Senior Engineer - Identity & Access Management (Remote)

United Continental Holdings, Inc.
Chicago, IL, United States
3 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$112,480.0 - $146,540.0
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Artificial Intelligence User Authentication Cloud Computing Cyber Security System Configuration Data Visualization Multi-Factor Authentication Identity and Access Management Kerberos (Protocol) OAuth OpenID
+13 more
Systems Development Life Cycle Azure Active Directory Cloud Services Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Software Engineering Systems Integration Oracle Access Manager Cloud Platform System Okta Api Gateway Cyber Warfare

Job description

The Senior Identity & Access Management (IAM) Engineer’s primary responsibility is to implement and support the integration of authentication and authorization protocols and provide overall infrastructure support aligned with CDR (Cybersecurity and Digital Risk) security principles and policies protecting data and reducing risk for the United Workforce., The IAM Senior Engineer will be focused on the implementation and support of modern Enterprise (Workforce) IAM systems. The Senior Engineer will work closely with cross-organizational development teams, architects, analysts, and consumers of IAM authentication and authorization services. They serve as a key contact within IAM responsible for the integration of secure identity solutions during the product lifecycle., The IAM Security Engineer requires a deep understanding of identity and access management principles, protocols, and best practices as well as experience implementing and managing IAM related automation, integrations, and orchestration. This is a senior-level position that will execute the implementation of designs and requirements provided by IAM architects and analysts and ensures that IAM capabilities and services are successfully integrated within systems across the organization while also providing ongoing support and maintenance as needed for IAM processes and technology.

  • Technically implement, manage and provide support for the administration of IAM on-premise and cloud-based platforms and solutions used for workforce identity and access management (authentication and authorization) through an SDLC (software development lifecycle)
  • Provide technical expertise in designing, configuring, and troubleshooting IAM solutions through robust engineering solutions that enhance performance, security, and reliability; conduct detailed root cause analysis of technical problems and implement solutions to prevent recurrences
  • Develop, enhance, test, document and manage IAM automation processes to support integrations and improve business access management experiences through simplification and automation
  • Architect, develop, and implement accelerators and enablers for automating IAM processes that drive efficiency and accuracy
  • Identify opportunities for process optimization and execute strategies to improve service delivery and scalability
  • Ensure IAM technical solutions adhere to regulatory, compliance, and internal requirements
  • Maintain IAM technical documentation, policies, standards, and procedures. Work with architects, security and technology teams to document best practices related to authentication and authorization patterns and decision criteria for the use of authentication and authorization protocols
  • Create or partner to create data visualizations supporting trend analysis to proactively address IAM challenges
  • Ensure IAM security is aligned with the overall Cyber Defense and Risk security strategy to reduce risks to the organization
  • Collaborate with other IAM team members to provide guidance on IAM related matters and provide input to solution design and system support for partner systems and integrations
  • Collaborate across the organization with development teams, cyber defense teams, and other IAM service consumers to enforce consistent authentication and authorization mechanisms and extend IAM control solutions across platforms and technology assets
  • Provide guidance on the implementation and usage of IAM capabilities in enterprise systems

Requirements

  • Bachelor’s degree required, STEM field preferred
  • 3+ years of related experience
  • In depth understanding of Workforce Identity & Access Management, Single Sign-On, and Multi-Factor Authentication (MFA)
  • Proven experience in performing SSO application onboarding and MFA integrations with cloud-based identity providers
  • Possess deep understanding and practical knowledge of modern authentication concepts, protocols and standards such as FIDO2, SAML, OAuth, OIDC, Kerberos and Federation
  • In-depth understanding of Passwordless authentication, API Gateways, developing SCIM connectors, and integrating with identity platforms such as Ping Identity, Okta, MS Entra, or ForgeRock
  • Strong knowledge of identity proofing and identity verification technologies, adaptive risk-based authorization, and Zero Trust concepts
  • Strong knowledge of security frameworks, organizational security standards and security and governance policy frameworks (example ISO, NIST, CSA Controls Matrix)
  • Expertise in modern software lifecycle development, Agile methodologies, and automated cloud infrastructure deployment
  • In-depth understanding of at least one of these area specific tools: Microsoft Entra, DUO, Oracle Access Manager, Okta, Auth0, Ping Identity
  • Strong written and verbal communication skills with the ability to effectively communicate concepts to technical and non-technical audiences as well as across levels of leadership, appropriately adapting style and language for the audience
  • Able to mentor junior talent across the team, engage in building and enhancing team culture, and influence without authority
  • Demonstrated attention to detail with qualitative and quantitative information
  • Strong pragmatic problem-solving skills with the ability to adapt quickly and independently to changes in scope and strategic direction
  • Must be legally authorized to work in the United States for any employer without sponsorship
  • Successful completion of interview required to meet job qualification
  • Reliable, punctual attendance is an essential function of the position

What will help you propel from the pack (Preferred Qualifications):

  • Master’s degree
  • Certifications like CISA, CISM, CISSP
  • 6+ years of related experience
  • Knowledge of compliance regulations (SOX, PCI, FAA, GDRP, PII)
  • Prior experience with large-scale Identity transformation projects, migrating from on-premise to cloud-based services, and/or implementing Passwordless technologies for large organizations
  • Prior experience supporting Identity and Access management functions within the airline or transportation industry
  • Experience with AI/ML, building algorithms, or technical design and implementation of automated solutions

Benefits & conditions

The base pay range for this role is $112,480.00 to $146,540.00.

The base salary range/hourly rate listed is dependent on job-related, factors such as experience, education, and skills. This position is also eligible for bonus and/or long-term incentive compensation awards.

You may be eligible for the following competitive benefits: medical, dental, vision, life, accident & disability, parental leave, employee assistance program, commuter, paid holidays, paid time off, 401(k) and flight privileges.

About the company

Achieving our goals starts with supporting yours. Grow your career, access top-tier health and wellness benefits, build lasting connections with your team and our customers, and travel the world using our extensive route network.

Come join us to create what’s next. Let’s define tomorrow, together., Connecting People. Uniting the World. There’s never been a more exciting time to join United Airlines! As a global company that operates in hundreds of locations around the world - with millions of customers and tens of thousands of employees - we have a unique responsibility to uplift and provide opportunities in the places where we work, live and fly.

We’re on a path to becoming the best airline in aviation history. Join our Cybersecurity and Digital Risk (CDR) team to help lead the industry in cyber safety, security and resilience. United’s CDR team plays a critical role in protecting our operations by enabling secure and resilient systems, managing threats and vulnerabilities, and ensuring swift response and recovery. Our mission is to seamlessly embed cybersecurity and digital risk management into every aspect of our business. We help drive progress and growth through trusted digital solutions, safeguarding assets and empowering our team, all while promoting a cyber-safe and secure environment that supports resilient airline operations.

United offers a competitive benefits package aimed at keeping you happy, healthy, and well-traveled. From employee-run “Business Resource Group” communities to world-class benefits like parental leave, 401(k), and privileges like space-available travel, United is truly a one-of-a-kind place to work. Are you ready to travel the world and help us keep our airline cyber safe? Apply today!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:24 min

Securing cloud deployments by utilizing OpenID Connect mapping

Chris Ayers · LIVE

Videos

See all

Related articles

See all