Federated Security Engineer
Role details
Job location
Tech stack
Job description
The Federated Security Engineer is a detail-oriented and proactive technical professional, with Identity and Access Management (IAM) expertise and a foundational experience in Cybersecurity as it relates to applications and secure access. This role focuses on managing and optimizing our central secure application access ecosystem, including onboarding/updating/offboarding applications, maintaining an up-to-date CMDB and application catalog, and supporting the integration of applications with our Single Sign-On (SSO) solution (Entra ID and Shibboleth IDP)., * Collaborates with the Cybersecurity and IAM teams to ensure secure onboarding and offboarding of applications into the SSO environment.
- Designs or consults on the application integration approach to enable secure access/SSO.
- Validates and maintains application integration configurations to meet cybersecurity and compliance requirements.
- Assists in developing and ensuring alignment of implementations or changes with access control policies and security standards.
- Supports audits and compliance reviews related to IAM and application integrations by facilitating responses via the proper SMEs.
- Maintains the CI's that relate to federated applications in the Configuration Management Database (CMDB), ensuring application records are accurate, complete, and current.
- Manages the application catalog to ensure all integrated applications are tracked with appropriate metadata (e.g., owners, contacts, technical details, integration type).
- Leverages ServiceNow to manage requests, incidents, and changes related to application integrations and IAM processes.
- Coordinates application onboarding and offboarding processes, including requirement gathering, integration configuration, testing, and documentation.
- Works with application owners to ensure smooth transitions during onboarding/offboarding.
- Maintains end-to-end lifecycle documentation for each application in scope.
- Creates and maintains detailed documentation for application integrations, onboarding/offboarding procedures, and CMDB updates.
- Gathers and analyzes enhancement requests from stakeholders, prioritizes them, and coordinates with technical teams for implementation.
- Identifies opportunities to streamline IAM-related processes and improve integration workflows.
- Assists in engineering modern applications that support the SSO integration intake process and application inventory.
- Troubleshoots, develops, and supports in multiple IDPs including Entra ID and Shibboleth IDP.
- Serves as On-Call rotation for IDP support as needed.
- Performs other related duties as required.
Requirements
- A bachelor's degree in a scientific or math field and three years of related experience, OR an equivalent combination of education, training, and experience.
- Hands-on programming experience and/or non-trivial scripting in a robust programming language, including the ability to write clean, maintainable code to solve practical problems.