> Markdown version of [/jobs/ext/2713080-identity-and-access-management-engineer](https://www.wearedevelopers.com/jobs/ext/2713080-identity-and-access-management-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity and Access Management Engineer - **Company:** InterSystems - **Location:** Boston, United States - **Experience:** Expert - **Salary:** $126,000.0 - $151,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Software as a Service, Data Centers, Identity and Access Management, Key Management, Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Role-Based Access Control, Openid Connect, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Systems Integration, Private Cloud Environment, Okta, Hashicorp, Intersystems - **Published:** September 4, 2026 - **Apply:** https://startup.jobs/senior-identity-and-access-management-engineer-intersystems-6905813 ## About the Role * 7+ years of experience in IAM or security engineering * Deep hands-on experience with Entra ID, Okta, and Active Directory * Strong understanding of identity protocols (SAML, OAuth, OIDC, LDAP) * Experience with privileged access management and secrets management (e.g., HashiCorp Vault) * Experience integrating IAM with cloud platforms and SaaS applications * Understanding of zero trust architecture and identity-driven security * Experience in regulated environments preferred * Relevant certifications encouraged (e.g., Microsoft Identity, Okta Certified, CISSP) ## Description Managed Services is responsible for the reliability, security, and compliance of InterSystems-hosted platforms across public cloud, private cloud, and datacenter environments. This includes enabling a consistent, secure operating model that meets stringent regulatory and customer requirements while supporting rapid innovation and service delivery., The Senior IAM Engineer is responsible for designing, implementing, and operating identity and access management platforms across enterprise and Managed Services environments, with a focus on standardization, scalability, and zero trust security models., * Design and implement IAM architectures across enterprise and cloud platforms * Lead standardization of identity platforms including Microsoft Entra ID, Okta, and Active Directory * Implement authentication and authorization solutions using SAML, OAuth2, and OpenID Connect * Define and enforce RBAC/ABAC models and access governance processes * Integrate IAM solutions with SaaS, cloud, and on-prem applications * Implement and manage secrets management solutions (e.g., HashiCorp Vault) * Support zero trust initiatives with identity as a control plane * Troubleshoot and resolve complex identity and access issues * Evaluate and implement AI-driven identity security capabilities to detect anomalous access patterns, privilege misuse, and identity-related threats. * Partner with security, governance, and platform teams to establish identity controls and access policies for AI applications, agents, and machine identities. * Leverage AI-assisted analytics and automation to improve access reviews, entitlement management, and identity lifecycle processes. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Break the Chain: Decentralized solutions for today’s Web2.0 privacy problems](https://www.wearedevelopers.com/videos/928-break-the-chain-decentralized-solutions-for-today-s-web2-0-privacy-problems) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity)