
Senior Security Engineer II – IAM
Posted Sep 15

Posted Sep 15
This is a fully remote position, open to applicants in Texas.
• Design, develop, and manage solutions that consistently enhance and automate security capabilities.
• Utilize data to gain insights into security trends, metrics, and areas for improvement.
• Implement enhancements to security posture in collaboration with cross-functional stakeholders.
• Oversee and advance incident response efforts, including analysis, containment, mitigation, resolution, and remediation.
• Create and refine documentation for security programs, including policies, standards, baselines, and standard operating procedures.
• Provide mentorship and guidance to junior engineers or analysts.
• Secure enterprise environments, cloud-native applications, and services.
• Develop resilient identity pipelines utilizing Security-as-Code and API-first automation.
• Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field, or 8 years of experience in the security domain without a degree.
• Minimum of 4 years of experience serving as a trusted advisor within a team, focusing on both short-term and long-term business value.
• At least 4 years of experience mentoring other engineers or analysts.
• Familiarity with federated identity tools such as Okta, Entra ID, or Ping Identity.
• Experience with Identity Governance and Administration tools like Omada, Lumos, SailPoint, or Saviynt.
• Comprehensive understanding of cloud security architectures, including AWS IAM, Azure Entra ID, or GCP IAM.
• Proven experience in designing and implementing least-privilege roles, RBAC/ABAC, and permission policies.
• Proficient in automation using Python, Terraform, and PowerShell.
• Previous experience in the healthcare industry with health-tech systems is preferred.
• Experience with tooling, automation, and development in distributed systems is preferred.
• Skilled in generating automated metrics to assess service and program effectiveness and consistency.
• Excellent written and verbal communication skills.
• Practical experience in managing non-human identities, service accounts, API keys, bots, and automated workload identities across cloud infrastructure is preferred.
• Proficiency in SAML, OIDC, OAuth, LDAP/Directory Services, user lifecycle automation, SSO, MFA, and JIT access is preferred.
• Familiarity with IAM systems and practices is preferred.
• Extensive knowledge of authentication protocols, authorization mechanisms, and directory services is preferred.
• Strong ability to implement IAM solutions within complex environments is preferred.
• Understanding of regulatory compliance and security standards is preferred.
• Capability to sit for extended periods and utilize computers and keyboards extensively; occasional walking and lifting may be necessary.
• Flexible work schedules and remote work options are available for many positions.
• Health, dental, and vision insurance coverage up to 80% for employees, their dependents, and domestic partners.
• Comprehensive time-off plan with 21 days of PTO in your first year.
• Two paid volunteer days and 11 paid holidays.
• 12 weeks of paid parental leave for all new parents.
• Six weeks of paid sabbatical after six years of employment.
• Educational Assistance Program and Clinical Employee Reimbursement Program.
• 401(k) plan with up to 4% matching.
• Stock options available.
• A collaborative, inclusive, and remote-first culture.
Sony Interactive Entertainment
Squads
Neo4j
PingWind Inc. (SDVOSB)
Get handpicked remote jobs straight to your inbox weekly.