Send this job to your inbox!
This role requires candidates who are currently authorized to work in the U.S. without sponsorship, and C2C arrangements are not accepted. This role is fully on site.
The Lead Engineer, Identity and Access Management (IAM) plays a critical role in shaping and executing enterprise IAM strategy to ensure secure, scalable, and seamless access across systems, applications, and platforms. This role partners with cross-functional teams to design, implement, and enhance IAM solutions, oversee day-to-day operations, and drive continuous improvement. The position requires strong technical expertise, leadership, and the ability to align IAM programs with security, compliance, and business objectives.
Architect, deploy, and manage IAM solutions across Active Directory, Okta, CyberArk, and other enterprise platforms.
Design and enforce access control models (RBAC, ABAC, PBAC) and least-privilege policies across cloud, on-prem, and hybrid environments.
Lead technical integrations with internal and third-party applications using SAML, OIDC, SCIM, and APIs.
Build and maintain automated user provisioning/deprovisioning and access workflows with Okta Workflows, PowerShell, and scripting.
Troubleshoot complex identity issues and support escalations related to authentication, SSO, and privileged access.
Ensure IAM systems meet performance, availability, compliance, and audit requirements.
Collaborate with security, infrastructure, and development teams to embed IAM controls into CI/CD pipelines and enterprise operations.
Drive adoption of advanced IAM capabilities such as MFA, adaptive authentication, conditional access, and passwordless solutions.
8–10+ years of IT and security experience, with at least 3+ years focused on IAM in medium to large enterprises.
Hands-on expertise with IAM tools (Okta, CyberArk, Active Directory) and automation (PowerShell, APIs).
Strong knowledge of identity standards and protocols (SAML, OAuth2, OIDC, SCIM).
Experience supporting compliance frameworks such as NIST, ISO 27001, HIPAA, and PCI.
Certifications such as CISSP, CISM, Security+, or Okta Professional preferred.
Excellent problem-solving, leadership, and communication skills with the ability to work across diverse teams.
Phone
Job Type
Remote Status
Get notified about new listings!
Can't find the job you want?
Submit a general applicationLoading Jobs...