> Markdown version of [/jobs/ext/3005706-identity-governance-engineer](https://www.wearedevelopers.com/jobs/ext/3005706-identity-governance-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Identity Governance Engineer - **Company:** Job Impulse - **Location:** Redondo Beach, CA, United States - **Experience:** Experienced - **Salary:** $140,000.0 - $180,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, IEEE 802.1X, Microsoft Windows, Active Directory, Application Programming Interfaces (APIs), Amazon Web Services, User Authentication, Microsoft Azure, Microsoft Online Services, Software as a Service, Cyber Security, Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), OAuth, OpenID, Public Key Infrastructure, X.509, Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Security Information and Event Management, Enterprise Software Applications, Software Troubleshooting, Restful APIs - **Published:** September 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=e6fae2e4a56e70f2 ## About the Role * 5+ years of professional relative experience * Experience in Identity and Access Management, Identity Governance, Security Engineering, or a related discipline * Strong hands-on experience administering and engineering Microsoft Active Directory * Strong hands-on experience with Microsoft Entra ID / Azure AD and hybrid identity environments * Experience managing Conditional Access, MFA, authentication methods, and privileged access * Experience with identity lifecycle management, RBAC, least privilege, access reviews, and entitlement governance * Experience with enterprise authentication and federation technologies such as SAML, OAuth 2.0, OpenID Connect, and SCIM * Experience with scripting and automation using PowerShell and APIs. Working knowledge of PKI, X.509 certificates, and certificate-based authentication * Strong troubleshooting, documentation, and communication skills, * Experience with Microsoft Entra ID Governance, including Entitlement Management, Access Reviews, Lifecycle Workflows, and PIM * Experience with Entra certificate-based authentication, Active Directory certificate authentication, 802.1X/EAP-TLS, and user/device certificates * Experience with enterprise PAM technologies. Experience governing identity and access across Azure, AWS, and SaaS environments * Experience with B2B/external identity and non-human identity governance * Experience securing Active Directory and Entra ID against identity-based attacks * Experience with SIEM and identity security monitoring * Experience working in aerospace, defense, government contracting, or another regulated industry * Familiarity with CMMC, NIST SP 800-171, NIST SP 800-172, or NIST SP 800-53 ## Description As an Identity Governance Engineer at Impulse, you will maintain, enhance, and scale our enterprise identity and access management capabilities. This role will help ensure that users, devices, administrators, applications, and other identities have appropriate access throughout their lifecycle. The Identity Governance Engineer will work across Information Security, IT, Engineering, and business teams to strengthen identity governance, authentication, privileged access, directory services, and identity automation across corporate, cloud, and regulated environments. This is a hands-on engineering role for someone with strong experience in Active Directory, Microsoft Entra ID, identity governance, Conditional Access, and enterprise authentication technologies., * 3+ years of professional relative experience * Maintain and enhance enterprise Identity Governance and Administration (IGA) capabilities * Manage and improve identity lifecycle processes, including provisioning, deprovisioning, access changes, and periodic access reviews * Maintain and enhance Microsoft Active Directory and Microsoft Entra ID, including users, groups, roles, privileged identities, and hybrid identity integrations * Maintain and continuously improve Microsoft Entra Conditional Access, authentication methods, and identity security policies * Support and enhance certificate-based authentication for user and device identities * Maintain and improve Privileged Identity Management (PIM) and integrations with Privileged Access Management (PAM) capabilities * Maintain enterprise SSO, federation, and automated provisioning integrations using technologies such as SAML, OAuth/OIDC, and SCIM * Govern employee, contractor, partner, B2B, service account, application, and other non-human identities * Maintain and enhance identity governance across Microsoft 365, Azure, AWS, SaaS applications, and enterprise systems * Develop automation using technologies such as PowerShell, Microsoft Graph, REST APIs, and Python. Partner with Security Operations and Security Engineering to monitor, investigate, and remediate identity-related security risks. Maintain identity and access controls supporting organizational security and compliance requirements ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift)