> Markdown version of [/jobs/ext/1977115-senior-identity-access-management-iam-engineer-workforce-identity](https://www.wearedevelopers.com/jobs/ext/1977115-senior-identity-access-management-iam-engineer-workforce-identity). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Identity & Access Management (IAM) Engineer, Workforce Identity - **Company:** Acrisure LLC - **Location:** Atlanta, GA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, Microsoft Azure, Cloud Engineering, Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), OAuth, OpenID, PCI Data Security Standards, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Phishing, Zero Trust Network Access, Security Assertion Markup Language (SAML), Policy as Code, Cloud Platform System, Okta, Cyberark, Software Security, Software Troubleshooting, Multi-Cloud, Deployment Automation, SailPoint, Terraform - **Published:** August 7, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/senior-identity-and-access-management-iam-engineer-workforce-identity-atlanta-ga-usa-58833411 ## About the Role services, engineering for hybrid/multi-cloud environments * Strong experience with Microsoft Entra ID, Active Directory, and hybrid identity architectures * Knowledge of AWS IAM, Azure identity services, and authentication tech (SAML, OIDC, OAuth2, SCIM) * Experience implementing Conditional Access, Identity Protection, MFA, passwordless authentication * Experience with Entra Connect, cloud synchronization, and hybrid identity operations * Automation experience with PowerShell, Microsoft Graph API, Python, Terraform * Experience with PAM platforms (Delinea, CyberArk, BeyondTrust, Azure PIM) * Experience with IGA platforms (SailPoint, Saviynt, Okta) * Understanding of Zero Trust, least privilege, RBAC, and privileged access design * Ability to translate business requirements into secure, scalable identity solutions * Strong troubleshooting across authentication, federation, and directory services Key requirements * comprehensive medical, dental, vision * life and disability insurance * a aaaQ_ with immediate vesting * HSA and FSA options * paid time off and holidays * family and wellness benefits ## Description Experteer Overview In this hands-on IAM role, you will design, automate, and operate Acrisure's Workforce Identity Platform across Entra ID, Active Directory, and hybrid/cloud environments. You will create scalable identity patterns for secure, seamless access while upholding governance and compliance. You'll work with cross-functional teams to turn identity into an enabler for users, applications, and services. This position offers the opportunity to shape enterprise security and authentication at scale within a growth-focused fintech leader. Compensation / Benefits * Design, implement, and maintain Microsoft Entra ID and Active Directory services for the enterprise * Develop and maintain identity architecture standards, authentication policies, and tenant governance * Manage and secure Entra ID tenant architecture and identity infrastructure * Implement and support Conditional Access, MFA, phishing-resistant authentication, and passwordless methods * Establish tenant security posture standards, admin tiering, and privileged identity controls * Design and maintain federation and enterprise SSO integrations (SAML, OIDC, OAuth2) * Support Entra B2B collaboration and external workforce access patterns * Define and maintain enterprise app onboarding standards and identity integration requirements * Automate provisioning/deprovisioning pipelines using identity APIs, SCIM, and orchestration platforms * Policy-as-code for IAM guardrails including least privilege and MFA enforcement * Engineer scalable automation to reduce manual identity operations and improve governance * Collaborate with AppSec and Cloud Engineering to secure authentication/authorization boundaries * Automate joiner/mover/leaver processes and support periodic access reviews and certifications * Deliver dashboards for identity risk indicators and support SOC 2, PCI DSS, ISO 27001 audits * Participate in on-call support and escalation for workforce identity services Tasks * 5+ years in Identity and Access Management engineering for hybrid/multi-cloud environments * Strong experience with Microsoft Entra ID, Active Directory, and hybrid identity architectures * Knowledge of AWS IAM, Azure identity services, and authentication tech (SAML, OIDC, OAuth2, SCIM) * Experience implementing Conditional Access, Identity Protection, MFA, passwordless authentication * Experience with Entra Connect, cloud synchronization, and hybrid identity operations * Automation experience with PowerShell, Microsoft Graph API, Python, Terraform * Experience with PAM platforms (Delinea, CyberArk, BeyondTrust, Azure PIM) * Experience with IGA platforms (SailPoint, Saviynt, Okta) * Understanding of Zero Trust, least privilege, RBAC, and privileged access design * Ability to translate business requirements into secure, scalable identity solutions * Strong troubleshooting across authentication, federation, and directory services Key requirements * comprehensive medical, dental, vision * life and disability insurance * 401(k) with immediate vesting * HSA and FSA options * paid time off and holidays * family and wellness benefits ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift)