IAM Engineer II 1930 W Rio Salado Pkwy Tempe AZ 85281

Remote Full-time
Its fun to work in a company where people truly believe in what they are doing. At Dutch Bros Coffee, we are more than just a coffee company. We are a fun-loving, mind-blowing company that makes a difference one cup at a time. Position Overview: This role is central to securing our organizations digital landscape. You will be responsible for the strategic implementation and ongoing optimization of our Identity and Access Management solutions, focusing on Privileged Access Management and Identity Governance & Administration. This position requires a proactive, technically skilled individual who can manage complex identity integrations, automate key processes, and champion a Zero Trust security model. You will collaborate with various teams to ensure our identity infrastructure remains secure, scalable, and compliant with evolving business and regulatory demands. Job Qualifications: • Bachelor’s degree in related field; computer science, information security, or a related field/required • 5+ years of experience in Identity and Access Management (IAM), with a strong focus on Privileged Access Management (PAM) and Identity Governance & Administration (IGA). • Demonstrated experience deploying and managing cloud identity platforms like Okta, Auth0, and Microsoft Entra ID in hybrid environments. • Proven experience with Terraform and CI/CD pipelines for automating IAM policy and configuration. • Solid understanding of IAM principles, including user lifecycle management, provisioning with SCIM, and compliance frameworks (e.g., SOX, PCI DSS). • Expertise in developing and executing enterprise-wide identity strategies and governance frameworks. Experience with IAM automation, including workflow orchestration, API integrations, and scripting. • Proficient in designing and optimizing PAM solutions with Just-In-Time (JIT) access, credential vaulting, and session monitoring. Proven ability to implement Zero Trust Network Access (ZTNA) architectures and conditional access policies based on user, device, and risk signals. • Hands-on experience with comprehensive IGA solutions, including automating the full identity lifecycle (Joiner-Mover-Leaver), access certifications, and policy enforcement, with a deep understanding of Segregation of Duties (SoD) principles. • Extensive experience with modern authentication methods such as passwordless (FIDO2/WebAuthn), Multi-Factor Authentication (MFA), and Single Sign-On (SSO). Strong knowledge of identity federation protocols, including SAML, OAuth2.0, and OIDC. • Advanced knowledge of Role-Based Access Control (RBAC) and fine-grained authorization. Experience securing and managing non-human identities (NHIs) and service accounts, including lifecycle management and credential rotation. • Hands-on experience with cloud-based identity services (e.g., Okta, Auth0, Entra ID) and their integration with on-premise Active Directory. Location Requirement: This role is located in Tempe, Arizona. This position is required to be in office 4 days per week (Mon-Thurs); Fridays are optional remote work days. Key Result Areas (KRAs): • Lead the implementation and optimization of PAM solutions to enhance access security. This includes deploying Just-in-Time (JIT) access, credential vaulting, and session monitoring to minimize lateral movement and secure privileged accounts. • Drive the improvement of identity governance by automating the full user lifecycle (Joiner-Mover-Leaver), access reviews, and provisioning workflows. Ensure compliance by enforcing Segregation of Duties (SoD) policies and leveraging API-driven orchestration. • Manage and enhance the identity stack by modernizing authentication methods and ensuring seamless integration. This involves implementing federation protocols (SAML, OIDC), passwordless authentication (FIDO2), and unified conditional access policies across hybrid environments. • Improve overall security by implementing a Zero Trust Network Access (ZTNA) architecture. Deploy advanced risk-based MFA, biometric solutions, and advanced conditional access policies that maintain a balance between security and user experience. • Establish and maintain a comprehensive identity strategy and governance framework aligned with enterprise risk management. Ensure regulatory compliance through automated access reviews, audit reporting, and continuous monitoring of identity-related security posture. • Accelerate IAM initiatives by driving automation through workflow orchestration, API integrations, and custom scripting. The goal is to reduce manual effort, improve response times, and enable self-service capabilities. • Must be able to collaborate in-person with occasional impromptu in-person meetings Physical Requirements: • In-Office Environment: Must be able to work in a busy, crowded, and loud office with frequent distractions and interruptions • Must be able to collaborate in-person with occasional impromptu in-person meetings • Office Conditions: Adaptability to typical office conditions, which may include exposure to air conditioning, heating, artificial lighting, and varying noise levels • Mobility: Ability to sit, stand, reach, twist, stretch, and work at a desk for long stretches. Must be able to occasionally move or lift office items up to 25 pounds • Hearing Requirements: Hearing must be sufficient or correctable to ensure clear understanding of spoken information, including participating in virtual meetings and phone calls. Use of hearing aids or other assistive devices is acceptable if needed. • Reading and Writing Proficiency: Ability to read and write in English is essential for processing documents, drafting reports, and following up on necessary actions. Proficiency in written communication is required to handle job-related tasks effectively. • Vision Requirements: Vision must be adequate or correctable to perform essential job duties, such as reading documents on a computer screen and using other visual tools. Use of corrective lenses or other measures to meet visual requirements is expected if needed. • Technology Proficiency: Must be proficient in operating a computer and other office productivity tools such as printers, scanners, and collaboration software. • Effective Communication: Must possess strong verbal and written communication skills to interact effectively with team members, clients, and other stakeholders via email, video conferencing, and other in office communication tools. Compensation: DOE If you like wild growth and working in a unique and fun environment, surrounded by positive community, youll enjoy your career with us! Apply tot his job
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Experienced Remote Data Entry Specialist – Part-Time Opportunity for Detail-Oriented Individuals to Contribute to arenaflex's Success from Home

Remote Full-time

IT Field Support Specialist (HT II) (Government) Columbia, Maryland

Remote Full-time

**Experienced Customer Service Representative – Delivering Exceptional Apple Experiences Remotely**

Remote Full-time

**Experienced Part-Time Remote Data Entry Clerk – Flexible Work-from-Home Opportunity for Entry-Level Professionals**

Remote Full-time

Business Process Improvement Manager

Remote Full-time

THE GROVE LA

Remote Full-time

Experienced Remote Data Entry Specialist – Flexible Scheduling and Professional Growth Opportunities at blithequark

Remote Full-time

**Experienced Data Entry Specialist – Remote Opportunity at blithequark**

Remote Full-time

Clinical Documentation Specialist - RN or Foreign MD (Remote Contract)

Remote Full-time

Analytics Engineer

Remote Full-time
← Back to Home