Cybersecurity Engineer (IDAM)

Moody's Corporation
Charlotte, NC, United States
8 days ago
Apply on find.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$116,500.0 - $192,300.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Artificial Intelligence Cyber Security Multi-Factor Authentication Identity and Access Management OpenID Azure Active Directory Phishing Security Assertion Markup Language (SAML) Single Sign-On Enterprise Software Applications IT General Controls (ITGC)
+2 more
Okta Information Technology

Job description

This role supports Identity and Access Management initiatives end to end - including access management design, engineering, configuration, operations, audit evidence, and Cloud Identity and Access Management engineering and operations.

  • Own end-to-end engineering, configuration, and administration of workforce identities in Moody’s Okta tenants, including the FedRAMP workforce, non-production, and Customer Identity and Access Management tenants, applying established standards and requirements
  • Design and maintain Single Sign-On and application integrations using SAML, OIDC, and SCIM across enterprise applications
  • Engineer authentication and multi-factor authentication policy to enforce a phishing-resistant assurance level
  • Own identity lifecycle (joiner/mover/leaver) and provisioning workflows, including automation via Okta Workflows
  • Monitor and respond to identity risk signals and threats
  • Design and administer groups, custom admin roles, and least-privilege access models
  • Produce and maintain SOX and FedRAMP audit evidence, partnering with Cybersecurity Governance and Audit teams
  • Provide engineering coverage for Microsoft Entra ID, including Conditional Access policy design and hybrid identity management configurations
  • Support hybrid identity operations and coordinate with the Entra/Active Directory engineering owner on shared administrative responsibilities per the team’s admin-ownership model

About the Team

The Identity Engineering team designs, builds, and operates the identity and access management platforms that secure access across Moody’s enterprise and regulated environments. By joining our team, you will help extend enterprise-grade identity engineering practices into a federal compliance boundary, working on phishing-resistant authentication, identity governance, and audit-ready operations for a global financial services firm. As Moody’s continues to advance its AI capabilities, our team plays a critical role in delivering the secure, trusted identity foundations that enable innovation, automation, and responsible AI adoption across the organization.

Requirements

  • 3+ years of hands-on access management engineering experience, including workforce identity configuration, administration, and lifecycle management (Okta preferred)
  • Strong depth in core Identity and Access Management and Single Sign-On protocols and application integration patterns - SAML, OIDC, and SCIM
  • Experience engineering authentication and multi-factor authentication policy using phishing-resistant methods
  • Hands-on experience with identity lifecycle and provisioning automation
  • Experience operating in regulated, audited environments (SOX/ITGC, FedRAMP, or equivalent), including producing audit evidence and control documentation
  • Working knowledge of identity governance concepts - access requests, certifications, separation of duties; Okta Identity Governance experience is preferred
  • Familiarity with Microsoft Entra ID administration, including Conditional Access policy engineering and hybrid identity management, is preferred
  • Strong written communication skills for producing audit-ready documentation and evidence packages
  • Ability to independently lead end-to-end engineering work from requirements through operational support
  • Demonstrated proficiency in artificial intelligence concepts, with hands-on experience using AI tools to streamline workflows and enhance operational efficiency. Proven ability to implement AI-powered solutions to solve business challenges. Demonstrates a growing awareness of AI risk management and a commitment to responsible and ethical AI use., * Bachelor’s degree or equivalent qualification in Computer Science, Information Technology, Cybersecurity, Engineering, or a related field
  • Advanced technical certifications preferred, such as Okta Certified Administrator/Professional (Consultant a plus), Microsoft Certified: Identity and Access Administrator (SC-300), CISSP, or equivalent identity/security certifications
  • Prior FedRAMP or US federal identity/compliance experience preferred

Benefits & conditions

For US-based roles only: the anticipated hiring base salary range for this position is $116,500.00 - $192,300.00, depending on factors such as experience, education, level, skills, and location. This range is based on a full-time position. In addition to base salary, this role is eligible for incentive compensation. Moody’s also offers a competitive benefits package, including not but limited to medical, dental, vision, parental leave, paid time off, a 401(k) plan with employee and company contribution opportunities, life, disability, and accident insurance, a discounted employee stock purchase plan, and tuition reimbursement.

About the company

hackajob is collaborating with Moody’s Corporation to connect them with exceptional professionals for this role.

At Moody’s, we unite the brightest minds to turn today’s risks into tomorrow’s opportunities. We do this by striving to create an inclusive environment where everyone feels welcome to be who they are-with the freedom to exchange ideas, think innovatively, and listen to each other and customers in meaningful ways. Moody’s is transforming how the world sees risk. As a global leader in ratings and integrated risk assessment, we’re advancing AI to move from insight to action-enabling intelligence that not only understands complexity but responds to it. We decode risk to unlock opportunity, helping our clients navigate uncertainty with clarity, speed, and confidence.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on find.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:01 min

Role of a developer advocate in identity and security

Ramona Schwering Ramona Schwering · Coffee With Developers

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · World Congress 2026 Europe

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

Videos

See all

Related articles

See all