- Company Name
- Franklin Fitch
- Job Title
- IAM Engineer
- Job Description
-
Job title: IAM Engineer
Role Summary: Provide end‑to‑end design, implementation, and maintenance of Identity & Access Management (IAM) solutions for a portfolio of enterprise clients. Responsible for SSO, MFA, RBAC, and policy enforcement across on‑prem, cloud, and hybrid environments, while ensuring compliance and security best practices.
Expected Outcomes: Deliver scalable IAM architectures, automate provisioning/de‑provisioning workflows, perform security assessments, and support operational incident response. Achieve high‑quality IAM implementations within defined project scopes and timelines.
Key Responsibilities:
- Design and implement IAM solutions (SSO, MFA, RBAC) using industry‑standard protocols (SAML, OAuth, OpenID Connect, PKI).
- Manage and integrate IAM tools (Okta, Ping, SailPoint, Azure AD) across applications, infrastructure, and cloud platforms (AWS, Azure, GCP).
- Develop and enforce IAM policies, including compliance with regulatory and security standards.
- Lead user lifecycle processes: provisioning, de‑provisioning, access reviews, and certification.
- Conduct IAM security assessments; troubleshoot and resolve complex IAM issues.
- Collaborate with IT, security, and business stakeholders to define and deliver IAM requirements.
- Stay current with IAM trends, best practices, and emerging technologies.
Required Skills:
- 4–8 years of hands‑on IAM experience (solution design and implementation).
- In‑depth knowledge of LDAP, Active Directory, SAML, OAuth, OpenID Connect, PKI.
- Proficiency with IAM platforms: Okta, Ping Identity, SailPoint, Azure AD.
- Scripting expertise (PowerShell, Python, or Bash) for automation and integration.
- Experience with cloud IAM services (AWS IAM, Azure IAM, GCP IAM).
- Strong problem‑solving, communication, and project coordination abilities.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Technology, or equivalent experience.
- Preferred certifications: CISSP, CIAM, or equivalent.
- Preferred experience with PAM and Zero Trust models.