> Markdown version of [/jobs/ext/2642277-security-admin-l3](https://www.wearedevelopers.com/jobs/ext/2642277-security-admin-l3). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Admin - L3 - **Company:** Klein-Dickert Co., Inc. - **Location:** Hudson, NY, United States - **Experience:** Experienced - **Salary:** $156,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, User Authentication, Business Software, Cloud Computing, Cyber Security, Identity and Access Management, Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), User Provisioning Software, SailPoint - **Published:** August 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=6aeeadc5d09c16ac ## About the Role * Strong experience with Saviynt Identity Cloud / Enterprise Identity Cloud, including IGA, access certifications, role management, workflows, and connectors. * Expertise in IAM concepts such as RBAC, ABAC, SSO, MFA, PAM, and Identity Governance. * Hands-on experience with Active Directory, Microsoft Entra ID (Azure AD), LDAP, and enterprise IAM platforms. * Knowledge of authentication and federation protocols (SAML, OAuth 2.0, OpenID Connect, Kerberos). * Strong analytical, troubleshooting, and incident management skills. * Familiarity with security and compliance frameworks such as SOX, ISO 27001, NIST, and GDPR. Experience & Qualifications * 5-8+ years of experience in Identity & Access Management, Cybersecurity, or Information Security. * 2+ years of hands-on Saviynt administration and support experience preferred. * Relevant certifications such as Saviynt Certification, CISSP, Security+, SC-300, or equivalent are advantageous. ## Description The L3 IAM (Identity & Access Management) Security Administrator is responsible for the administration, support, and optimization of enterprise IAM solutions, ensuring secure and compliant access to business applications, systems, and data. The role provides Level 3 operational support, leads complex troubleshooting efforts, and implements identity governance, privileged access, and access lifecycle management controls. The position works closely with Cybersecurity, Infrastructure, Application, and Compliance teams to strengthen the organization's security posture., * Administer and support Identity & Access Management (IAM) platforms, including Saviynt Identity Governance & Administration (IGA), user provisioning, deprovisioning, role management, access requests, and certification campaigns. * Manage Joiner-Mover-Leaver (JML) processes, access governance, segregation of duties (SoD), and compliance controls using Saviynt and related IAM tools. * Provide Level 3 support for complex IAM incidents, perform root cause analysis, and drive issue resolution. * Administer authentication and authorization services, including SSO, MFA, Federation (SAML, OAuth, OIDC), LDAP, Active Directory, and Microsoft Entra ID (Azure AD). * Implement and support Privileged Access Management (PAM) controls and privileged account governance. * Monitor IAM systems for security threats, policy violations, and unauthorized access activities. * Support internal and external audits by maintaining access governance records, certifications, and compliance documentation. * Develop automation and process improvements to enhance IAM operational efficiency and security. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Biggest German Tech Companies](https://www.wearedevelopers.com/magazine/424-the-biggest-german-tech-companies) - [Dev Digest 176: Expensive Agents, Taking Over VSCode and Safer Vibe Coding](https://www.wearedevelopers.com/magazine/603-dev-digest-176-expensive-agents-taking-over-vscode-and-safer-vibe-coding)