> Markdown version of [/jobs/ext/3553726-senior-it-security-engineer-identity-customer-access-management](https://www.wearedevelopers.com/jobs/ext/3553726-senior-it-security-engineer-identity-customer-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior IT Security Engineer (Identity & Customer Access Management) - **Company:** Bitco Insurance Companies - **Location:** Davenport, IA, United States - **Experience:** Expert - **Salary:** $150,000.0 - $200,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Microsoft Windows, Active Directory, Amazon Web Services, Application Integration Architecture, User Authentication, Microsoft Azure, Business Software, Software as a Service, Cloud Computing Security, Collaborative Software, Cyber Security, Information Systems, Data Warehousing, Monitoring of Systems, Identity and Access Management, Information Management, Information Technology Operations, Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Role-Based Access Control, Azure Active Directory, Zero Trust Network Access, Salesforce.Com, Security Assertion Markup Language (SAML), Data Logging, Enterprise Software Applications, System Availability, Technical Debt, Microsoft InTune, Customer Identity Access Management, Information Technology, SailPoint, User Accounts - **Published:** October 2, 2026 - **Apply:** https://www.careerjet.com/job/usddbbf9c965f56462f0da40fc69cef153/eaa ## About the Role * Bachelor's degree in Information Technology, Computer Science, Business Information Systems, or related field; equivalent work experience and relevant certifications may be considered * Minimum four years of experience supporting enterprise technology environments in a Service Desk, Client Services, Technical Support, or IT Operations role; insurance or financial services experience preferred * Demonstrated experience supporting business applications, enterprise software platforms, and employee technology services within a complex business environment * Proven experience troubleshooting endpoint technologies, operating systems, collaboration platforms, Microsoft 365 technologies, mobile devices, business applications, and workplace technologies * Experience supporting identity and access management solutions including Active Directory, Microsoft Entra ID, Intune, MDM platforms, and enterprise authentication technologies * Demonstrated ability to independently prioritize workload, manage multiple concurrent requests, and Bachelor's Degree in Computer Science, Information Systems, or Business Administration with Technology as a core component preferred * Certificates pertaining to IAM/CIAM and access controls preferred or related work experience * At least 4-7 years' experience in IAM/CIAM technology and access governance. * Hands-on experience with IAM/CIAM platforms such as Microsoft Azure Active Directory, One Identity Manager, or similar. * Experience in organizations experiences large modernization changes, legacy/Technical debt retirement, and SaaS platform (Duck Creek, Kalepa, SNOW, SFDC, EDW) implementations * Familiarity with the following IT Security concepts is preferred: * IT security risk and mitigation strategies * Security frameworks * Regulatory guidelines * IT security logging and monitoring * IT security monitoring tools * Controls, best practices, and security protocols * Operating systems, networks, and security fundamentals * Threat knowledge * Familiarity with the following Identity Technologies * Microsoft Entra ID (Azure AD) * SailPoint, One Identity, Saviynt, or equivalent * Active Directory * SCIM * SAML * OAuth 2.0 * OIDC * LDAP * Security Concepts * Zero Trust Architecture * PAM * RBAC and ABAC * IGA * Authentication and Federation * Cloud Security * Azure * AWS * SaaS Identity Integration * Demonstrated ability to manage multiple priorities and projects * Critical thinking and problem-solving skills * Excellent oral and written communication skills * Preferred Certifications * CISSP * Security+ * SC-300 (Microsoft Identity and Access Administrator) * SC-100 (Microsoft Cybersecurity Architect) * Certified Identity and Access Manager (CIAM) * SailPoint certifications ## Description As part of the Cybersecurity team, you will help mature OR Bitco's Identity and Customer Identity and Access Management (IAM/CIAM) capabilities while supporting the organization's broader cybersecurity and regulatory objectives. In this role, you will focus on strengthening identity security through effective access policies, role definitions, provisioning and deprovisioning processes, access reviews, authentication and authorization controls, monitoring, and audit evidence. The Senior IT Security Engineer will resolve complex access and identity-related issues, analyze security and compliance requirements, and implement monitor controls that support OR Bitco's cybersecurity framework and risk management objectives. You'll apply principles aligned with the NIST Cybersecurity Framework (CSF) and applicable regulatory requirements, including the New York Department of Financial Services (NYDFS) Cybersecurity Regulation, with particular emphasis on governance, risk identification, protection of systems and data, detection of anomalous activity, response, and recovery. In this role, you will be partnered with Cybersecurity, IT, Internal Audit, business stakeholders, and external auditors to ensure identity and security controls are appropriately designed, implemented, documented, monitored, and supported by reliable evidence. Responsibilities will include responding to audit and compliance requests, identifying control gaps, supporting remediation activities, improving role-based access practices, and helping establish sustainable IAM/CIAM processes. As an elevated technical role, the Senior IT Security Engineer will help build the future state of IAM/CIAM at OR Bitco, balancing security, regulatory requirements, operational efficiency, and customer experience. The ideal candidate in this position will provide excellent customer service while troubleshooting access issues and ensuring users have the appropriate access necessary to perform their roles securely and effectively. Primary Responsibilities: * Reviews, modifies, and administers identity lifecycle management processes, ensuring timely and accurate provisioning/de-provisioning of user accounts and access rights. * Collaborates with cross-functional teams to integrate IAM/CIAM solutions with enterprise applications, directories, and infrastructure components. * Facilitates regular access reviews and audits to ensure compliance with regulatory requirements and internal security policies. * Conducts identity risk assessments and evaluates business impact related to user, privileged, and customer access to ensure alignment with least privilege and Zero Trust principles. * Implements and matures role-based and attribute-based access control models (RBAC/ABAC) across enterprise platforms while enforcing least privilege access principles. * Maintains understanding of business processes to aid in managing enterprise identity and access requirements. * Troubleshoots IAM/CIAM- related issues, investigates root causes, and implements corrective actions to maintain system availability and integrity. * Develops and maintains documentation, procedures, and guidelines related to IAM/CIAM operations and processes. * Provides IAM/CIAM technical guidance and mentorship members of the Operations team. * Facilitates IAM/CIAM functionality discussions with customers to increase awareness in current role and access definitions. * Collaborates with business stakeholders, application owners, and product teams to define, document, and maintain access models, entitlement structures, and role definitions. * Work directly with application and systems owners to define and document application integration requirements with Organizational Information Management * Leads evaluation, selection, implementation, and continuous improvement of IAM, CIAM, PAM, authentication, and access governance technologies. * Maintains expertise in security technologies, regulatory requirements, and industry best practices to ensure ongoing effectiveness of IAM controls. * Participates in recommending and reviewing changes to internal security related practices/documentation to ensure they are appropriate and current with business requirements and IAM/CIAM best practices. Implements or streamlines new practices or procedures where necessary and updates, facilitates Management review, and company adoption. * Participates in and maintains the process for scheduled and unscheduled audits of information technology related security practices and procedures, maintaining a record of the results, and owns the process of reporting and closing any unresolved audit findings to IT and Business management. * Supports modern authentication controls including MFA, password-less authentication, federation, SSO, conditional access, identity proofing, and account recovery processes. * Performs other duties as assigned, Eaton's AER MSD Mission System Division division is currently seeking a Supplier Quality Engineer. This is an onsite role, working M-F Daylight hours. The expected annual salary … + 19 hours ago ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Break the Chain: Decentralized solutions for today’s Web2.0 privacy problems](https://www.wearedevelopers.com/videos/928-break-the-chain-decentralized-solutions-for-today-s-web2-0-privacy-problems) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [Best Companies to Work For in Berlin: Top 14 Companies in 2023 ](https://www.wearedevelopers.com/magazine/188-best-companies-to-work-for-in-berlin-top-14-companies-in-2023)