Information Security Identity & Access Management Engineer

Johnson Financial Group
United States
14 days ago
Apply on diversityjobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Microsoft Windows Software as a Service CompTIA Security+ Cyber Security Information Systems Computer Networks Identity and Access Management Python (Programming Language) Linux System Administration Windows PowerShell Role-Based Access Control Azure Active Directory
+6 more
Zero Trust Network Access Runbook Session Management User Provisioning Software Customer Identity Access Management Information Technology

Job description

The Information Security Identity & Access Management (IAM) Engineer is responsible for engineering, implementing, and supporting enterprise identity and access capabilities that protect JFG systems and data through strong authentication, authorization, and access governance. Working under the direction of the Information Security Engineer & Operations Manager, this position focuses on Identity Lifecycle Management, Identity Governance & Administration (IGA), and Privileged Access Management (PAM) to ensure timely, appropriate, and auditable access aligned to business roles and the principle of least privilege. The engineer partners cross-functionally with IT, architecture, HR, and business stakeholders to deliver scalable identity solutions that enable secure business operations. Consistent with industry trends, this role requires a broad, cross-functional skillset across IAM, security architecture & engineering, and data protection, rather than deep specialization in a single domain. The role contributes to the design and continuous improvement of zero trust-aligned access controls, ensuring integration with cloud, on-prem, and customer identity platforms. This is an individual contributor role that may provide technical leadership and mentorship. Occasional off-hour and on-call support may be required. Less than 5% travel expected., * Design, implement, and maintain enterprise IAM solutions, including identity lifecycle, authentication, authorization, and federation

  • Engineer and operate Identity Governance & Administration (IGA) capabilities such as provisioning/deprovisioning, access certifications, and role-based access control (RBAC)
  • Implement and support Privileged Access Management (PAM) controls including vaulting, session management, and least privilege enforcement
  • Support both enterprise identity (EIAM) and customer identity (CIAM) solutions across cloud and hybrid environments
  • Operate and enhance user access reviews (UARs) and certification processes to ensure appropriate access and audit compliance
  • Maintain visibility and reporting on user access activity, entitlements, and privileged usage
  • Partner with Risk and Audit functions to support controls testing, evidence collection, and regulatory requirements
  • Collaborate with IT Architects to design scalable IAM architectures aligned to modern zero trust principles
  • Integrate IAM capabilities with enterprise platforms (e.g., Microsoft Entra ID, SaaS applications, on-prem AD)
  • Contribute to security architecture & engineering initiatives, ensuring identity is embedded into system designs
  • Build and maintain automation for identity provisioning workflows, access enforcement, and reporting
  • Develop and maintain runbooks, workflows, and standard operating procedures
  • Drive continuous improvement through process optimization and measurable efficiency gains
  • Partner with HR, IT, application owners, and business units to align access models to job functions (“need-to-know”)
  • Act as a technical SME for IAM, translating security requirements into business-aligned solutions
  • Demonstrate strong communication and stakeholder management skills, enabling adoption across non-technical teams
  • Support and deliver IAM operational metrics, dashboards, and KPIs
  • Contribute to program maturity improvements across Identity & Access Management services
  • Provide technical leadership and mentorship to junior engineers or project team members
  • Lead IAM-related initiatives or workstreams to ensure delivery of InfoSec services

Requirements

  • Bachelor’s Degree in Information Security, Cybersecurity, Computer Science, Information Systems, or related field
  • 5-8 years’ experience
  • Cybersecurity Certifications preferred: Microsoft AZ-500, Security+, SSCP, JFG InfoSec Platforms
  • Experience with Python and PowerShell scripting languages for automation preferred
  • Works without supervision
  • Expert report writing and communication skills
  • Strong collaboration skills to work with other IS and IT engineers and business partners to solve problems effectively
  • Has strong understanding of Information Security platforms at JFG
  • Has strong understanding of common Information Security controls and frameworks
  • Has a strong understanding of networking concepts and technologies
  • Has a strong understanding of Windows and Linux environments
  • Can operate beyond instruction and guidelines where needed
  • Has strong understanding of both cybersecurity industry and financial services industry allowing them to revise existing processes/standards or establish new processes/standards as needed
  • Takes complete ownership of all RunBook, support, and process documentation for their service portfolio

For Senior Level:

  • 8+ years of experience for a Senior level role
  • Ability to guide work of other team members
  • Expert level understanding of security controls
  • Ability to identify operational capability gaps and establish roadmaps / strategies

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on diversityjobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

1:24 min

Installing premium packages using the Store CLI

Noraa Junker Noraa Junker · Europe 2026 Virtual

Videos

See all

Related articles

See all