IAM Engineer

Kforce Inc.
Davie, FL, United States
15 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Active Directory Bomgar Software as a Service Identity and Access Management Kerberos (Protocol) OAuth OpenID Azure Active Directory Salesforce.Com Security Assertion Markup Language (SAML) Single Sign-On
+5 more
Systems Integration Scripting Cyberark SailPoint BeanShell

Job description

Kforce has a client seeking an IAM Engineer in Fort Lauderdale, FL. Summary: The Identity Access Management Engineer is responsible for designing, implementing, and operating enterprise IAM and IGA solutions, with a primary focus on SailPoint IdentityNow. This role supports access governance, identity lifecycle management, automation, and integrations across cloud and on-prem environments. Core Responsibilities:

  • Design, implement, and support IAM and IGA solutions
  • Build and maintain integrations across enterprise systems
  • Develop and maintain automation for identity lifecycle and access governance
  • Provide system administration, troubleshooting, and operational support
  • Partner with internal stakeholders to resolve access-related needs
  • Lead and coordinate work delivered by external consultants (PwC, KPMG, Optiv, etc.)
  • Ensure on-time delivery of project artifacts and milestones

Requirements

  • 3+ years of hands-on experience operating SailPoint IAM tools in an engineering role

Strong experience integrating SailPoint IdentityNow with:

  • Active Directory
  • Microsoft Entra ID
  • SaaS platforms (e.g., Salesforce)

Solid understanding of identity and access management protocols, including:

  • Kerberos
  • Single Sign-On (SSO)
  • OAuth 2.0
  • SAML
  • OIDC
  • Scripting and automation experience supporting IGA systems (e.g., Java, BeanShell, SailPoint NERM)
  • Ability to design, implement, and automate identity governance solutions

Key Tools & Technologies:

  • SailPoint IdentityNow
  • Microsoft Entra ID (Azure AD)
  • Active Directory
  • SaaS integrations (Salesforce, etc.)
  • PAM platforms (CyberArk, BeyondTrust)
  • IAM automation frameworks and scripting tools

Preferred Experience:

  • SCIM provisioning experience
  • Exposure to access certifications and governance programs
  • Experience with PAM solutions (BeyondTrust/Bomgar, CyberArk)
  • Familiarity with Saviynt or other IGA platforms

Benefits & conditions

The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.

We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.

Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce’s sole discretion unless and until paid and may be modified in its discretion consistent with the law.

About the company

By clicking “Apply Today” you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.kforce.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all