Identity & Access Management (IAM) Engineer

Remote Full-time
About the position

We are seeking a highly skilled Identity & Access Management (IAM) Engineer to design, implement, and manage secure identity solutions across our enterprise environment. This role is responsible for enforcing least-privilege access, strengthening authentication controls, supporting regulatory compliance (CMMC/NIST), and enabling secure digital transformation across cloud and on-premise platforms.
The IAM Engineer will partner with IT Infrastructure, Data, Security, HR, and Application teams to ensure identity governance, lifecycle automation, privileged access management, and zero-trust principles are consistently applied across the organizatio

Responsibilities
• Design and maintain IAM architecture across:
Microsoft Entra ID (Azure AD)
• Active Directory (on-prem)
• Microsoft 365
• VPN and network authentication systems
• Enterprise SaaS platforms (Salesforce, BC, etc.)
• Implement and manage Single Sign-On (SSO) and federation (SAML, OAuth, OIDC)
• Architect Conditional Access policies and Zero Trust controls
• Implement and enforce MFA across all systems
• Automate Joiner / Mover / Leaver (JML) processes integrated with HRIS
• Build and maintain Role-Based Access Control (RBAC) framework
• Implement access certification and periodic access reviews
• Ensure timely deprovisioning and segregation of duties enforcement
• Support M&A integrations (rapid identity consolidation within 30 days)
• Deploy and manage privileged access controls (PIM, just-in-time access)
• Enforce tiered admin model and privileged session monitoring
• Reduce standing privileged access across all systems
• Maintain break-glass account governance and monitoring
• Support CMMC, NIST 800-171, and internal audit requirements
• Maintain documentation for identity controls and audit evidence
• Participate in risk assessments and control testing
• Integrate identity logs with SIEM/SOC platform (e.g., Arctic Wolf)
• Investigate anomalous login behavior and identity-based threats
• Implement identity threat detection and response controls

Requirements
• 5+ years of experience in IAM, Identity Engineering, or Security Engineering
• Strong hands-on experience with:
• Microsoft Entra ID (Azure AD)
• Active Directory (GPOs, OU design, hybrid identity)
• MFA and Conditional Access
• SSO and federation protocols (SAML, OAuth, OIDC)
• Experience with Privileged Identity Management (PIM/PAM)
• Understanding of Zero Trust architecture principles
• Experience supporting compliance frameworks (NIST, CMMC, SOC 2, ISO 27001)
• PowerShell scripting and automation experience
• Experience in hybrid cloud environment

Apply tot his job

Apply To this Job
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Senior Technical Solutions Specialist - German Speaking

Remote Full-time

**Remote Data Entry Specialist – Join Our Dynamic Team at arenaflex**

Remote Full-time

Creative Director, Political Advertising (Remote Full-time Salaried)

Remote Full-time

**Senior Director II, Customer Strategic Insights – Driving Growth and Innovation at arenaflex**

Remote Full-time

**Experienced Part-Time SQL Data Entry Specialist – Remote Opportunity at arenaflex**

Remote Full-time

**Experienced Full Stack Service Desk Specialist/Live Chat Agent – Mobile Application Support and Customer Assistance**

Remote Full-time

Benefits Navigator I, ROPS (Remote)

Remote Full-time

Coder I Hospitalist, Remote, 8:00a-4:30p

Remote Full-time

Fractional CMO for SaaS (bolthires/bolthires Seller Platform – MarketOS)

Remote Full-time

Senior Full Stack Mobile Software Engineer - Designing and Delivering AT&T's Flagship myAT&T Mobile Application

Remote Full-time
← Back to Home