> Markdown version of [/jobs/ext/511355-cybersecurity-engineer-iam](https://www.wearedevelopers.com/jobs/ext/511355-cybersecurity-engineer-iam). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Engineer - IAM - **Company:** Creative Artists Agency - **Location:** Nashville, TN, United States - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Java (Programming Language), JavaScript (Programming Language), Active Directory, Application Programming Interfaces (APIs), Software as a Service, Cloud Computing, Cyber Security, Computer Programming, Software Debugging, Human Resources Information System (HRIS), Identity and Access Management, Java Database Connectivity, Python (Programming Language), Microsoft SQL Server, OAuth, OpenID, Ping (Networking Utility), Windows PowerShell, Role-Based Access Control, Azure Active Directory, Cloud Services, Zero Trust Network Access, Security Assertion Markup Language (SAML), Single Sign-On, Software Deployment, Azure Automation, Okta, Microsoft Power Automate, Firewalls (Computer Science), Information Technology, Graphql, SailPoint, Restful APIs, Splunk, Network Server, Workday - **Published:** June 10, 2026 - **Apply:** https://caa.wd1.myworkdayjobs.com/Careers/job/Nashville-TN/Cybersecurity-Engineer---IAM_JR8897 ## About the Role * A minimum of 4 years in Information Technology, ideally with a focus on information security * A minimum of 2 years' experience in identity and access management or CyberSecurity * A Bachelor's or Master's Degree in a relevant field of work * Experience scripting in at least one of the following languages: PowerShell, Python, JavaScript * Experience with the deployment and support of Zero Trust Identity architecture and infastructure * A strong understanding of the fundamental operations of servers, operating systems, networks, firewalls, cloud applications, and infrastructure * Experience in automation and integration with SaaS applications * Understanding of OAuth, SAML and OpenID frameworks * Experience in lifecycle management and provisioning and de-provisioning * Knowledge of different MFA and compensating controls for identity * Knowledge of privilege identity management, privileged access management, and concepts of just in time provisioning, just enough access, and principal of least privilege Desired Capabilities * Set up and integrated Single Sign-On with various SaaS vendors * Account set-up and access management * Using and coding against REST APIs * Knowledge and experience of SCIM provisioning and integration * Worked closely with human resources and help desk support staff * Experience supporting and following identity framework or IDaaS * An understanding of the NIST framework and using a continuous improvement loop Desired Skills Azure AD, Active Directory, AD Connect, Azure Automation, Power Automate, SAML, OpenID, WS-Fed, SSO, SCIM, OAuth, Programming (java, python), PowerShell, RESTful APIs, MSSQL, OGNL, GraphQL, Workday, SailPoint, Okta, Ping Federate, PingID, Splunk, RBAC ## Description This is a hands-on security position working within the Information Security group and with the internal IT department at large. We are looking for candidates who have a passion for cyber security, identity management, and threat response. You will provide domain expertise to design and develop the capabilities of the identity and access management platform and the automation of application deployment pipelines to the platform. The Role In this role, you will be an essential partner and technical specialist for identity and access platform development and provide thought leadership on overall security and authentication across various workflows. You will be a key part of our efforts to enable the business needs in a highly collaborative organization. The environment is fast-paced and commonly on the leading edge of technology, including early adoption of various cloud services along with the challenges of integrating those services into our security practice. Responsibilities * Provide design, evaluation, analysis, testing, debugging and implementation of identity and access management programs to support the company's strategy * Maintain configuration, updates, and overall administration of the identity access management platform * Have a deep understanding of user lifecycle management; including provisioning/de-provisioning, access requests, user entitlements and audit & validations * Maintain standards for access management across the company and department * Collaborate with HRIS, IT service owners, and service desk to troubleshoot and fulfill identity related workflows * Knowledge of identity governance workflows with the concepts of attestation and auditing. * Integrate new applications into the identity access management platform through RESTful APIs, JDBC, flat file, or built-in connectors and configure aggregation, provisioning, and entitlements * Automate identity workflows and processes for lifecycle management, auditing, reporting, governance and self-service * Provide and maintain a RESTful identity API to downstream services * Play an active role in CAA's security incident response efforts, working to identify and mitigate information security threats ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)