Identity & Access Management Security Engineer

THE CITY NATIONAL BANK
Miami, FL, United States
3 days ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Access Access Network Active Directory User Authentication Software as a Service Cloud Computing Cyber Security Disaster Recovery Multi-Factor Authentication Identity and Access Management Kerberos (Protocol) OAuth
+12 more
OpenID Role-Based Access Control Openid Connect Robotic Automation Software Security Assertion Markup Language (SAML) Web Application Security Single Sign-On Systems Integration User Provisioning Software Okta Information Technology SailPoint

Job description

The Identity & Access Management (IdAM) Senior Security Engineer is responsible for the design, development, implementation, administration, and support of the Bank’s Identity and Access Management platforms. This role serves as the technical subject matter expert for IdAM technologies, including Identity Governance and Administration (IGA), Single Sign-On (SSO), Multi-Factor Authentication (MFA), privileged access, and automated user lifecycle management.

The position develops, configures, and maintains IdAM solutions, including coding, workflow development, integrations, and automation within the IGA and other related IdAM platforms. The Senior Engineer partners with Cyber Security, Infrastructure, Application Owners, Human Resources, and business units to implement secure access controls, streamline provisioning processes, support compliance and regulatory requirements, troubleshoot complex identity-related issues, maintain and implement procedures, and drive continuous improvements across the IdAM program.

The role also supports internal and external audits by providing IdAM-related evidence, responding to audit inquiries, assisting with remediation efforts, and ensuring compliance with applicable regulatory and security requirements. Additionally, the Senior Engineer coordinates and supports User Access Reviews (UARs), certification campaigns, and other governance activities to maintain the integrity and effectiveness of the Bank’s access control environment.

What You’ll Do: Provides technical expertise and strategic input to support the development, execution, and continuous evolution of the Identity and Access Management (IdAM) roadmap, ensuring alignment with business, security, compliance, and technology objectives.

  • Manages and implements technologies and procedures to control information workflows for provisioning, changes, and termination of user access across network access, in-scope platforms, and applications.
  • Designs, implements, maintains, and troubleshoots the organization’s automated access control solutions, the IGA platform, and Single Sign-On Identity Provider.
  • Provides guidance on integrating identity management authentication and authorization frameworks and solutions into new and existing applications.
  • Leads the development of IdAM architecture, solutions, and procedures.
  • Develops and implements IdAM KPIs and KRIs, including scorecards and dashboards.
  • Identifies process deficiencies and suggests and implements process improvements, including reporting and escalation activities.
  • Collaborates closely with Cyber Security, Human Resources, RPA, and LOB teams to create efficient and frictionless IdAM solutions.
  • Manages user provisioning functions and related activities and recommends new workflows to streamline and automate processes.
  • Provides Level 3 support to the end-user community with IdAM security-related issues. Analyzes and resolves complex authentication, integration, and automation issues.
  • Evaluates and processes special access requests, ensuring compliance with established security controls, policies, and service expectations.
  • Administers User Access Reviews (UARs) and certification campaigns, including access analysis, stakeholder engagement, exception management, remediation tracking, reporting, and audit-related activities.
  • Administers Disaster Recovery and Business Continuity activities related to user and access management.
  • Creates, maintains, and reviews Policies, Standards, and Operational Procedure Guides as needed.
  • Creates, tests, and implements new automated provisioning workflows.
  • Stays abreast of technological and threat environment changes that impact the IdAM function, contributes to the development and execution of the IdAM vision to address those challenges, and applies independent judgment in program execution.
  • Evaluates Access Management system performance and recommends enhancements to strengthen security, governance, and operational effectiveness.

Requirements

  • 5-7 years of experience in Identity and Access Management (IdAM), including Identity Governance and Administration (IGA), Single Sign-On (SSO), Multi-Factor Authentication (MFA), Active Directory, Digital Certificates, and Certificate Authority technologies.
  • 5-7 years of experience serving in a key role in the design, implementation, administration, enhancement, and continuous improvement of IdAM solutions, including workflow development, integrations, provisioning automation, access governance, user lifecycle management, and the application of security and governance best practices.
  • Advanced knowledge of Identity and Access Management (IdAM) concepts, including Least Privilege, Privileged Access, Role-Based Access Control (RBAC), Segregation of Duties (SoD), role mining, and access governance principles.
  • Advanced knowledge of IdAM platforms, including the design, configuration, customization, and administration of workflows, connectors, integrations, and related functionality supporting identity lifecycle management across multiple systems and applications.
  • Strong knowledge of IdAM and information security best practices, standards, and guidelines, with the ability to evaluate and implement solutions based on risk, criticality, complexity, and business requirements.
  • Knowledge of and experience with Identity Management technologies and protocols, including Kerberos, Single Sign-On (SSO), OAuth, SAML, OpenID Connect (OIDC), Secure Web Authentication (SWA), and the Okta SaaS platform. Experience with SailPoint or similar Identity Governance and Administration (IGA) platforms preferred.
  • Ability to provide technical guidance and effectively collaborate with technical and non-technical stakeholders regarding identity management, access governance, and security requirements.
  • Strong ability to collaborate across interdisciplinary teams and build effective working relationships across multiple business units to support security, compliance, operational, and technology objectives.

Licenses & Certifications

  • SailPoint IdentityNow/Identity Security Cloud and Okta certifications are preferred.

Education

  • Bachelor’s Degree in Computer Science, Data Science or an equivalent combination of education and/or relevant professional experience may be considered in lieu of a degree.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all