IAM Engineer
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+2 more
Job description
Schedule: Monday-Friday, normal business hours, 35 hrs/week (unpaid meal break after 6 hrs; overtime requires PM pre-approval) Assignment Term: August 10, 2026 - August 8, 2027 (approx. 1,820 hours), The IAM Engineer will join the Infrastructure Resilience Identity and Access Management team, supporting multiple highly critical, 24x7-uptime agency systems (including 311). This role covers both cloud and on-prem infrastructure, with responsibility for Active Directory and Entra ID engineering, ManageEngine BSP administration, and Tier 2/3 IAM support - including periodic off-hours/on-call coverage to fill 24x7 support gaps., * Active Directory Engineering & Administration (~30%) - Design, implement, and maintain AD infrastructure supporting enterprise identity services.
- Entra ID (Azure AD) Engineering & Administration (~40%) - Manage and optimize Entra ID for hybrid identity, authentication, and access scenarios.
- ManageEngine BSP (MEBSE) Engineering & Administration (~20%) - Support and maintain ManageEngine-based IAM tooling.
- IAM Tier 2 Technical Support (~10%) - Provide escalated troubleshooting and support, including participation in 24x7 on-call rotation.
Requirements
- 12+ years of hands-on experience designing, implementing, and maintaining enterprise IAM solutions.
- Demonstrated expertise with Active Directory, PKI, Entra ID, LDAP, SAML, and OAuth.
- Proven track record delivering complex, technically demanding IAM projects.
- Deep understanding of RBAC methodologies, with strong analytical/troubleshooting skills, the ability to translate business requirements into technical solutions, and strong cross-team communication and collaboration skills.
- Extensive experience with Identity Governance operations - access reviews, certification workflows, role mining, and provisioning automation.
- Strong background integrating IAM platforms with cloud service providers and hybrid environments, including secure design patterns for SaaS, PaaS, and on-prem applications.
- Deep understanding of identity lifecycle management - joiner/mover/leaver processes, attribute governance, and API/scripting-based automation.
- Advanced scripting/automation skills in PowerShell, Python, and REST APIs for large-scale identity orchestration.
Desirable Qualifications
- PowerShell scripting
- Entra/Azure/Active Directory experience
- Browser control/management experience
Benefits & conditions
Pulled from the full job description Tuition reimbursement Parental leave 401(k) Retirement plan Dental insurance, * 401(k)
- Dental insurance
- Parental leave
- Retirement plan
- Tuition reimbursement
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
The Best X (Twitter) Accounts for Developers
What Are The Top Skills Required For Azure Developers?
Top-Paying Tech Jobs (with Salaries)
Where To Find Software Engineering Jobs