IAM Cybersecurity Engineer

D & H Distributing Company
Harrisburg, PA, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Active Directory Cloud Computing Cyber Security Multi-Factor Authentication Perl (Programming Language) Federated Identity Management Identity and Access Management Python (Programming Language) Lightweight Directory Access Protocols (LDAP) OAuth PCI Data Security Standards Windows PowerShell
+9 more
Role-Based Access Control Openid Connect Azure Active Directory Cloud Services Security Assertion Markup Language (SAML) Security Information and Event Management Single Sign-On User Provisioning Software Scripting

Job description

D&H is looking to hire an IAM Cybersecurity Architect. As an IAM Cybersecurity Architect, you will play a critical role in designing and implementing D&H’s Identity and Access Management (IAM) framework. Your primary responsibility will be to develop robust IAM solutions that ensure proper access controls for users and resources within an enterprise environment. You will also have a pivotal role in safeguarding D&H’s critical assets, protecting user identities, and ensuring regulatory compliance., * Collaborate with key stakeholders to understand business requirements and design a comprehensive IAM strategy aligned with the organization’s goals.

  • Develop IAM architecture and frameworks to support user authentication, authorization, and identity provisioning.
  • Design and implement access control policies to manage user privileges, roles, and entitlements.
  • Establish role-based access control (RBAC) models and implement fine-grained access controls where required
  • Configure and deploy Single Sign-On and federated identity solutions to enable seamless access to multiple applications and services
  • Evaluate and implement multi-factor authentication mechanisms to add an extra layer of security to critical systems and applications
  • Collaborate with development teams to integrate IAM solutions into existing applications and infrastructure while ensuring a smooth user experience
  • Create comprehensive documentation for IAM solutions, guidelines, and best practices.
  • Conduct training sessions to educate IT teams and end-users on IAM-related topics
  • Stay up-to-date with the latest IAM trends, technologies, and industry standards to continuously improve the D&H’s IAM framework
  • Provides advanced architecture and engineering support to automate and administrator identity and compliance requirements into all enterprise information systems.
  • Drives planning and execution of identity management roadmaps and technology enhancements.
  • Assesses current applications and architecture to ensure current implementations align with industry guidelines, best practices and management approved standards.
  • Assists various IT departments with design, implementation and troubleshooting of IAM technologies. Provide guidance and requirements to technology teams to secure IT assets by enforcing the digital identity security standards.
  • Maintain knowledge of cybersecurity frameworks such as NIST and CIS and other security technology by attending workshops and reviewing publications
  • Responsible for overseeing the security controls for the company with minimal oversight
  • Responsible for designing and implementing new security technologies with minimal oversight
  • With minimal oversight, provide training to other members of the team
  • With minimal oversight, maintain complex project tasks and interface with various teams
  • Provide thoughts on and assist in developing new features to be added to the SIEM
  • With oversight, identify and design new security policies for the organization
  • With minimal oversight, assist in maintaining PCI compliance of the organization
  • With minimal oversight, assist in the design and implementation of a vulnerability management program
  • With minimal oversight, aid in the design, implementation, and enhancement of the security awareness program
  • Effectively deal with rapid change in a positive manner
  • Assist in process improvements to enhance the efficiency of current operational procedures
  • Coordinate relations with and serve as a liaison between business and IT staff
  • Assist in developing short-term and long-term department goals which support long-term strategic goals
  • Ensure the coordination and communication of production changes
  • Participate in all company/location driven communication efforts, including huddles, department meetings, and other related efforts
  • Maintain a positive and professional working relationship with peers, management, support resources, and the community with a constant commitment to teamwork and exemplary customer service to present a professional image of D&H Distributing
  • Perform all other duties as assigned by management in a professional and efficient manner

Requirements

  • Expertise in IAM technologies such as IAM suites, SSO, MFA, identity federation, and user provisioning.
  • Strong understanding of security protocols and standards (e.g., SAML, OAuth, OpenID Connect).
  • Knowledge of directory services (e.g., LDAP, Active Directory) and identity protocols (e.g., SCIM).
  • Familiarity with cloud-based IAM solutions and integration with cloud services (e.g., AWS IAM, Azure AD).
  • Solid grasp of compliance regulations (e.g., GDPR, HIPAA, PCI DSS) and their impact on IAM.
  • Experience with BeyondTrust preferred
  • Excellent analytical and problem-solving skills with an ability to assess and mitigate security risks.
  • Effective communication and collaboration skills to work with cross-functional teams and stakeholders.
  • Focused on success of the team/organization
  • Exceptional verbal and written communications skills
  • Demonstrated personal management skills
  • Effectively communicate complex technological issues in business terms at any level within the organization
  • Respond to customer inquiries, effectively communicate critical problems, and discuss resolutions with management
  • Highly self-motivated
  • Ability to prioritize and execute tasks in a high-pressure environment and make sound decisions in emergency situations with guidance and supervision
  • Handle information and incidents with appropriate confidentiality and discretion, * Bachelor’s or Masters degree in Cybersecurity or similar area of study required or equivalent years of related work experience
  • 3 - 5 years of experience in cybersecurity
  • Industry certifications (CEH, Security+, SANS, CISSP, OSCP, CCNA Security or similar) preferred
  • Scripting experience in PowerShell, Python or Perl preferred

Benefits & conditions

Pulled from the full job description Tuition reimbursement 401(k) Health insurance Paid time off Vision insurance Dental insurance Gym membership, * We are empowered by our employee Co-Owners who provide the industry’s best service, and we promote a collaborative culture.

  • We offer an Employee Stock Ownership Plan, 401k, Paid Time Off, Medical, Prescription, Dental and Vision benefits as well as Gym Reimbursement, Work from Home Reimbursement, Employee Purchase Program, Tuition Assistance and much more!
  • As a D&H Co-Owner you receive numerous discounts on services.
  • We feel strongly about giving back to the community and promoting sustainable, eco-friendly business practices.

About the company

D&H is growing! Join 100+ year old Employee-Owned technology distributor, offering end-to-end solutions for today’s resellers, retailers, and the clients they serve across the SMB and Consumer markets.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all