Cyber Security Identity Staff Engineer

GEICO
Bethesda, MD, United States
13 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$110,000.0 - $230,000.0
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Active Directory Amazon Web Services Macintosh Computers Application Frameworks Cyber Security Information Systems Software Design Patterns Linux Infrastructure as a Service (IaaS) Identity and Access Management Python (Programming Language)
+10 more
Kerberos (Protocol) Lightweight Directory Access Protocols (LDAP) OAuth OpenID Cloud Services Security Assertion Markup Language (SAML) Information Technology Restful APIs Multiplatform Microservices

Job description

Our Staff Engineer works with our Distinguished Engineers to innovate and build new systems, improve, and enhance existing systems and identify new opportunities to apply your knowledge to solve critical problems. You will lead the execution of a technical roadmap that will increase the speed of delivering products and unlock new engineering capabilities. The ideal candidate has good technical expertise ensuring secure authentication and communication across the organization., As a Staff Engineer, you will:

  • Collaborate with product managers, team members, customers, and other engineering teams to solve our toughest problems
  • Develop and execute technical IAM strategies across all Identity-related security services and systems, while optimizing for performance and efficiency
  • Own accountability for the quality, usability, and performance of the solutions
  • Consistently share best practices and improve processes within and across teams
  • Take on-call and operational support

Requirements

  • Extensive experience in identity products and protocols products such as Active Directory, Kerberos, LDAP, SAML, SCIM, OAuth, and OIDC.
  • Deep skills in privileged access management tools and services (build/buy).
  • Experience building and designing (architecture, design patterns, reliability, and scaling) of security systems with micro-services and extensible REST APIs.
  • Experience communicating and presentation to senior and junior staff with the ability to influence stakeholders.
  • Experience in a multi-platform environment with Linux, Mac, Windows.
  • Experience with multiple IaaS platforms from top tier providers.
  • Experience with solving security control requirements with engineering approaches.
  • Ability to excel in a fast-paced, startup-like environment.
  • Ability to design, perform experiments, and influence security detection and protection solutions.
  • Strong knowledge of industry-standard IAM security tools and services such as IGA, PAM, JIT access, ITDR, NHI, EPM, etc.
  • Strong knowledge of industry frameworks, and best practices including MITRE, CIS and NIST.
  • Demonstrated fluency and specialization with at least one modern language such as Python or Go.
  • Experience working with auditors and demonstrating security controls, * 4+ years of professional experience in technology or identity engineering
  • 3+ years of experience with security, identity, architecture, and design
  • 2+ years of experience with open-source frameworks is desired
  • 3+ years of experience with AWS, GCP, Azure, or another cloud service, * Bachelor’s degree in computer science, Information Systems, or equivalent education or work experience

Benefits & conditions

$110,000.00 - $230,000.00

The above annual salary range is a general guideline. Multiple factors are taken into consideration to arrive at the final hourly rate/ annual salary to be offered to the selected candidate. Factors include, but are not limited to, the scope and responsibilities of the role, the selected candidate’s work experience, education and training, the work location as well as market and business considerations.

At this time, GEICO will not sponsor a new applicant for employment authorization for this position.

The GEICO Pledge:

Great Company: Protecting customers through life’s twists and turns with innovation and integrity.

Great Careers: Personalized development programs, mentorship, and certification assistance.

Great Culture: Inclusive and collaborative culture rooted in shared success.

Great Rewards: Competitive pay, benefits, and flexibility to support your well-being and future.

About the company

At GEICO, we offer a rewarding career where your ambitions are met with endless possibilities.

Every day we honor our iconic brand by offering quality coverage to millions of customers and being there when they need us most. We thrive on relentless innovation to exceed our customers’ expectations while making a real impact on local communities nationwide.

Founded in 1936, GEICO is a member of the Berkshire Hathaway family of companies and one of the largest auto insurers in the United States. When you join our company, we want you to feel valued, supported, and proud to work here. That’s why we offer the GEICO Pledge: Great Company, Great Culture, Great Rewards, and Great Careers.

GEICO is seeking an experienced Staff Engineer to solve complex Identity and Access Management-related challenges. You will help drive our insurance business transformation as we redefine our Identity, Access Management, and Governance strategies.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz Ā· WWC Europe 2026

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard Ā· WWC 2025

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo Ā· LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter Ā· WWC 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz Ā· WWC Europe 2026

Videos

See all

Related articles

See all