> Markdown version of [/jobs/ext/2427569-iam-software-engineer](https://www.wearedevelopers.com/jobs/ext/2427569-iam-software-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Software Engineer - **Company:** U.S. Tech Solutions Inc. - **Location:** Burbank, CA, United States (Remote available) - **Experience:** Expert - **Contract:** Temporary contract - **Skills:** .NET Framework, Active Directory, Application Programming Interfaces (APIs), Automation of Tests, Microsoft Azure, C Sharp (Programming Language), Code Review, Information Systems, Continuous Integration, Relational Databases, Identity and Access Management, Information Security Management, Key Management, Lightweight Directory Access Protocols (LDAP), Microsoft SQL Server, Windows PowerShell, Role-Based Access Control, Azure Active Directory, Software Engineering, TypeScript, Web Applications, Enterprise Software Applications, .NET Core, Microsoft Power Automate, Asp.net Web Api, Backend, Git, AngularJS, Kubernetes, Information Technology, Cybercrime, Bicep, Hashicorp, Front End Software Development, Restful APIs, Terraform, Software Version Control, Serverless Computing, Microservices - **Published:** August 2, 2026 - **Apply:** https://www.dice.com/job-detail/990b364b-633e-4c00-bad1-d5da8afd04c0 ## About the Role * 8+ years of professional software engineering experience building and shipping web applications. * Strong, hands-on expertise in: + .NET / .NET Core, C#, ASP.NET Web API + Angular (modern versions), TypeScript, HTML/CSS + REST API design, SQL Server / relational data modeling + PowerShell scripting for identity and directory automation * Demonstrated experience automating against Active Directory and/or Microsoft Entra ID (Azure AD) - LDAP, Microsoft Graph API, directory objects, groups, and service principals. * Experience with Git-based source control, CI/CD pipelines, and automated testing. * Ability to work independently in a complex enterprise environment and deliver production-ready outcomes within a fixed contract timeline. * Strong communication skills, with the ability to explain technical design to both engineers and non-technical stakeholders. Skillsets: * .NET / .NET Core, C#, ASP.NET Web API * Angular (modern versions), TypeScript, HTML/CSS * REST API design, SQL Server / relational data modeling * PowerShell scripting for identity and directory automation, * Experience building identity governance, IAM, or access-request automation solutions. * Familiarity with non-human identity management, secrets management (e.g., Azure Key Vault, HashiCorp Vault), and certificate lifecycle automation. * Experience with Azure cloud services, Azure Functions, Logic Apps, or equivalent serverless automation. * Exposure to PIM/PAM platforms and privileged access models. * Experience with compliance and audit-driven engineering (SOX, PCI, SOC 2, or similar control environments). * Working knowledge of containers, Kubernetes, or infrastructure-as-code (Terraform, Bicep). * Relevant Microsoft certifications (e.g., SC-300, AZ-204, AZ-500). Education: * Bachelor's degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience. ## Description The Enterprise Technology mission is to deliver technology solutions that align to business strategies while enabling enterprise efficiency and promoting cross-company collaborative innovation. Our group drives competitive advantage by enhancing our consumer experiences, enabling business growth, and advancing operational excellence. * For GIS only - Delete if no GIS The Global Information Security (GIS) organization strives to secure the magic by employing best-in-class services to assess, prevent, detect, and respond to cyber threats that present risk to company. We enable the business by integrating enterprise and business segment-specific supported services to create a robust, efficient, and adaptable cybersecurity program. Our key objectives are to: * Secure the Magic by protecting information systems and platforms. * Reduce Risk by proactively assessing, preventing, and detecting to prevent harm to the Company and our Guests. * Strengthen the business through optimizing execution, application, and technology used to protect the Company. * Innovate by investing in core capabilities to enhance operational efficiency. Responsibilities: Team Description: * The Identity & Access Management (IAM) - Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non-human identities. * Our mission is to move identity governance from manual, reactive processes to automated, policy-driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud-first identity capabilities at enterprise scale. Application & Automation Engineering * Design, build, and maintain secure, enterprise-scale web applications using .NET (C#) on the backend and Angular on the frontend. * Develop and deliver RESTful APIs and microservices that integrate with Active Directory, Entra ID, and enterprise identity platforms. * Build self-service portals and workflows that replace manual identity operations with automated, policy-driven processes. * Write clean, testable, well-documented code and participate in code reviews, CI/CD pipelines, and automated testing. Non-Human Identity (NHI) Onboarding & Management * Automate the onboarding, lifecycle, and decommissioning of non-human identities - service accounts, managed identities, application registrations, certificates, and secrets. * Build tooling for NHI discovery, ownership attestation, credential rotation, and expiry notification. * Implement guardrails and approval workflows that ensure every NHI has a valid owner, justification, and least-privilege entitlement set. AD Group Management & Access Automation * Develop automation for Active Directory group lifecycle management - creation, naming standards, nesting rules, ownership, membership review, and cleanup of stale or orphaned groups. * Implement RBAC-based, request-and-approve access models with time-bound and just-in-time membership patterns. * Integrate group management with Entra ID, ITSM, and identity governance platforms. Governance, Compliance & Reporting Automation * Automate governance and compliance policy enforcement for Active Directory and Entra ID, including drift detection, automated remediation, and exception handling. * Build dashboards and compliance reporting that give owners, auditors, and leadership continuous visibility into identity posture. * Translate security standards and audit requirements into codified, testable policy checks. Collaboration & Delivery * Partner with identity engineers, security architects, and application teams to gather requirements and deliver iteratively. * Produce runbooks, technical documentation, and knowledge transfer materials so solutions remain supportable beyond the contract term. ## Related Videos - [Developing the Backend with Stefan Lingler, CTO at Shpock](https://www.wearedevelopers.com/videos/100360-developing-the-backend-with-stefan-lingler-cto-at-shpock) - [Back(end) to the Future: Embracing the continuous Evolution of Infrastructure and Code](https://www.wearedevelopers.com/videos/440-back-end-to-the-future-embracing-the-continuous-evolution-of-infrastructure-and-code) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [AI Driven Development](https://www.wearedevelopers.com/videos/100340-ai-driven-development) - [Nest.js - TypeScript in the backend can also be clean](https://www.wearedevelopers.com/videos/1033-nest-js-typescript-in-the-backend-can-also-be-clean) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) ## Related Articles - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries)