IAM Systems Engineer

Intellibee, Inc.
Seattle, WA, United States
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours
Job source

Tech stack

JavaScript (Programming Language) Active Directory Amazon Web Services Microsoft Azure Software Bug Management C++ (Programming Language) Software Documentation Cyber Security Data Integrity DevOps Multi-Factor Authentication Infrastructure as a Service (IaaS)
+15 more
Identity and Access Management Python (Programming Language) Kerberos (Protocol) Network Security Lightweight Directory Access Protocols (LDAP) OAuth OpenID Public Key Infrastructure Windows PowerShell Azure Active Directory JSON Web Token Security Assertion Markup Language (SAML) Single Sign-On SQL Databases Programming Languages

Job description

The client Identity and Access Management (IAM) team within Cybersecurity, provides services for the global enterprise. We seek out efficiencies and innovation in order to facilitate rapid change, scalability, and maturity of core security services for the modernizing lululemon environment. The IAM portfolio encompasses the planning, design, implementation, maintenance, support, and continuous improvement of identity and access services. We are currently searching for an engineer, who is a security-minded subject matter expert of building and maintaining global enterprise-scale services such as; Single Sign-On (SSO), Federation and Multi-Factor Authentication (MFA).

A day in the life:

  • Our Identity and Access services play an important role in the organization. Providing a great user experience, supporting resilient scalable services, while providing fundamental security enforcement, must be top of mind.
  • Support project efforts through building modernized IAM capabilities utilizing standardized frameworks to foster sustainability and growth
  • Identify technical and process gaps, foster technical collaboration, stay up-to-date with trends
  • Build, enhance and mature identity and access technologies and controls that leverage best practices, aligned to governance controls, and establish solid scalable foundations
  • Implement technology workflows and rules to maintain accuracy of data to managed systems
  • Provide stellar end-user support with on-going operations tasks, enhancements, and bug fixes
  • Maintain and upgrades systems, processes, and other necessary support as part of continuous improvement model
  • Collaborate closely with application teams to establish self-service, automation, least privileged access and promote adoption
  • Collaborate closely with global IAM team members, cybersecurity, infrastructure, digital and other technology teams to ensure appropriate business resiliency, end-to-end data integrity, GRC (governance, risk, compliance) enforcement controls, and security requirements

Requirements

  • 4+ years hands-on project and operations experience, including implementation, maintenance, and maturing enterprise cloud infrastructure and cloud authentication solutions
  • 4+ years maturing cybersecurity and/or infrastructure solutions
  • 3+ years of deep technical experience with Azure AD Global or similar SSO, Federation, and MFA solutions at B2E, B2B and/or B2C scale, One Candidate Experience Talent Acquisition 2017
  • 3+ years of experience with authentication solutions, such as Active Directory and/or other LDAP technologies
  • 2+ years of experience with Azure IaaS and/or AWS IaaS solutions is preferred
  • Experience supporting global regulatory compliant solutions is preferred
  • Familiarity with Azure AD China and/or other China IDaaS solutions is a plus
  • Expert in SAML 2.0, OAuth 2.0, OIDC, JWT, SCIM, LDAP/S, Kerberos protocols
  • Expert in network security support and analysis tactics
  • Expert in 2 or more coding languages PowerShell, C+, SQL, Python, JavaScript and/or others
  • Experience working with Privilege Identity/Access Management (PIM/PAM) solutions is a plus
  • Experience working with Microsoft CA and/or PKI solutions is a plus
  • Broad knowledge of DEVOPS processes and best practices
  • Collaborative team player, who will work closely with IAM and other teams
  • Excellent interpersonal, written and verbal skills with an ability to express technical concepts in business terms
  • Great technical and system documentation skills

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance, * Comprehensive Health Coverage: Access quality healthcare benefits to keep you and your family well.
  • Future Planning: Enroll in our 401(k) program and invest in your financial security.
  • GC Assistance: We support immediate Green Card processing, if required.

About the company

Client is an innovative performance apparel company for yoga, running, training, and other athletic pursuits. Setting the bar in technical fabrics and functional design, we create transformational products and experiences that support people in moving, growing, connecting, and being well. We owe our success to our innovative product, emphasis on stores, commitment to our people, and the incredible connections we make in every community we’re in. As a company, we focus on creating positive change to build a healthier, thriving future. In particular, that includes creating an equitable, inclusive and growth-focused environment for our people.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all