> Markdown version of [/jobs/ext/2238161-cybersecurity-engineer-seattle-wa](https://www.wearedevelopers.com/jobs/ext/2238161-cybersecurity-engineer-seattle-wa). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - Seattle, WA - **Company:** CARRIX - **Location:** Seattle, WA, United States - **Experience:** Expert - **Salary:** $130,000.0 - $160,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Active Directory, Artificial Intelligence, Software System Penetration Testing, Audit Trail, User Authentication, Business Systems, Software as a Service, Cyber Security, Multi-Factor Authentication, Identity and Access Management, Information Technology Operations, Intrusion Detection and Prevention, Python (Programming Language), Lightweight Directory Access Protocols (LDAP), Network Segmentation, OAuth, Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Single Sign-On, Software Vulnerability Management, Scripting, Cloud Platform System, Large Language Models, Information Technology, Enterprise Integration, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** August 26, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88150622/1 ## About the Role * 5+ years of experience in cybersecurity, IT security, systems administration, identity and access management, or a related technical field. * Bachelor's degree in computer science, Cybersecurity, Information Technology, or a related field, or equivalent practical experience. * Working knowledge of identity and access management (IAM) concepts, including authentication, authorization, least privilege, role-based access control, privileged access, access reviews, and user lifecycle processes. * Familiarity with enterprise identity technologies such as Active Directory, Microsoft Entra ID, single sign-on, multifactor authentication, conditional access, or similar IAM platforms and controls. * SOC level 2 or relevant incident response experience. * Working knowledge of scripting or automation, such as Python or PowerShell. * Basic understanding of common identity protocols and integration patterns such as SAML, OAuth, OpenID Connect, SCIM, LDAP, or related technologies is a plus. * Solid understanding of common vulnerabilities and exploitation techniques. * Familiarity with SAST and DAST tools and practices. * Basic understanding of AI and LLM-based tool risks, including prompt injection and data exposure. * Working knowledge of cybersecurity and identity governance frameworks, including NIST CSF, NIST 800-53, and industry best practices related to identity and access management. * Reliable, detail-oriented, and comfortable following established processes. * Good communication skills and willingness to ask for guidance when needed. * Strong desire to build technical depth and advance toward more autonomous work. * Relevant certifications a plus, such as Security+, GSEC, Microsoft identity/security certifications, or other IAM-focused credentials. ## Description We're looking for a Cybersecurity Engineer with a strong focus on Identity and Access Management (IAM) to help design, implement, and defend secure access across our family of companies. This is a hands-on technical role that supports enterprise identity services, access controls, authentication, authorization, provisioning, and audit-ready access practices while maintaining broad responsibility across incident response, vulnerability management, security monitoring, AI system security, and core cybersecurity controls. You'll work closely with security, IT operations, application owners, and business stakeholders to reduce identity-related risk, improve least-privilege access, and translate technical security concerns into practical business action. * Implement and maintain security controls, building, operating, and improving controls for identity and access management, multifactor authentication, privileged access, single sign-on, conditional access, intrusion detection, network segmentation, and data protection based on established architecture. * Maintain IAM platform integrations, configuring and troubleshooting integrations with directory services, cloud platforms, SaaS applications, and business systems using established authentication and authorization patterns. * Assist with detection, triage, containment, and investigation of security incidents, including identity-related events such as suspicious sign-ins, privilege misuse, account compromise, and anomalous access activity. * Conduct penetration testing and vulnerability assessments, testing across networks, applications, cloud environments, and identity controls. Help track remediation to completion. * Assess and monitor risks in AI and LLM-based tools, including agentic tools used for internal workflows. Assist with access scoping, connector permissions, identity-based controls, and audit logging under senior guidance. * Contribute to risk and compliance efforts by documenting and communicating findings related to cyber risk, identity governance, access control effectiveness, and audit readiness. Assist with reporting on security posture and incident trends. * Apply cybersecurity ethics and compliance standards. Follow relevant law, regulation, and internal policy consistently in daily work. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Resilient by Design: Building Robust Architectures in High-Stakes Financial Systems](https://www.wearedevelopers.com/videos/2106-resilient-by-design-building-robust-architectures-in-high-stakes-financial-systems) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 188: CfP time, the risks of NPM and IKEA algorithms](https://www.wearedevelopers.com/magazine/635-dev-digest-188-cfp-time-the-risks-of-npm-and-ikea-algorithms)