IAM Engineer

SRM TECHNOLOGIES, INC.
United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security Identity and Access Management Key Management PCI Data Security Standards Role-Based Access Control Zero Trust Network Access Okta SailPoint

Job description

IAM Governance & Access Management Lead and maintain IAM governance frameworks aligned with security best practices and regulatory requirements. Design, implement, and manage Identity Governance using SailPoint (primary), with Okta integration and administration (secondary). Enforce least-privilege and role-based access models across users, services, and privileged accounts. Oversee and lead quarterly access reviews, ensuring timely certification and remediation of access exceptions. Provide guidance on access lifecycle management, including JML processes. Secrets Management & Credential Security Design, implement, and maintain secrets management solutions such as AWS Secrets Manager or equivalent platforms. Ensure secure storage, access controls, rotation policies, and lifecycle management for secrets, API keys, and credentials. Advise engineering teams on secure secret handling and integration patterns. Patch Compliance & Security Validation Validate and monitor patch compliance across platforms to ensure adherence to defined SLAs and risk thresholds. Analyze patching gaps, drive remediation efforts, and manage exception processes where necessary. Provide compliance and risk visibility to stakeholders through reports and dashboards. Encryption & Data Protection Controls Define and enforce encryption standards for data at rest and in transit across cloud and enterprise systems. Validate implementation of encryption controls and secure communication protocols. Support key management practices and integration with identity and access controls. Zero Trust Enablement Champion Zero Trust security principles, with a focus on identity-centric access, continuous verification, and network controls. Promote Zero Trust awareness and best practices across engineering and IT teams. Support design and implementation of identity-driven security architectures. Compliance, Audit & Evidence Management Lead creation and maintenance of compliance evidence artifacts for internal reviews and external audits. Support audit activities by providing documentation related to IAM controls, encryption posture, patch compliance, and secrets management. Partner with GRC and audit teams to address findings and implement corrective actions.

Requirements

We are seeking an experienced Senior Security & Identity and Access Management (IAM) Engineer with 5+ years of experience to lead IAM governance, access control strategy, and compliance initiatives across the environment. This role requires deep expertise in SailPoint Identity Security Cloud/IdentityIQ (primary IAM platform) and Okta (secondary IAM platform), along with expertise in least-privilege models, secrets management, encryption controls, patch compliance validation, and audit readiness, while championing Zero Trust security principles., 5+ years of experience in Security Engineering, IAM, or Identity Governance roles with strong hands-on experience in SailPoint (primary) and Okta (secondary). Deep expertise in IAM concepts including RBAC, ABAC, least-privilege, and privileged access management. Strong hands-on experience with secrets management solutions (AWS Secrets Manager or equivalent). Proven experience validating patch compliance and security SLAs. Strong understanding of encryption standards and secure communication protocols. Excellent documentation, communication, and stakeholder management skills. Preferred Qualifications Hands-on experience with cloud platforms such as AWS, Azure, or GCP. Familiarity with Zero Trust architectures and frameworks. Exposure to compliance frameworks such as ISO 27001, SOC 2, PCI-DSS, or NIST. Experience operating in large-scale or regulated enterprise environments.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:41 min

Protecting etcd databases using Key Management System plugins

Alex Soto Alex Soto · LIVE

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

3:03 min

Balancing robust code verification with user liability paradigms

John Woods John Woods · LIVE

Videos

See all

Related articles

See all