IAM Security Engineer

BorgWarner
Auburn Hills, MI, United States
9 days ago
Apply on jobs.mitalent.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$92,800.0 - $127,600.0
Working hours
Regular working hours

Tech stack

Active Directory Automation of Tests Business Software Cloud Computing Cyber Security Computer Engineering Desktop Computing Domain Name System (DNS) Identity and Access Management Issue Tracking Systems Information Technology Operations Windows Domain
+8 more
OAuth OpenID Windows PowerShell Role-Based Access Control Security Assertion Markup Language (SAML) Systems Integration Tisax Information Technology

Job description

An Identity and Access Management (IAM) Security Engineer designs, implements, and maintains systems to ensure that only authorized users have access to enterprise resources at the right time through strong processes, well-managed IAM tools, and consistent oversight. This role will serve as an agent of identity security, leading access review processes, improving RBAC models, optimizing IAM platforms, and partnering with teams across the business to drive secure identity practices. This highly technical role requires bridging security architecture with daily IT operations and development., IAM Governance & Oversight

  • Lead scheduled and ad-hoc access reviews for human and non-human identities, applications, groups, cloud resources, and privileged accounts.
  • Create, maintain and enforce IAM governance standards, policies, and procedures.
  • Monitor identity controls for audit support and compliance with internal and external frameworks.
  • Drive remediation efforts for access control gaps.
  • Assist projects as an advisor regarding AD and Entra.

Role-Based Access Control (RBAC) & Lifecycle Management

  • Design and refine RBAC models, access tiers, and least-privilege principles with internal stakeholders.
  • Work with application owners to map permissions and standardize access roles.
  • Support user M365 team in maintaining lifecycle processes (Joiner/Mover/Leaver) and automated provisioning workflows where available.
  • Lead efforts to identify, design, and deploy areas of automation within the RBAC and access lifecycle process.
  • Manage AD users, computers/assets and groups.
  • Manage Entra users, computers/assets and groups.
  • Support user and computer migrations during acquisitions and divestitures.

IAM Tool Ownership & Administration

  • Serve as primary owner/admin for one or more IAM platforms.
  • Manage configuration, integrations, workflows, AD and Entra platforms.
  • Coordinate enhancements, upgrades, and platform improvements.
  • Partner with application teams to onboard securely new systems into the IAM ecosystem.
  • Document and define provisioning rules and ensure consistent access patterns.
  • Provide technical support and guidance to business end-users and business application support team members.

Engineering & Cloud Infrastructure Support

  • Lead MFA/Passkey implementation and support SSO integrations and ensure alignment with security requirements.
  • Create and manage SSO applications in Entra using knowledge of SAML and Oauth.
  • Deploy and manage Active Directory Domain Controllers.
  • Deploy and manage DNS servers.
  • Create and manage internal/external certificates
  • Lead Automation of the digital certification process

Security Operations Support

  • Review and approve access requests for elevated or sensitive roles.
  • Help investigate access-related security incidents and identity threats.
  • Provide security guidance to internal teams for identity best practices.

Requirements

Required: A bachelor’s degree in cybersecurity, computer science, computer engineering, or related field. Equivalent professional experience may be considered in lieu of formal degree, * 3-5 years experience in cybersecurity, IT, or similar discipline, with at least 2 years of hands-on identity security experience.

  • 3+ years of hands-on experience administering Active Directory, including a strong understanding of its core components and services.
  • Hands-on experience with one or more IAM/IAG platforms.
  • Working knowledge of access governance, RBAC, provisioning, and directory services.
  • Experience onboarding applications into IAM platforms.
  • Understanding of SSO/MFA technologies, SAML/OIDC/OAuth protocols.
  • Familiarity with compliance frameworks: NIST, TISAX, SOX, ISO 27001.
  • Experience setting up a new domain from start to finish.
  • Experience working with DNS and common DNS record types.
  • Strong understanding of certificates and certificate creation.

PREFERRED KNOWLEDGE, SKILLS & ABILITIES

  • Certifications such as: CISSP, SC-300, CCSP, Security+, etc., highly preferred. - Microsoft certifications
  • Prior ownership of an IAM tool or identity governance program.
  • Hands-on knowledge of PAM, secrets management, or identity threat detection.
  • Portfolio examples (RBAC matrix, IAM workflows, automation scripts, etc.).
  • Familiarity with PowerShell scripting.
  • Excellent analytical and problem-solving skills.
  • Ability to work independently and collaboratively in a team environment.
  • Excellent communication and interpersonal skills.
  • Experience working in a ticket tracking system.
  • Self- motivated, reliable and able to prioritize and work independently.
  • Aptitude for understanding and troubleshooting technical problems.

About the company

BorgWarner is a global product leader in delivering innovative and sustainable mobility solutions for the vehicle market. We are a company of innovators and independent thinkers that brings together talented employees, meaningful work, and amazing technology in a unique environment. At BorgWarner we constantly work towards our vision of a clean and energy-efficient world.

Our Culture

We believe health and safety of our employees are a top priority, we care about our local communities and the global environment. BorgWarner promotes and nurtures a diverse and inclusive environment, honors integrity, strives for excellence, commits to responsibility for our communities and the environment, and builds on the power of collaboration.

Career Opportunities

We manage talent as seriously as we manage our businesses and encourage you to learn about our proud history, strong culture, technologies and future vision. We offer a strong local presence and interesting global opportunities. Start your future with BorgWarner now!, BorgWarner is a global product leader in delivering innovative and sustainable mobility solutions. We are a company of innovators and independent thinkers that brings together talented employees, meaningful work and amazing technology in a unique environment. At BorgWarner we constantly work towards our vision of a clean and energy-efficient world.

Our Culture

BorgWarner promotes and nurtures a diverse and inclusive environment, honors integrity, strives for excellence, commits to responsibility for our communities and the environment, and builds on the power of collaboration. We believe the health and safety of our employees are a top priority.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on jobs.mitalent.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:15 min

Overcoming cultural resistance to achieve international security compliance standards

Ali Yazdani Ali Yazdani · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all