
Lime
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3-5+ years of hands-on experience in Identity & Access Management
  • Strong, hands-on experience with enterprise identity providers, with a preference for Okta
  • Experience with IGA platforms (e.g., Saviynt, SailPoint, Okta IGA) is a significant plus
  • Solid scripting and automation skills (e.g., Python, PowerShell) for identity workflows
  • A strong understanding of core security principles, including Zero Trust models and least privilege
  • Experience working in an environment with compliance frameworks such as SOX, GDPR, or CCPA
  • Strong collaboration skills and experience working on complex, cross-functional projects
  • A customer-first mindset focused on creating secure yet frictionless access experiences
Job Responsibility
Job Responsibility
  • Be a key driver in the greenfield implementation of Lime’s enterprise IGA platform
  • Implement, manage, and automate the identity lifecycle (joiner, mover, leaver) to ensure seamless and secure transitions
  • Execute on a high volume of new application integrations for Single Sign-On (SSO) and MFA
  • Collaborate with the security team to implement Zero Trust principles through hands-on configuration of risk-based policies
  • Support automated user access review (UAR) campaigns to ensure continuous compliance with SOX and other regulatory requirements
  • Assist in providing evidence and support for internal and external auditors regarding identity and access controls
  • Partner with application owners across the company to successfully integrate their systems into our centralized IAM platforms
  • Help develop and maintain clear documentation for IAM processes and configurations
What we offer
What we offer
  • Offers Equity
  • Offers Bonus
  • Fulltime
Read More
Arrow Right

Senior IT Engineer — Identity & Access Management

This contract-to-permanent opportunity is ideal for a senior-level candidate who...
Location
Location
United States , Ada
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated experience in identity and access management engineering, with strong depth in enterprise IAM architecture and operations
  • Hands-on expertise with Okta, including tenant configuration, lifecycle management, authentication policies, and single sign-on enablement
  • Strong knowledge of SSO and federation technologies, including SAML, OAuth, and modern authentication concepts across SaaS applications
  • Experience integrating identity platforms with systems such as Microsoft Entra ID, Active Directory, Google Workspace, or other directory services
  • Ability to design secure provisioning, deprovisioning, and access governance processes in regulated or compliance-driven environments
  • Proven troubleshooting skills for authentication, authorization, and federation issues across cloud and hybrid application ecosystems
  • Comfortable in a client-facing role with the ability to communicate technical recommendations clearly to varied stakeholders
Job Responsibility
Job Responsibility
  • Architect and implement enterprise identity and access solutions centered on Okta for clients operating in regulated and multi-platform environments
  • Configure and strengthen Okta capabilities such as directory services, adaptive authentication, lifecycle automation, workflow orchestration, and governance controls
  • Integrate identity platforms with Entra ID, Active Directory, JumpCloud, Google Workspace, and other cloud or hybrid systems to create consistent access experiences
  • Lead the design and support of SSO and federation solutions using SAML and OAuth standards, including claims design, attribute mapping, token settings, and authentication flow decisions
  • Troubleshoot authentication and federation issues by analyzing logs, protocol behavior, and application integration details to resolve complex access problems
  • Develop repeatable integration patterns for widely used business applications such as Microsoft 365, Salesforce, Slack, Zoom, Atlassian, GitHub, NetSuite, and similar platforms
  • Build and maintain automated joiner, mover, and leaver processes tied to authoritative source systems to improve provisioning accuracy and deprovisioning speed
  • Establish role-based access models, least-privilege controls, and access review practices that align with audit and compliance expectations
  • Partner directly with clients to assess identity maturity, recommend improvements, and deliver IAM solutions that support business and security objectives
What we offer
What we offer
  • medical
  • vision
  • dental
  • life and disability insurance
  • 401(k) plan
  • Fulltime
Read More
Arrow Right

Senior Software Engineer – Identity & Access Management (IAM)

Location
Location
United States
Salary
Salary:
Not provided
redhibbert.com Logo
Red Hibbert Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, IT, or related field
  • 7+ years of experience in Identity & Access Management or IT Security
  • Strong expertise in Azure Active Directory (Microsoft Entra ID)
  • Experience with Conditional Access, MFA, PIM, and Identity Protection
  • Experience with SSO protocols: SAML, OAuth 2.0, OpenID Connect
  • Familiarity with PowerShell scripting
  • Experience working in enterprise IT environments
  • Strong communication and collaboration skills
Job Responsibility
Job Responsibility
  • Lead enterprise-level Azure Active Directory (Microsoft Entra ID) operations
  • Design and manage Conditional Access policies, MFA, and passwordless authentication
  • Manage identity lifecycle (user, group, role provisioning and governance)
  • Implement Privileged Identity Management (PIM) and access governance
  • Support and troubleshoot SSO integrations (SAML, OAuth2, OpenID Connect)
  • Monitor identity security signals, risky sign-ins, and audit logs
  • Perform root cause analysis for IAM-related incidents
  • Collaborate with security, DevOps, and application teams
  • Mentor junior engineers and define operational best practices
  • Maintain documentation, SOPs, SLAs, and KPIs
  • Fulltime
Read More
Arrow Right

Senior DevOps Engineer (Identity & Access Management)

We are seeking a Senior DevOps Engineer to join our team and drive automation, r...
Location
Location
Poland
Salary
Salary:
Not provided
n-ix.com Logo
N-iX
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Electrical Engineering, Information Systems, Informatics, or equivalent
  • 5+ years of development experience focused on identity and access management systems
  • Proven experience in User Lifecycle Management (ULM), including onboarding, role changes, and offboarding of users across multiple systems (Active Directory, cloud platforms, internal applications)
  • Extensive hands-on experience with Active Directory, including: Domain controller maintenance, Group Policy Object (GPO) configuration and management, AD deployment and replication, Role-Based Access Control (RBAC) for users and groups
  • Strong understanding of DNS and basic networking concepts
  • Proficiency in PowerShell for automation and scripting within identity environments
  • Experience with additional programming languages and automation tools such as C#, .NET, Ansible, Python, Java, Go, Node.js, Terraform, Docker, etc.
  • Proven track record of developing scalable, maintainable, and secure software solutions with a focus on automating identity workflows
  • Understanding of infrastructure at scale, including load balancing, cloud environments, and certificate management
Job Responsibility
Job Responsibility
  • Design, develop, automate, and operate services and systems that manage the full lifecycle of user accounts across all infrastructure environments (User Lifecycle Management – Joiner, Mover, Leaver processes)
  • Implement identity and access management features such as JIT (Just-In-Time), JML (Joiner-Mover-Leaver), PIM (Privileged Identity Management), PAM (Privileged Access Management), and RBAC (Role-Based Access Control) in a robust and scalable manner
  • Partner cross-functionally with security, compliance, and engineering teams to build tooling that ensures all access activities are logged and properly audited
  • Constantly evaluate current trends in identity and access management and adopt new tools and features in a timely manner
  • Mentor junior engineers and help them grow their technical skills
  • Participate in an on-call rotation schedule
What we offer
What we offer
  • Flexible working format - remote, office-based or flexible
  • A competitive salary and good compensation package
  • Personalized career growth
  • Professional development tools (mentorship program, tech talks and trainings, centers of excellence, and more)
  • Active tech communities with regular knowledge sharing
  • Education reimbursement
  • Memorable anniversary presents
  • Corporate events and team buildings
  • Other location-specific benefits
Read More
Arrow Right

Senior Software Engineer - Identity and Access Management

You’ll join our new IAM team responsible for building and shipping authenticatio...
Location
Location
Ireland
Salary
Salary:
Not provided
tines.com Logo
Tines
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record of success as a senior software engineer
  • Proven track record of building and delivering software using a high-level programming language
  • Strong IAM domain knowledge and experience of building secure, scalable identity and access control systems for cloud-based applications
  • Comfortable working across the full stack, backend and frontend
  • Experience with technologies like Ruby, Rails, React, TypeScript, Postgres, Redis, Docker is beneficial but not required
  • Curiosity and eagerness to learn
  • Ability to work healthily and sustainably, plan workloads realistically
  • Commitment to building an inclusive, supportive team
Job Responsibility
Job Responsibility
  • Work closely with colleagues to build solutions for customer problems
  • Write and review high quality, well tested code
  • Identify areas for improvement in codebase and team processes
  • Own problems and software solutions all the way to production
  • Mentor other engineers
  • Help prioritize the roadmap
  • Build and ship authentication, authorization and integration credential features
  • Improve scalability of authentication processes
  • Enhance observability of issues during incidents
  • Ensure alignment with best in class security practices
What we offer
What we offer
  • Competitive salary
  • Startup equity & extended exercise window
  • Matching retirement plans
  • Home office setup
  • Private healthcare plans
  • 25 days annual leave
  • Extra company holidays
  • Generous parental leave programs
  • Flexibility in how and where you work
  • Phone and home Internet allowance
  • Fulltime
Read More
Arrow Right

Senior Customer Identity and Access Management Engineer

Are you passionate about securing digital identities and creating seamless user ...
Location
Location
Ireland , Dublin 2
Salary
Salary:
Not provided
bentley.com Logo
Bentley Systems
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A minimum of 5 years of hands-on experience with the Ping Identity suite
  • Thorough understanding of Identity and Access Management (IAM) for both enterprise and customer-facing applications
  • Strong coding and scripting abilities (Java & TypeScript are preferred)
  • In-depth knowledge of OAuth, OIDC, and SAML
  • Knowledge of System for Cross-domain Identity Management (SCIM)
  • Experience with API configuration and deployment
  • Strong experience with Linux environments (navigating, tuning, etc.)
  • Excellent problem-solving and communication skills
Job Responsibility
Job Responsibility
  • Lead the management and administration of the full Ping Identity suite, including Ping Federate, Ping Access, Ping Directory, Ping Data Proxy, Ping Data Sync, and Ping Authorize
  • Architect and manage common Ping Components, such as IdP & SP adapters, selectors, authentication policies, and more
  • Deploy, configure, and troubleshoot modern authentication protocols, including OAuth, OIDC, and SAML, ensuring compliance with industry standards
  • Strengthen security by configuring and deploying Multi-Factor Authentication (MFA) solutions
  • Oversee the entire lifecycle of digital certificates
  • Develop and maintain clean, efficient, and well-documented code and scripts, with a preference for Java & TypeScript
  • Configure and deploy APIs to extend and integrate our CIAM solutions
  • Thrive in a DevOps model, contributing to our CI/CD pipelines and automation efforts
  • Operate within our cloud-based infrastructure, with a preference for AWS
  • Manage and maintain containerized environments
What we offer
What we offer
  • A great Team and culture
  • An exciting career as an integral part of a world-leading software company
  • An attractive salary and benefits package
  • A commitment to inclusion, belonging, and colleague well-being through global initiatives and resource groups
  • A company committed to making a real difference by advancing the world’s infrastructure for a better quality of life
Read More
Arrow Right