Cybersecurity Engineer - Seattle, WA

CARRIX
Seattle, WA, United States
2 days ago
Apply on jobs.localjobnetwork.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$130,000.0 - $160,000.0
Working hours
Regular working hours

Tech stack

Microsoft Access Active Directory Artificial Intelligence Software System Penetration Testing Audit Trail User Authentication Business Systems Software as a Service Cyber Security Multi-Factor Authentication Identity and Access Management Information Technology Operations
+20 more
Intrusion Detection and Prevention Python (Programming Language) Lightweight Directory Access Protocols (LDAP) Network Segmentation OAuth Windows PowerShell Role-Based Access Control Openid Connect Azure Active Directory Security Assertion Markup Language (SAML) Single Sign-On Software Vulnerability Management Scripting Cloud Platform System Large Language Models Information Technology Enterprise Integration Static Application Security Testing Vulnerability Analysis Dynamic Application Security Testing

Job description

We’re looking for a Cybersecurity Engineer with a strong focus on Identity and Access Management (IAM) to help design, implement, and defend secure access across our family of companies. This is a hands-on technical role that supports enterprise identity services, access controls, authentication, authorization, provisioning, and audit-ready access practices while maintaining broad responsibility across incident response, vulnerability management, security monitoring, AI system security, and core cybersecurity controls. You’ll work closely with security, IT operations, application owners, and business stakeholders to reduce identity-related risk, improve least-privilege access, and translate technical security concerns into practical business action.

  • Implement and maintain security controls, building, operating, and improving controls for identity and access management, multifactor authentication, privileged access, single sign-on, conditional access, intrusion detection, network segmentation, and data protection based on established architecture.
  • Maintain IAM platform integrations, configuring and troubleshooting integrations with directory services, cloud platforms, SaaS applications, and business systems using established authentication and authorization patterns.
  • Assist with detection, triage, containment, and investigation of security incidents, including identity-related events such as suspicious sign-ins, privilege misuse, account compromise, and anomalous access activity.
  • Conduct penetration testing and vulnerability assessments, testing across networks, applications, cloud environments, and identity controls. Help track remediation to completion.
  • Assess and monitor risks in AI and LLM-based tools, including agentic tools used for internal workflows. Assist with access scoping, connector permissions, identity-based controls, and audit logging under senior guidance.
  • Contribute to risk and compliance efforts by documenting and communicating findings related to cyber risk, identity governance, access control effectiveness, and audit readiness. Assist with reporting on security posture and incident trends.
  • Apply cybersecurity ethics and compliance standards. Follow relevant law, regulation, and internal policy consistently in daily work.

Requirements

  • 5+ years of experience in cybersecurity, IT security, systems administration, identity and access management, or a related technical field.
  • Bachelor’s degree in computer science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience.
  • Working knowledge of identity and access management (IAM) concepts, including authentication, authorization, least privilege, role-based access control, privileged access, access reviews, and user lifecycle processes.
  • Familiarity with enterprise identity technologies such as Active Directory, Microsoft Entra ID, single sign-on, multifactor authentication, conditional access, or similar IAM platforms and controls.
  • SOC level 2 or relevant incident response experience.
  • Working knowledge of scripting or automation, such as Python or PowerShell.
  • Basic understanding of common identity protocols and integration patterns such as SAML, OAuth, OpenID Connect, SCIM, LDAP, or related technologies is a plus.
  • Solid understanding of common vulnerabilities and exploitation techniques.
  • Familiarity with SAST and DAST tools and practices.
  • Basic understanding of AI and LLM-based tool risks, including prompt injection and data exposure.
  • Working knowledge of cybersecurity and identity governance frameworks, including NIST CSF, NIST 800-53, and industry best practices related to identity and access management.
  • Reliable, detail-oriented, and comfortable following established processes.
  • Good communication skills and willingness to ask for guidance when needed.
  • Strong desire to build technical depth and advance toward more autonomous work.
  • Relevant certifications a plus, such as Security+, GSEC, Microsoft identity/security certifications, or other IAM-focused credentials.

Benefits & conditions

  • Required job duties are normally performed in a climate-controlled office environment, or remotely from home.
  • Exposure to computer screens.
  • The noise level in the work environment is usually moderate.

Pay Range: $130,000 - 160,000 per year

The posted compensation range is based on the applicable geographic market for the position and may vary depending on factors such as related experience and skill set. Final compensation will be determined based on these items and other relevant factors.

The Employer does not sponsor for any immigration-related benefit for this specific position, this includes nonimmigrant status sponsorship, or participation in international student employment-sponsorship programs, or employment-based permanent resident status.

We are Equal Opportunity Employer

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.localjobnetwork.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:56 min

Leveraging GitOps for AI auditing and instant rollbacks

Jaroslaw Gajewski Jaroslaw Gajewski · World Congress 2026 Europe

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

Videos

See all

Related articles

See all