IAM Engineer

Insight Global
Denver, CO, United States
1 day ago
Apply on www.denverjobsite.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$93,600.0 - $104,000.0
Working hours
Regular working hours

Tech stack

Active Directory Application Programming Interfaces (APIs) Identity and Access Management Role-Based Access Control Azure Active Directory SailPoint Servicenow

Job description

Insight Global is seeking an IAM Engineer (Identity & Access Management Engineer) to support a large, security-focused financial services organization. This role blends hands-on IAM engineering with day-to-day operational execution, playing a key part in managing identity lifecycle events while helping modernize and automate IAM processes. The ideal candidate enjoys balancing ticket-based execution with strategic improvement initiatives, thrives in collaborative environments, and is passionate about building secure, scalable, and audit-ready identity services.

Day-to-Day

  • Design, implement, and support IAM solutions across Entra ID, Active Directory, SailPoint, ServiceNow, and PAM platforms
  • Actively work IAM ticket queues, including access requests and JML events
  • Execute joiner, mover, and leaver activities with accuracy and audit readiness
  • Troubleshoot provisioning failures, sync issues, and access/authentication problems
  • Support application onboarding and integration into IAM platforms
  • Identify recurring operational issues and drive process improvements
  • Assist with automation and standardization of identity lifecycle workflows
  • Ensure access provisioning aligns with least privilege and compliance controls
  • Partner cross-functionally with Security, Infrastructure, People Team, and Audit

Requirements

  • 3-5 years hands-on IAM engineering experience in enterprise environments
  • Microsoft Entra ID (Azure AD): SSO, MFA, Conditional Access
  • Active Directory (on-prem and hybrid environments)
  • SailPoint (IIQ and/or ISC) experience
  • Strong understanding of IAM lifecycle (Joiner, Mover, Leaver) - Privileged Access Management (PAM) experience
  • Experience supporting SOX, ISO 27001, SOC2, or ISAE audits
  • Exposure to RBAC and ABAC provisioning models
  • API or connector-based integrations for IAM platforms
  • Prior experience partnering closely with HR / People teams on lifecycle automation

Benefits & conditions

$45/hr - $50/hr

Exact compensation may vary based on several factors, including skills, experience, and education.

Employees in this role will enjoy a comprehensive benefits package starting on day one of employment, including options for medical, dental, and vision insurance. Eligibility to enroll in the 401(k) retirement plan begins after 90 days of employment. Additionally, employees in this role will have access to paid sick leave and other paid time off benefits as required under the applicable law of the worksite location.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.denverjobsite.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · World Congress 2025

1:45 min

Evolution from manual setups to automated monolith deployments

Axel Barbier · World Congress 2023

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

2:14 min

Exploring internal AI product initiatives and global engineering roles

Maria Apazoglou · Coffee With Developers

3:18 min

Eliminating passwords using Azure managed identities

Markus Möller · World Congress 2021

Videos

See all

Related articles

See all