> Markdown version of [/jobs/ext/3608881-senior-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/3608881-senior-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior IT Security Analyst - **Company:** Advanced - **Location:** Denver, CO, United States - **Experience:** Expert - **Salary:** $110,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Application Programming Interfaces (APIs), Amazon Web Services, Application Integration Architecture, User Authentication, Microsoft Azure, Business Software, Software as a Service, Cloud Computing, Cloud Computing Security, Cyber Security, Software Design Patterns, Multi-Factor Authentication, Identity and Access Management, Intrusion Detection and Prevention, Information Systems Security Architecture Professional, Python (Programming Language), Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, Windows PowerShell, Role-Based Access Control, Openid Connect, Cloud Services, Zero Trust Network Access, Runbook, Security Assertion Markup Language (SAML), Single Sign-On, Software Engineering, SQL Databases, Systems Integration, User Provisioning Software, Google Cloud, Enterprise Software Applications, Cloud Platform System, Microsoft Power Automate, Customer Identity Access Management, Information Technology, CIS Benchmarks - **Published:** October 7, 2026 - **Apply:** https://www.denverjobsite.com/job.asp?id=3423480435&tx=KJ909PFK&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Advanced knowledge of Identity and Access Management (IAM) principles, including Identity Governance and Administration (IGA), Privileged Access Management (PAM), authentication, authorization, and identity lifecycle management. * Strong understanding of modern identity security concepts, including Zero Trust, least privilege, adaptive authentication, risk-based access controls, continuous access evaluation, and identity threat detection and response (ITDR). * Advanced knowledge of on-premise, cloud, and hybrid identity environments. * Strong understanding of authentication, federation, and directory protocols, including SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), LDAP, Kerberos, RADIUS, and SCIM. * Knowledge of access control frameworks, including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC). * Strong analytical and problem-solving skills, with the ability to diagnose and resolve complex technical issues. * Excellent verbal and written communication skills, including the ability to communicate technical concepts to both technical and non-technical audiences. * Strong organizational and project leadership skills with the ability to manage multiple priorities and initiatives simultaneously. * Demonstrated ability to influence stakeholders and collaborate effectively across cross-functional teams. * Ability to develop and maintain technical documentation, standards, procedures, and operational runbooks., * Knowledge of regulatory and compliance frameworks such as SOX, NIST, ISO 27001, and CIS Controls. * Familiarity with IT and Security platforms or applications within Customer Relationship Management (CRM), Zero Trust, and other enterprise driven product families. * Understanding of cloud security architectures within Azure, AWS, and Google Cloud Platform environments. EXPERIENCE: Required Experience * Seven (7) or more years of experience in Identity and Access Management, Cybersecurity Engineering, Information Security, or a related technical discipline. * Five (5) or more years of experience administering and supporting enterprise IAM platforms and access management processes. * Three (3) or more years of experience supporting on-premise, cloud, and/or hybrid identity directory services in a medium to large enterprise environment. * Experience implementing and supporting Identity Governance and Administration (IGA) and Privileged Access Management (PAM) solutions. * Experience administering enterprise authentication solutions, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), federation services, and conditional access policies. * Experience integrating identity platforms with cloud providers, enterprise applications, and SaaS solutions. * Experience designing and implementing user provisioning, deprovisioning, access reviews, role management, and access certification processes. * Experience developing automation solutions using PowerShell, Python, SQL, Power Automate, or similar technologies. * Experience leading technical projects from planning and design through implementation and operational support. * Experience collaborating with Information Security, Infrastructure, Application Development, Audit, and business stakeholders to deliver IAM solutions. Preferred Experience * Experience with IAM platforms and technologies. * Experience supporting global or manufacturing organizations. * Experience supporting regulatory audits, compliance initiatives, and remediation activities. * Experience implementing Zero Trust, Privileged Access Management, or enterprise IAM modernization programs. EDUCATION: Required * Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field; or an equivalent combination of education, training, and experience. Preferred Certifications * Microsoft Certified: Identity and Access Administrator Associate (SC-300) * Microsoft Certified: Cybersecurity Architect Expert (SC-100) * Certified Information Systems Security Professional (CISSP) * Certified Identity and Access Manager (CIAM) * Certified Identity Management Professional (CIMP) * Additional cloud, cybersecurity, or identity management certifications relevant to the role. ## Description The IT Security Analyst III plays a critical role in shaping the future of identity security at Advanced Energy. This position offers the opportunity to lead enterprise-wide IAM initiatives, influence Zero Trust strategy, and modernize identity controls across global cloud and SaaS environments. Working alongside security, infrastructure, and business leaders, you'll drive solutions that protect the business while enabling growth and innovation. This is an opportunity to make a visible impact in a global technology organization., IAM Architecture & Engineering * Design, implement, and maintain enterprise Identity and Access Management (IAM) solutions supporting workforce, privileged, and application identities. * Lead the integration, administration, and optimization of IAM platforms. * Develop IAM architecture standards, design patterns, and technical roadmaps that align with business and security objectives. * Establish scalable identity solutions that support cloud-first and hybrid environments. * Evaluate emerging IAM technologies and industry best practices to strengthen the organization's security posture. Identity Governance & Access Management * Lead initiatives related to Identity Governance and Administration (IGA), Access Management, Privileged Access Management (PAM), Identity Threat Detection and Response (ITDR), and Zero Trust security programs. * Design and implement identity lifecycle management processes, including provisioning, deprovisioning, role management, and access certification activities. * Develop and maintain authorization models including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC). * Support segregation of duties (SoD), least privilege, just-in-time access, and privileged account governance programs. Authentication & Directory Services * Administer and enhance enterprise authentication services, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), passwordless authentication, federation, and conditional access controls. * Manage and support on-premise, cloud, and hybrid identity environments. * Configure Identity Protection policies, Conditional Access policies, risk-based authentication controls, and adaptive access capabilities. * Design and maintain integrations between identity platforms, cloud services, and business applications through APIs, provisioning connectors, and automation frameworks. Cloud & Application Integration * Implement secure identity integrations with enterprise applications, SaaS platforms, and cloud environments including Microsoft Azure, AWS, and Google Cloud Platform. * Partner with application owners and development teams to ensure secure authentication and authorization controls are implemented consistently across platforms. * Support application onboarding, federation, provisioning, and access governance activities. Automation & Operational Excellence * Develop automation solutions using PowerShell, Python, SQL, Power Automate, or similar technologies to improve operational efficiency and reduce manual effort * Create and maintain technical documentation, architecture diagrams, operational procedures, and support runbooks. * Recommend and implement process improvements that enhance security, user experience, and operational effectiveness. Leadership & Collaboration * Serve as a senior IAM subject matter expert and trusted advisor to Information Security, IT, Audit, Compliance, and business stakeholders. * Lead technical projects from planning and design through deployment and operational transition. * Mentor junior employees and provide technical guidance across IAM-related initiatives. * Support audit, compliance, and regulatory activities by implementing appropriate controls and providing required evidence. Additional Duties * Participate in identity-related incident response activities and root cause investigations. * Stay informed of emerging IAM threats, technologies, and industry trends. * Perform other duties as assigned.