CrawlJobs Logo

Senior Staff Identity and Access Management Engineer

geico.com Logo

Geico

Location Icon

Location:
United States , Chevy Chase

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

120000.00 - 260000.00 USD / Year

Job Description:

GEICO is seeking an experienced Engineer with a passion for building high performance, minimal maintenance, zero-downtime platforms, and applications. You will help drive our insurance business transformation as we transition from a traditional IT model to a tech organization with engineering excellence as its mission. Our Senior Staff Engineer is a key member of the engineering staff, working across the organization to provide friction-less experience for our customers and maintain the highest standards of compliance, protection and availability. You will be part of a team that thrives and succeeds in delivering high quality technology products and services in a hyper-growth environment where priorities shift quickly. The ideal candidate has broad and deep technical knowledge of the Identity Directory Services and solutions that ensure secure authorization to GEICO’s data assets.

Job Responsibility:

  • Lead execution and adoption of modern authentication and authorization mechanisms (SAML, OIDC/OAUTH2)
  • Engage peers and leaders at all levels
  • Consistently share best practices and improve processes within and across teams
  • Determine and support resource requirements, evaluate operational processes, measure outcomes to ensure desired results, and demonstrate adaptability and sponsoring continuous learning
  • Own the complete project lifecycle for application integrations of both on-premises and SaaS applications with our IGA platform
  • Collaborate with application team to implement tokenization solutions that reduce sensitive data exposure, thereby enhancing data security and minimizing the risk of unauthorized access
  • Stay at the forefront of emerging identity trends, technologies, and best practices, and apply this knowledge to enhance GEICO’s data protection strategies
  • Provide technical guidance and mentorship to the team, fostering a culture of innovation, collaboration, and continuous improvements
  • Collaborate with cross-functional teams, including security, compliance, and application teams to ensure the seamless integration and alignment of solutions with organizational goals
  • Build resilient and scalable architecture, driving innovation and cost efficiency

Requirements:

  • 10+ years of professional experience in technology or identity engineering
  • 8+ years of experience with security, identity, architecture, and design
  • 4+ years of experience with open-source frameworks is desired
  • 4+ years of experience with AWS, GCP, Azure, or another cloud service
  • 1+ years of people management experience
  • Bachelor’s degree in computer science, Information Systems, or equivalent education or work experience
  • Experience building the architecture and design (architecture, design patterns, reliability, and scaling) of new and current systems
  • Fluency in DevOps Concepts, Cloud Architecture, and the Software Development Lifecycle
  • Experience in security protocols and products: Understanding of Active Directory, Kerberos, LDAP, SAML, OAuth, and OIDC
  • Experience with continuous delivery and infrastructure as code
  • Knowledge of developer tooling across the software development life cycle (task management, source code, building, deployment, operations, real-time communication)
  • Experience with micro-services oriented architecture and extensible REST APIs
  • In depth knowledge of Datacenter structure, capabilities, and offerings, including the Azure platform, and its native services including the Azure platform and its native services
  • Fluency and specialization with at least one modern language such as Java, Go, or Python
  • In depth expertise in cryptographic protocols, digital certificates, and encryption standards such as X.509, Transport Layer Security (TLS), and Advanced Encryption Standard (AES)
  • Strong problem-solving abilities and a proactive approach to identifying and mitigating security risks and vulnerabilities
  • Excellent communication skills, able to communicate complete technical concepts to technical and non-technical stakeholders

Nice to have:

4+ years of experience with open-source frameworks is desired

What we offer:
  • Comprehensive Total Rewards program that offers personalized coverage tailor-made for you and your family’s overall well-being
  • Financial benefits including market-competitive compensation
  • a 401K savings plan vested from day one that offers a 6% match
  • performance and recognition-based incentives
  • and tuition assistance
  • Access to additional benefits like mental healthcare as well as fertility and adoption assistance
  • Supports flexibility- We provide workplace flexibility as well as our GEICO Flex program, which offers the ability to work from anywhere in the US for up to four weeks per year

Additional Information:

Job Posted:
February 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Staff Identity and Access Management Engineer

Senior System Security and Information Assurance Engineer

The Senior PAM Engineer will play a critical role within Line of Effort 2, respo...
Location
Location
United States , Tampa
Salary
Salary:
Not provided
barbaricum.com Logo
Barbaricum
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Active DoD Top Secret clearance with SCI eligibility
  • Master’s degree (MA/MS) in Cybersecurity, Information Technology, Computer Science, Engineering, or related field
  • 10+ years of professional experience in cybersecurity, systems engineering, or information assurance
  • Meets Cyber Engineer – Senior labor category requirements, including independent execution of all functional duties and support to mission-critical program elements
  • DoD 8570 IAT Level II certification or higher (e.g., Security+ CE, CCNA Security)
  • Deep expertise in Privileged Access Management (PAM) architectures and Zero Standing Privilege concepts
  • Hands-on experience implementing Just-In-Time (JIT) access workflows
  • Experience integrating PAM solutions with Active Directory, SIEM platforms (Splunk), and Identity Governance (IGA) tools
  • Experience producing technical documentation to support RMF and ATO processes (LLDs, SSPs, SOPs)
  • Ability to lead or oversee the efforts of less senior staff as required by program needs
Job Responsibility
Job Responsibility
  • Lead the installation, configuration, and technical implementation of an enterprise Privileged Access Management (PAM) solution (Delinea-focused) across multiple network enclaves
  • Discover, inventory, and onboard privileged user, administrator, and service accounts into a secure credential vault
  • Design and enforce policies for Just-In-Time (JIT) access, session monitoring, and session recording to achieve zero standing privileges
  • Develop scripts and API-based integrations between the PAM solution, Splunk SIEM, and Identity Governance (IGA) platforms
  • Support RMF accreditation activities by developing Low-Level Design (LLD) documents, System Security Plans (SSPs), and Standard Operating Procedures (SOPs)
  • Support Authority to Operate (ATO) efforts through security control implementation and technical validation
  • Lead enterprise rollout of PAM policies from pilot groups to full operational enforcement
  • Collaborate with Zero Trust architects, identity teams, and cyber engineers to ensure alignment with enterprise security architecture
Read More
Arrow Right

Staff Software Engineer I - Internal Access Management

We are seeking a Staff Software Engineer to lead the technical vision, architect...
Location
Location
Salary
Salary:
225100.00 - 264500.00 CAD / Year
confluent.io Logo
Confluent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of engineering experience
  • 4+ years in security, IAM, or distributed systems
  • Deep expertise in Kubernetes, workload identity, cloud IAM (AWS, GCP, Azure), and zero-trust architectures
  • Strong understanding of authentication technologies: IAM, OAuth2, OIDC, policy engines, and modern zero-trust principles
  • Proven track record leading multi-team technical initiatives at a Staff or Senior Staff level
  • Strong knowledge of distributed systems, cloud infrastructure, container orchestration, and service mesh
  • Excellent communication and stakeholder-influence skills across engineering and security domains
Job Responsibility
Job Responsibility
  • Define and drive the long-term architecture and roadmap for Internal Access Management across Kubernetes and multi-cloud environments
  • Architect and implement least privilege, just-in-time access, and zero-trust models across Confluent services
  • Build and evolve scalable access-authorization workflows and lifecycle management systems using technologies such as SPIFFE/SPIRE, OPA, cloud IAM policies, workload identity, and internal enforcement engines
  • Strengthen security boundaries through threat modeling, defense-in-depth practices, and comprehensive access-auditing capabilities
  • Partner with cross-functional teams—including Platform, Kafka, Observability, Developer Productivity, Release Engineering, and SRE—to drive adoption of secure identity and access patterns
  • Mentor senior engineers, elevate engineering standards, and influence architectural decisions across the organization
  • Communicate complex technical decisions clearly and align stakeholders across engineering and security
What we offer
What we offer
  • Remote-First Work
  • Robust Insurance Benefits
  • Flexible Time Away
  • The Best Teammates
  • Experience Ambassadors
  • Open and Honest Culture
  • Well-Being and Growth
  • Offers Equity
  • Fulltime
Read More
Arrow Right

Senior Staff Architect - Digital Workplace

The Digital Workplace Team at American Express is entering into a new phase of t...
Location
Location
United States , New York
Salary
Salary:
144250.00 - 256250.00 USD / Year
americanexpress.com Logo
Amex
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A passion for End User Computing and employee-facing technology
  • Extensive, recent experience with all aspects of managing 25k+ Windows devices, including (but not limited to) MECM, SCCM, MSUS and Intune
  • Hands-on experience with least two of the following at enterprise scale: Managing Macs with JAMF
  • Mobile Device Management with Intune or VMWare
  • VDI with VMWare or Citrix
  • Senior engineering responsibility for a transformation to Modern Management / UEM
  • Experience with endpoint security products including Symantec DLP, Crowdstrike and Tanium
  • Experience with identity and access management tools including Azure AD and Okta
  • Exposure to digital experience monitoring tools like Nexthink, or ThousandEyes
  • Experience growing and nurturing engineering talent
Job Responsibility
Job Responsibility
  • Develop enterprise architecture and technology roadmap for the Digital workplace portfolio of platforms and technologies
  • Actively participate in team and organization-wide architecture and engineering discussions
  • Perform rapid POCs to experiment and build rails for the engineering / product teams
  • Support engineers and project managers in rapid development and deployment
  • Introduce enterprise architectural paradigms and solutions into the portfolio
  • Communicate to senior leaders regarding strategy direction and changes
  • Mentor engineers and solution architects to ensure technology complexities are understood very clearly to implement solutions expeditiously with high quality
What we offer
What we offer
  • Competitive base salaries
  • Bonus incentives
  • 6% Company Match on retirement savings plan
  • Free financial coaching and financial well-being support
  • Comprehensive medical, dental, vision, life insurance, and disability benefits
  • Flexible working model with hybrid, onsite or virtual arrangements depending on role and business need
  • 20+ weeks paid parental leave for all parents, regardless of gender, offered for pregnancy, adoption or surrogacy
  • Free access to global on-site wellness centers staffed with nurses and doctors (depending on location)
  • Free and confidential counseling support through our Healthy Minds program
  • Career development and training opportunities
  • Fulltime
Read More
Arrow Right

Senior Manager, Infrastructure

As the Sr. Manager, Infrastructure, you’ll manage and secure our Azure/AWS cloud...
Location
Location
United States of America
Salary
Salary:
Not provided
atlashxm.com Logo
ATLAS
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in IT, Computer Science, Engineering, or equivalent professional experience
  • 7–10+ years of experience in cloud infrastructure, systems engineering, or cloud operations
  • Strong hands-on expertise with Azure (preferred) and/or AWS cloud infrastructure services
  • Deep knowledge of compute, storage, networking, identity, and monitoring in cloud and hybrid environments
  • Experience managing virtual networks, load balancers, firewalls, routing, VPN/ExpressRoute, and cloud network security
  • Experience managing or mentoring engineers
  • able to set operational standards and drive team performance
  • Strong communication skills with the ability to work across security, DevOps, networking, and application teams
  • Experience leading cloud migration or modernization projects at scale
Job Responsibility
Job Responsibility
  • Manages daily cloud infrastructure operations across Azure/AWS, including compute, storage, networking, and identity
  • Oversees hybrid cloud environments, connectivity, firewalls, VPNs, ExpressRoute/Direct Connect, and VNet/VPC architectures
  • Ensures uptime, reliability, performance, and capacity planning for all cloud-hosted systems
  • Oversees infrastructure automation using Terraform, Bicep/ARM, CloudFormation, PowerShell, and CI/CD pipelines
  • Create and configure user identities in Entra ID/Azure AD and assign appropriate RBAC roles
  • Deploy required applications, security tools, and profiles using Intune, Mosyle, or equivalent MDM/endpoint platforms
  • Designs and maintains landing zones, resource hierarchies, networking topologies, and enterprise cloud architecture
  • Implements monitoring, alerting, and observability using tools like Azure Monitor, Grafana, and Sentinel
  • Owns backup/restore strategies, disaster recovery planning, high availability configurations, and resilience engineering
  • Partners with security teams on identity, access control, network security, vulnerability remediation, and compliance
What we offer
What we offer
  • The opportunity to work with a purpose — simplifying global expansion across borders and cultures
  • A diverse and inclusive environment
  • Country-specific benefits
  • Flexible PTO
  • Your birthday off and a day for you to volunteer and give back to the organization of your choice
  • Generous Parental Leave Program
  • Growth and development opportunities with access to a top learning content provider
  • The opportunity to challenge yourself in a high-performing organization and leave each day knowing you have made an impact
Read More
Arrow Right

Senior Manager, Infrastructure

As the Sr. Manager, Infrastructure, you’ll manage and secure our Azure/AWS cloud...
Location
Location
Canada
Salary
Salary:
Not provided
atlashxm.com Logo
ATLAS
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in IT, Computer Science, Engineering, or equivalent professional experience
  • 7–10+ years of experience in cloud infrastructure, systems engineering, or cloud operations
  • Strong hands-on expertise with Azure (preferred) and/or AWS cloud infrastructure services
  • Deep knowledge of compute, storage, networking, identity, and monitoring in cloud and hybrid environments
  • Experience managing virtual networks, load balancers, firewalls, routing, VPN/ExpressRoute, and cloud network security
  • Experience managing or mentoring engineers
  • able to set operational standards and drive team performance
  • Strong communication skills with the ability to work across security, DevOps, networking, and application teams
  • Experience leading cloud migration or modernization projects at scale
Job Responsibility
Job Responsibility
  • Manages daily cloud infrastructure operations across Azure/AWS, including compute, storage, networking, and identity
  • Oversees hybrid cloud environments, connectivity, firewalls, VPNs, ExpressRoute/Direct Connect, and VNet/VPC architectures
  • Ensures uptime, reliability, performance, and capacity planning for all cloud-hosted systems
  • Oversees infrastructure automation using Terraform, Bicep/ARM, CloudFormation, PowerShell, and CI/CD pipelines
  • Create and configure user identities in Entra ID/Azure AD and assign appropriate RBAC roles
  • Deploy required applications, security tools, and profiles using Intune, Mosyle, or equivalent MDM/endpoint platforms
  • Designs and maintains landing zones, resource hierarchies, networking topologies, and enterprise cloud architecture
  • Implements monitoring, alerting, and observability using tools like Azure Monitor, Grafana, and Sentinel
  • Owns backup/restore strategies, disaster recovery planning, high availability configurations, and resilience engineering
  • Partners with security teams on identity, access control, network security, vulnerability remediation, and compliance
What we offer
What we offer
  • A diverse and inclusive environment
  • Country-specific benefits
  • Flexible PTO
  • Your birthday off and a day for you to volunteer and give back to the organization of your choice
  • Generous Parental Leave Program
  • Growth and development opportunities with access to a top learning content provider
Read More
Arrow Right

Software Engineer, Backend_Identity & User Security

Become an integral part of our Identity& User Security team, where you will play...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
airwallex.com Logo
Airwallex
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s Degree or higher in Computer Science, Engineering, Information Technology, or a related field
  • Strong proficiency in modern programming languages such as Java, Kotlin, Go, or Python
  • Deep understanding of Identity and Access Management (IAM) concepts (Authentication, Authorization, SSO, MFA)
  • Experience with cloud platforms (AWS, GCP, or Azure) and containerization technologies (Docker, Kubernetes)
  • Solid knowledge of relational and non-relational databases (e.g., PostgreSQL, Cassandra, Redis)
  • For Staff level: around 10 years or at least 8 years experience
  • For Senior software engineers: around 6 years or at least 5 years engineering experience
  • For SDE2 engineers: over 3 years or at least 2 years engineering experience
Job Responsibility
Job Responsibility
  • Define the long-term technical vision and architectural strategy for Airwallex’s Identity (IAM) and account infrastructure domains
  • Partner closely with Product Managers and Engineering Directors to translate business goals into a concrete technical roadmap
  • Act as the technical bridge between Engineering, Legal, Compliance, and Security teams to ensure our technical roadmap aligns with global regulatory changes
  • Design, develop, and maintain high-availability (HA) IAM products and account infrastructure using Java/Kotlin and cloud-native technologies
  • Implement industry-standard security protocols (e.g., OAuth2, OIDC, SAML) to safeguard business data and ensure compliance with global financial regulations
  • Architect and optimize scalable infrastructure solutions to support high transaction volumes and ensure system reliability
  • Champion engineering excellence by conducting code reviews, writing automated tests, and establishing best practices for performance and security
  • Mentor junior and senior engineers through code reviews, design docs, and career guidance
  • Establish and enforce standards for code quality, security, and system reliability
  • Fulltime
Read More
Arrow Right

Senior IT Support Engineer & Site Lead

We’re obsessed with delivering fantastic IT support and world-class customer ser...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
airwallex.com Logo
Airwallex
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years working in a IT support, lead, IT manager or IT engineering role
  • You've been an IT site lead/IT Lead/IT Manager for a regional HQ or large office
  • Strong demonstrated communication ability in English - written and verbal
  • Basic or advanced understanding of Apple and Windows device management
  • Strong understanding of identity and access management
  • Strong technical skills, including network, clients/endpoints, and general IT troubleshooting
  • Strong problem solving skills and sound judgement - able to quickly triage and solve problems with logical assumptions and under time constraints – self-sufficiency is key
  • Demonstrated ability to thrive in ambiguity and make the right decisions
  • Autonomous and able to manage your time, work independently, and prioritize the right tasks – able to prioritize urgent vs important tasks
  • Strong interpersonal skills with multiple cultures and stakeholders – you’ll collaborate and work across many partners in the business and grow these relationships with Corporate IT
Job Responsibility
Job Responsibility
  • Highly visible, cross-functional role – you’ll work with teams across IT Engineering, INFOSEC, Finance, Engineering and more, and are a key member of the Singapore office
  • Singapore IT support leadership – you'll be the primary owner of IT support in our Singapore offices, and responsible for the daily operations ensuring smooth and consistent experiences in our locations
  • This requires a demonstrated ability to establish and understand service benchmarks, drive effective engagement, and enhance our self-service offerings
  • Take ownership of software and hardware procurement – Raising PR/POs, ordering hardware and ensuring we always have stock-on-hand and it’s accurately tracked and managed
  • Provide and demonstrate expert IT support for our Airwallex community, in-office or remotely
  • Hands-on management of our many SaaS apps/tools
  • Maintain, and build our IT knowledge base and documentation
  • Onboard new hires, ensuring hardware is ready and conducting onboarding sessions
  • Offboard departing staff, collecting and refreshing hardware/licenses
  • Improve and provide feedback to processes and policies
  • Fulltime
Read More
Arrow Right

Staff Product Security Engineer - Customer Platform

We are seeking a seasoned and highly skilled Staff Product Security Engineer - C...
Location
Location
United States
Salary
Salary:
190000.00 - 260000.00 USD / Year
valon.ai Logo
Valon Tech
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years in progressive senior security engineering or architect level roles
  • 3+ years leading security design for enterprise-grade cloud and SaaS platforms
  • Bachelor's degree in Information Security, Computer Science, Technology or related field
  • Relevant security certifications (e.g., CISSP, CISM, CCSK, CCSP or similar)
  • Proven ability to design security reference architectures and implement customer platform security controls and technologies (IAM, API security, encryption/key management, logging/monitoring and others)
  • Hands-on experience with modern security technologies and tooling across cloud and application security
Job Responsibility
Job Responsibility
  • Define and evolve product security architecture and strategy for Valon’s multi-tenant SaaS platform
  • Architect and guide secure implementation of customer-facing security capabilities in conjunction with Engineering (e.g., authentication / authorization models, identity integration, access controls, audit and logging, encryption / key management)
  • Build and maintain security reference architectures and standardized secure design patterns for product teams
  • Lead threat modeling, security design and code reviews for new features, services, and major architectural changes
  • Collaborate with Product, Engineering, Data, Compliance, Legal, and other teams to identify and drive mitigation for product and data security risks
  • Support vulnerability triage, remediation strategy, and root cause analysis for product security issues
  • Support security compliance and regulatory needs (e.g., SOC 2, CCPA, NYDFS, FTC), including customer-facing security discussions and due diligence
  • Develop, implement, and enforce security policies, standards, and procedures
  • Support operational activities including security advisory and consultative reviews, incident response, issue remediation, and other security processes
What we offer
What we offer
  • Competitive salary with a meaningful stake in the company via equity
  • 401k plan
  • Comprehensive medical, dental, & vision benefits
  • Pre-tax deductions for public transportation, rideshare services, and parking expenses
  • Company wide orientation
  • Learning & development opportunities including regular review cycles that feature 360 degree feedback
  • Quarterly budgets for team and company outings
  • Flexible paid time off
  • Sick days
  • 11 company holidays
  • Fulltime
Read More
Arrow Right