10,363 Identity And Access Management jobs in the United States
Identity & Access Management Specialist or Senior Identity & Access Management Specialist
Posted 2 days ago
Job Viewed
Job Description
Technology Services - University of Illinois Urbana-Champaign
The University of Illinois at Urbana-Champaign is seeking to hire an Identity and Access Management (IAM) Specialist or Senior Identity and Access Management (IAM) Specialist to support a suite of identity management, authentication, and authorization services. This individual will report to the IAM Manager within the Privacy and Information Security unit at Technology Services, and will work closely with a team of IAM specialists. Their primary role will be managing and supporting a variety of applications and services that enable appropriate access to university IT resources. Ideal technical background will include Microsoft Active Directory, Entra ID, and/or SailPoint experience. The ideal candidate would possess excellent communication and documentation skills, as well as the ability to think creatively and work well within a diverse team. The candidate should also be capable of providing excellent customer service and continually improving user experience. Fully remote work may be possible for this position per the University's Workplace Flexibility policy. Sponsorship for work authorization is not available for this position.
Why Work at Technology Services?
Highlights of Employee Benefits
Job Summary
Administer and maintain the university's identity and access management systems and services, enabling secure access for all types of users to university IT resources.IAM Specialist Duties & Responsibilities
Support and help manage security-focused identity and access management services and solutions
- Act as service administrator and provide Tier 3 support for assigned IAM systems/services.
- Assist with the maintenance and upgrades of IAM systems/services.
- Troubleshoot issues and provide service support to internal and external audiences regarding assigned systems/services.
- Provide recommendations for assigned projects, in consultation with project team(s) and related staff.
- Analyze user support issues for trends and provide recommendations for improving IAM services and solutions.
- Collaborate with other IAM staff to remediate service outages and issues.
- Lead the effort to create and maintain technical as well as customer-facing documentation, training, and other educational material in conjunction with support & training staff.
- Participate in and facilitate internal and external meetings. Drive discussions as needed to represent the needs of the assigned domain(s). Present findings/reports to technical and non-technical audiences.
- Provide excellent customer service on behalf of the IT Security office.
- Advocate for Technology Services or other clients and partners in service planning and deployment across the organization.
- Provide recommendations for continual process improvement across all Security workflows.
- Draft and review documentation such as analyses of technical, administrative, or procedural security issues; procedural documentation/playbooks; and team documentation.
Senior IAM Specialist Duties & Responsibilities
Implementand manage security-focused identity and access management services andsolutions
- Act as the primary service administrator and/or service owner for assigned IAM systems/services.
- Lead assigned projects or portions of projects, developing, testing, and implementing plans for maintenance and upgrades of assigned IAM systems/services.
- Engage with internal and external audiences regarding assigned IAM systems/services and incorporate feedback to improve services.
- Create or modify scripts, automate tasks, and provide reports related to assigned systems/services.
- Implement recommendations for assigned projects, in consultation with project team(s) and related staff.
- Collaborate with other security staff as needed for security incident remediation.
- Cultivate subject-matter expertise and skills in less experienced staff, in coordination with management.
- Provide recommendations on emerging issues and the resources needed to address them for assigned domain(s) to inform management decision-making.
- Participate in and facilitate internal and external meetings. Drive discussions as needed to represent the needs of the assigned domain(s). Present findings/reports to technical and non-technical audiences.
- Provide excellent customer service on behalf of the IT Security office.
- Advocate for Technology Services or other clients and partners in service planning and deployment across the organization.
- Provide recommendations for continual process improvement across all Security workflows.
- Draft and review documentation such as analyses of technical, administrative, or procedural security issues; procedural documentation/playbooks; and team documentation.
IAM Specialist Minimum Qualifications
- High school diploma or equivalent.
- Any one or any combination totaling two (2) years (24 months) from the following categories:
- College coursework which includes Information Technology (IT), IT Management, Programming, IT systems, or a closely related discipline, as measured by the following conversion table or its proportional equivalent:
- 30 semester hours equals one (1) year (12 months)
- Associate's Degree (60 semester hours) equals eighteen months (18 months)
- 90 semester hours equals two (2) years (24 months)
- Bachelor's Degree (120 semester hours) equals three (3) years (36 months)
- Work experience in IT-related functions, such as hardware/software support, programming, network design, network engineering, IT systems integration, or closely related field.
- College coursework which includes Information Technology (IT), IT Management, Programming, IT systems, or a closely related discipline, as measured by the following conversion table or its proportional equivalent:
- Demonstrated experience in user support including troubleshooting technical issues and process documentation.
- High school diploma or equivalent.
- Any one or any combination totaling three (3) years from the following categories:
- College coursework which includes Information Technology (IT), IT Management, Programming, IT systems, or a closely related discipline, as measured by the following conversion table or its proportional equivalent:
- 30 semester hours equals one (1) year (12 months)
- Associate's Degree (60 semester hours) equals eighteen months (18 months)
- 90 semester hours equals two (2) years (24 months)
- Bachelor's Degree (120 semester hours) equals three (3) years (36 months)
- Work experience in IT-related functions, such as hardware/software support, programming, network design, network engineering, IT systems integration, or closely related field.
- College coursework which includes Information Technology (IT), IT Management, Programming, IT systems, or a closely related discipline, as measured by the following conversion table or its proportional equivalent:
- Demonstrated experience in user support including troubleshooting technical issues and process documentation.
Experience in one or more of the following domains: system administration, Entra, Active Directory, or web services is preferred. Experience with the implementation of SailPoint Identity Security Cloud, and integrations with HR systems, Active Directory, on-prem applications, and cloud applications.
Knowledge, Skills and Abilities
- Knowledge of service lifecycle management concepts and processes
- Ability to communicate information to technical and non-technical audiences
- Commitment to customer service and user experience
This is a 100% full-time Civil Service 5031 - Information Technology Technical Associate position, appointed on a 12-month basis. The expected start date is as soon as possible after the closing date.The budgeted salary range for the IAM Specialist is$65,000 to $2,000, and for the Senior IAM Specialist is 77,000 to 95,000. Salary is commensurate with experience.
Fully remote work may be possible for this position per the University's Workplace Flexibility policy. Sponsorship for work authorization is not available for this position.
For more information on Civil Service classifications, please visit the SUCSS web site at
Application Procedures & Deadline Information
Applications must be received by 6:00 pm (Central Time) on Wednesday, August 27, 2025 . Apply for this position using the Apply Now button at the top or bottom of this posting. In order to be considered as a transfer candidate, you must apply for this position. Applications not submitted through will not be considered.
To complete the application process:
Step 1) Submit the Staff Vacancy Application using the "Apply for Position" button.
Step 2) Submit the Voluntary Self-Identification of Disability forms.
Step 3) Upload your cover letter, resume (months and years of employment must be included), and names/contact information for three references .
If required by the position, transcripts or other documentation of credentials are to be provided no later than the first day of employment. For further information about this specific position, please contact Sami Roch at For questions regarding the application process, please contact .
The University of Illinois offers a very competitive benefits portfolio, depending on the position. Click for a complete list of Employee Benefits.
The University of Illinois System is an equal opportunity employer, including but not limited to disability and/or veteran status, and complies with all applicable state and federal employment mandates. Please visit Required Employment Notices and Posters to view our non-discrimination statement and find additional information about required background checks, sexual harassment/misconduct disclosures, and employment eligibility review through E-Verify.
Applicants with disabilities are encouraged to apply and may request a reasonable accommodation under the Americans with Disabilities Act (2008) to complete the application and/or interview process. Accommodations may also be requested on the basis of pregnancy, childbirth, and related conditions, or religion. Requests may be submitted through the reasonable accommodations portal, or by contacting the Accessibility & Accommodations Division of the Office for Access and Equity at , or by emailing
Requisition ID : 1032438
Job Category : Technical
Apply at:
Principal Security Engineer - Identity & Access Management
Posted 8 days ago
Job Viewed
Job Description
At Remitly, we believe everyone deserves the freedom to access, move, and manage their money wherever life takes them. Since 2011, we've tirelessly delivered on our promise to customers sending money globally, providing secure, simple, and reliable ways to manage their money, ensuring true peace of mind. Whether it's supporting loved ones back home, growing a business across continents, or pursuing new opportunities abroad, we're not just here to move money- we're here to move our global customers forward.
We're looking for builders, reimaginers, and global thinkers who want to work at the intersection of technology, trust, and transformation. If that's you and you're ready to do the most meaningful work of your career-we invite you to join over 2,800 passionate Remitlians worldwide who are united by our vision to transform lives with trusted financial services that transcend borders.
About the Role:
As the Principal Security Engineer you will be a key advisor to the Chief Information Security Officer and have the opportunity to evaluate identity and access management across the company. You will assess and make recommendations on all forms of identity and access management and span our consumers, hosting, and corporate environments to assess our practices and manage risk. You will evaluate existing tools, technologies, services and protocols to ensure that our systems and customers remain safe and secure.
You will:
- Evaluate authentication for IT Assets, Administration, Corporate Users, and Customers
- Document authentication and authorization requirements and processes
- Publish a company-wide Identity and Access Management Standard and Practices
- Evaluate build vs. buy for customer authentication mechanisms
- Evaluate contractual requirements, terms and conditions as pertinent to IAM
- Perform threat assessments on identity management for systems and services
- Define strategies to minimize and prevent account take over
- Define methods for customer data access controls including step up authentication
- Define standards for managing secrets and encryption keys
- Evaluate cryptographic storage methodologies
- 8+ years of experience in Identity and Access Management, with a focus on solution design, development, and implementation.
- Understanding and familiarity with IAM protocols (e.g. OAuth 2.0, FIDO2, SAML, Kerberos, etc.)
- Understanding and familiarity with IAM services (e.g. AWS Cognito, AWS Permissions, secrets manager, certificate management, certificate authority, etc.)
- Understanding and familiarity with IAM tools (e.g. Lastpass, Onepassword, Auth0, Postman, etc.)
- Understanding of cloud identity management services and architectures and overall authentication, authorization and auditing best practices
- Understanding of device fingerprinting and techniques to prevent certificate exporting and reuse
- Understanding of regulatory landscape and requirements pertaining to Identity and Access Management
Our Benefits:
- Flexible paid time off
- Health, dental, and vision + 401k plan with company matching
- Paid parental, medical, military and family care leave
- Mental Health & Family Forming Benefits
- Employee Stock Purchase Plan (ESPP)
- Continuing education and travel benefits
Our Connected Work Culture: Driving Innovation, Together
At Remitly, we believe that true innovation sparks when we come together. Our "Connected Work Culture" fosters dynamic in-person collaboration, where ideas ignite and challenging problems find solutions faster. For corporate team members, we have an in-office expectation of at least 50% of the time monthly, typically achieved by coming in three days a week. This creates consistent, meaningful overlap that supports team norms and business needs. Managers also have the flexibility to set higher expectations based on their team's specific needs. These intentional in-office moments are vital for deepening relationships, fueling creativity, and ensuring your impact is felt where it matters most.
At Remitly, we are dedicated to ensuring that our workplace offers equal employment opportunities to all employees and candidates, in full compliance with applicable laws and regulations.
Remitly is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.
Identity & Access Management Specialist
Posted today
Job Viewed
Job Description
Our Guiding Stars are the values at the heart of our organization that drive everything we do. We are committed to creating meaningful change not only in our industry but also in the communities we engage with. If our Guiding Stars resonate with you, we encourage you to consider joining our team.
- Drive Results : We think big, work smart, and execute fast to transform the future of commerce
- Cultivate Belonging : We welcome diverse backgrounds and experiences, driving positive change through inclusion and teamwork
- Champion Customers: We go the extra mile for our customers to help them unlock their full potential
- Adapt Boldly : We're curious and innovative, we take risks and grow from our failures
The Opportunity: The Identity and Access Management Specialist ensures the right people have the right access to the right resources at the right time. This role involves managing user accounts, access levels, and lifecycle events within the IAM system (Okta), maintaining system health, and ensuring compliance with IAM policies.
This role offers a hybrid work environment with three days a week in our Boston office.
Your Mission: Managing user accounts, access levels, and lifecycle events within the IAM system is crucial
This includes ensuring automated identity creation & deletion during employee onboarding and off-boarding, as well as adding, maintaining and removing applications in several waysReviewing and updating user information (roles, departments, access) based on role changes or terminations
Reviewing access controls, identify over-privileged access, and grant new access requests
Analyzing user access permissions to ensure they align with job functions and the principle of least privilege
Maintaining IAM system health, perform backups and updates, and implement new security features
Generating reports on user activity and access levels for compliance audits
Investigating suspicious access attempts and potential security breaches within the IAM system
Maintaining clear and up-to-date documentation of IAM policies, procedures, and access control configurations
Collaborating with other teams on security initiatives, ensuring alignment between the IAM tool and other security tools
Liaising with People Operations to ensure user information accuracy and reflect personnel changes in the IAM system
Reviewing and troubleshoot tickets submitted to the IT Service Desk & escalating complex issues or potential security concerns to the appropriate team
What you need to succeed: A strong background in Identity & Access Management principles and practices
Experience with IAM systems, security frameworks, and compliance standards
Hands-on experience working with Okta as a certified Okta Administrator
Comfortable working with MacBooks and are proficient in using IT service desk ticketing systems
Strong problem-solving skills and a customer-centric mindset
Highly organized & detail-orientated
Excellent communication skills, enabling you to collaborate effectively with different teams and provide clear, timely resolutions to users
We care about your growth and well-being
Competitive Compensation Package: Generous compensation structure consisting of salary, a competitive stock option package, and various benefits and perks
Workation: Work up to 60 days per year in a country different from your home country, with 20 working days per trip
Learning & Development Budget
Academy: Regular training sessions, access to Coursera and Babbel training courses
Our Benefits: Check them out here
Flexibility: Morning person or night owl? We believe in outcome and motivated employees
Mindset & Growth: A diverse workplace with an open, international culture, and learning environment
For US-based roles
Well-Being: 100% employer-covered medical, dental, and vision insurance for employees and dependents
Work-Life Balance: Generous time off for personal time, vacation, parental leave, holidays, well-being, and volunteering
Prepare For Your Future: 401k with company match
Get Involved: Opportunities to join our Employee Resource Groups, fitness challenges, artistic channels, and more!
Come grow with us!
We are all different and that is what makes us stronger! We hire great people from a wide variety of backgrounds , not just because it's the right thing to do, but because it makes our company better.
At commercetools, we are proud to be an equal opportunity workplace. We are committed to fair hiring practices regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or Veteran status. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
Please note our salary range pertains to base pay.
US Pay Range
$82,000-$103,000 USD
Identity Access Management Architect
Posted 4 days ago
Job Viewed
Job Description
PENNYMAC
Pennymac (NYSE: PFSI) is a specialty financial services firm with a comprehensive mortgage platform and integrated business focused on the production and servicing of U.S. mortgage loans and the management of investments related to the U.S. mortgage market.
At Pennymac, our people are the foundation of our success and at the heart of our dynamic work culture. Together, we work towards a unified goal of helping millions of Americans achieve aspirations of homeownership through the complete mortgage journey.
A Typical Day
As an Identity Access Management Architect , you will be the principal owner and strategic visionary for our enterprise-wide Identity and Access Management (IAM) ecosystem. This is a critical leadership role responsible for designing, building, and maintaining the architectural foundation that secures our corporate data and enables our global workforce. You will architect a modern, scalable, and resilient identity fabric, leveraging industry-leading platforms like Active Directory, Secret Double Octopus, OneLogin, Okta (Auth0) and Microsoft Entra ID to support our zero-trust security model and drive business agility.
You will oversee all company identity platforms, provide architectural guidance and best practices, design and lead the implementation of platform enhancements, and continuously identify areas for improvement, increased security and resiliency, and operational efficiencies.
Key Responsibilities
-
Strategic Architecture & Platform Oversight:
-
Provide high-level oversight of all company identity platforms, including Active Directory, Okta (Auth0), Entra ID, OneLogin, Secret Double Octopus, and Google Workspace.
-
Design, own, and evolve the enterprise identity architecture and strategic roadmap, encompassing Workforce and Customer IAM (CIAM).
-
Develop and maintain high-level and low-level design documents, standards, and patterns for our core identity platforms.
-
Design robust identity patterns for internal application development and off the shelf applications.
-
Implementation & Technical Leadership:
-
Lead the architectural design of complex federation patterns using Multi-factor Authentication, SAML 2.0, OAuth 2.0, and OpenID Connect (OIDC) to securely integrate a diverse portfolio of SaaS, cloud applications, and internal applications.
-
Drive and oversee platform improvements, including IDP consolidation (e.g., OneLogin -> SDO) and cleanup of existing identity providers.
-
Serve as the senior technical expert on projects involving identity, authentication, and authorization.
-
Provide expert-level troubleshooting for the most complex identity-related issues.
-
Governance, Security & Continuous Improvement:
-
Partner with the InfoSec team to define and enforce IAM policies, controls, and best practices aligned with a zero-trust framework.
-
Maintain a strong awareness of security issues and considerations around identity platforms and lead efforts to mitigate and remediate risks.
-
Lead Active Directory management and cleanup initiatives , including modernization, de-nesting groups, identifying risky service accounts, and performing remediation of over-privileged accounts and SPNs.
-
Ensure all identity solutions meet stringent security requirements and comply with regulatory standards (e.g., SOX, GDPR, CCPA).
-
Collaboration & Mentorship:
-
Collaborate closely with application owners, infrastructure engineers, Infosec, and business stakeholders to translate requirements into secure and scalable identity solutions.
-
Mentor and guide senior engineers, fostering technical excellence and professional growth.
-
Clearly articulate and present complex architectural concepts to technical and non-technical audiences, including executive leadership.
What You’ll Bring
Required Qualifications
-
5+ years in a senior role focused specifically on Identity and Access Management.
-
5+ years of deep, hands-on experience with Microsoft Active Directory architecture and management.
-
3+ years of hands-on experience with SAML IDP/Brokers (e.g., ADFS, Okta, Entra ID, OneLogin).
-
Expert-level architectural experience with Okta , Active Directory/Entra ID, and Okta (Auth0).
-
Proven experience designing and implementing complex identity federation solutions using SAML 2.0, OAuth 2.0, and OIDC.
-
Experience integrating identity services with enterprise SaaS applications, cloud-native services, and legacy systems.
-
Ability to conceptualize, design, and implement identity models across systems, ensuring least-privileged RBAC, strong naming conventions, and rich identity metadata.
-
Proficiency in PowerShell or other scripting/automation languages.
-
Experience architecting identity solutions for major cloud platforms (AWS, GCP).
-
Familiarity with JIRA, Service now, or other ITSM systems.
Preferred Qualifications
-
Relevant industry certifications, such as Okta Certified Technical Architect , Microsoft Certified: Identity and Access Administrator Associate/Expert , or CISSP.
-
Knowledge of Infrastructure as Code (IaC) principles and tools (e.g., Terraform) as they apply to IAM.
-
Experience with adjacent security domains, such as Privileged Access Management (PAM) and Identity Governance & Administration (IGA) platforms.
Why You Should Join
As one of the top mortgage lenders in the country, Pennymac has helped over 4 million lifetime homeowners achieve and sustain their aspirations of home. Our vision is to be the most trusted partner for home. Together, 4,000 Pennymac team members across the country are guided by our core values: to be Accountable, Reliable and Ethical in all that we do. Pennymac is committed to conducting a business that makes positive contributions and promotes long-term sustainable growth and to fostering an equitable and inclusive environment, where all employees and customers feel valued, respected and supported.
Benefits That Bring It Home: Whether you're looking for flexible benefits for today, setting up short-term goals for tomorrow, or planning for long-term success and retirement, Pennymac's benefits have you covered. Some key benefits include:
-
Comprehensive Medical, Dental, and Vision
-
Paid Time Off Programs including vacation, holidays, illness, and parental leave
-
Wellness Programs, Employee Recognition Programs, and onsite gyms and cafe style dining (select locations)
-
Retirement benefits, life insurance, 401k match, and tuition reimbursement
-
Philanthropy Programs including matching gifts, volunteer grants, charitable grants and corporate sponsorships
To learn more about our benefits visit:
For residents with state required benefit information, additional information can be found at:
Compensation: Individual salary may vary based on multiple factors including specific role, geographic location / market data, and skills and experience as defined below:
-
Lower in range - Building skills and experience in the role
-
Mid-range - Experience and skills align with proficiency in the role
-
Higher in range - Experience and skills add value above typical requirements of the role
Some roles may be eligible for performance-based compensation and/or stock-based incentives awarded to employees based on company and individual performance.
Salary
$140,000 - $175,000
Work Model
OFFICE
Principal, Identity & Access Management
Posted 21 days ago
Job Viewed
Job Description
Cargill's size and scale allows us to make a positive impact in the world. Our purpose is to nourish the world in a safe, responsible and sustainable way. We are a family company providing food, ingredients, agricultural solutions and industrial products that are vital for living. We connect farmers with markets so they can prosper. We connect customers with ingredients so they can make meals people love. And we connect families with daily essentials - from eggs to edible oils, salt to skincare, feed to alternative fuel. Our 160,000 colleagues, operating in 70 countries, make essential products that touch billions of lives each day. Join us and reach your higher purpose at Cargill.
Job Purpose and Impact
- The Principal, Identity & Access Management leads the design, implementation and operation of identity and access management systems (IAM), including the IGA and governance aspects within the organization. As a recognized subject matter authority in IAM, this job provides thought leadership to ensure secure access to resources, minimize risk exposure, and maintain compliance with security standards.
Key Accountabilities
-
DIRECTORIES & AUTHENTICATION: Leads the analysis of current systems and development of solutions to improve directory services and authentication processes, including implementing and maintaining identity governance processes and controls to ensure oversight and accountability for user access.
-
DIGITAL IDENTITY LIFECYCLE: Advises the entire digital identity lifecycle, ensuring efficient provisioning, maintenance and archiving of user identities, and leads assessment and preparation for potential risks.
-
ACCESS CERTIFICATIONS & RE-AUTHORIZATIONS: Leads the establishment and improvement of access certification processes to ensure compliance and security of user access rights, identifying and assessing systemic compliance gaps, finding root cause resolution and proposing improvement options, including cost benefit analysis.
-
PRIVILEGED ACCESS MANAGEMENT: Leads the analysis and solution development for administering privileged accounts and access to sensitive information.
-
ENTITLEMENT MANAGEMENT: Establishes and mentors the implementation of entitlement management standards to ensure consistent access control across the organization.
-
COLLABORATION: Influences collaboration with cybersecurity peers, data privacy partners, external experts, industry consortia, and other internal and external teams to enable effective and efficient authentication and provisioning fundamentals and delivery of business objectives.
Qualifications
-
8-10 years of professional experience with IAM domains, such as IGA, privileged access management, credential/secrets management, governance and compliance
-
Extensive experience with identity technologies and concepts
-
Strong communication, collaboration, and change management experience
Equal Opportunity Employer, including Disability/Vet.
Identity & Access Management Lead
Posted 21 days ago
Job Viewed
Job Description
The mission of Washington Health Benefit Exchange (Exchange) is to radically improve how Washington residents secure health insurance through innovative and practical solutions, an easy-to-use customer experience, our values of integrity, respect, equity and transparency, and by providing undeniable value to the health care community.
The Exchange is a public-private partnership that operates Washington Healthplanfinder, the eligibility and enrollment portal used by one in four Washington residents to obtain health and dental coverage. Through this platform, and with support from a Customer Support Center and statewide network of in-person navigators and brokers, individuals and families can shop, compare and enroll in private, qualified health plans (as defined in the Affordable Care Act) or enroll in Washington Apple Health, the state Medicaid program.
The Exchange embraces the following equity statement adopted by our Board of Directors:
Equity is fundamental to the mission of the Washington Health Benefit Exchange. The process of advancing toward equity and becoming anti-racist is disruptive and demands vigilance to dismantle deeply entrenched systems of privilege and oppression. While systemic racism is a root cause of many societal inequities, we must also use an intersectional approach to address all forms of bias and oppression, which interact with and often exacerbate racial inequities. To be successful, we must recognize the socioeconomic drivers of health and focus on people and places where needs are greatest. As we listen to community, we must hold ourselves accountable to responding to recommendations to remedy inequitable policies, systems, or practices within the Exchange's area of influence. Our goal is that all Washingtonians have full and equal access to opportunities, power and resources to achieve their full potential.
SUMMARY
The Identity and Access Management (IAM) Lead is responsible for overseeing the development, configuration, and management of the WAHBE's IAM solution, leveraging ForgeRock technology. This role encompasses designing, managing, and monitoring IAM systems to ensure the implementation of robust security controls. The IAM Lead collaborates with the risk management team on IT audits and remediation efforts, partners with the delivery team to support modernization initiatives, and assists the incident response team in investigating IT security incidents and breaches. Additionally, the role involves evaluating new IAM requirements, assessing and migrating IAM products, and providing management with impact analyses and status updates.
DUTIES AND RESPONSIBILITIES
• Develop and lead the WAHBE's Identity and Access Management (IAM) strategy, ensuring alignment with delivery team goals and WAHBE policies.
• Design and architect IAM solutions that seamlessly integrate with existing and future infrastructure.
• Lead the evaluation, deployment, migration, and management of IAM technologies.
• Provide hands-on expertise in configuring and deploying IAM solutions.
• Ensure the availability, scalability, and reliability of IAM systems.
• Manage the end-to-end integration of IAM systems with cloud-based applications and services.
• Oversee the entire user identity lifecycle, including provisioning, deprovisioning, and account management.
• Implement and manage Single Sign-On (SSO), federation (SAML, OAuth, OIDC), Multi-Factor Authentication (MFA), and risk-based authentication.
• Ensure IAM compliance with regulatory standards such as NIST, CMS MARS-E, IRS publication 1075, and OWASP.
• Monitor and audit IAM systems to identify and address potential security incidents.
• Lead cross-functional teams to deliver successful IAM initiatives.
• Collaborate with IT, Security, Risk Management, and Delivery teams to define and refine IAM requirements.
• Manage vendor relationships, including monitoring performance, product updates, and organizational impacts.
• Serve as a subject matter expert during security incidents and investigations related to IAM.
• Perform root cause analysis and implement solutions to address IAM-related issues effectively.
• Mentor and manage a team of IAM administrators and engineers, promoting best practices and professional growth.
• Track and resolve IAM bugs and release issues, reporting progress to management.
• Conduct access re-certifications for privileged user accounts within the IAM framework.
• Manage and resolve day-to-day IAM issues, ensuring escalation and process adherence.
• Configure both standard and custom reporting using industry-standard tools.
• Stay informed about emerging trends and capabilities in IAM technologies.
• Advise management on IAM risk-related issues and recommend actions to support risk management and compliance goals.
• Lead risk assessments for proposed IAM solutions, escalating issues when necessary and ensuring resolution.
• Assist WAHBE in reviewing and updating policies, procedures, and standards related to IAM solutions.
• Collaborate with the Risk Management Office to remediate vulnerabilities and address audit findings.
• Collaborate closely with architects and engineers to share insights, best practices, and technical requirements.
• Perform additional responsibilities as needed within the scope of IAM solutions.
QUALIFICATIONS
Required:
• 7+ years of experience in Identity and Access Management (IAM) using tools like Oracle, ForgeRock, Okta, PingOne, or similar technologies, including at least 3 years in a lead or architect role.
• In-depth knowledge of IAM technologies such as ForgeRock, SailPoint, Okta, Ping Identity, or Oracle Identity Suite.
• Proficiency in SAML, OAuth, OIDC, MFA, and risk-based authentication mechanisms.
• Strong understanding of Directory Services, RESTful APIs, and microservices architectures.
• Ability to assess the impact of new requirements on IAM and all upstream and downstream applications, systems, and processes.
• Advanced troubleshooting capabilities, including log analysis and root cause identification.
• Hands-on experience with implementing IAM solutions in cloud environments, such as AWS, Azure, and Google Cloud Platform (GCP).
• Knowledge of hybrid cloud IAM deployments and integrations.
• Exceptional leadership and decision-making abilities with a proactive approach to problem-solving.
• Excellent verbal and written communication skills, with the ability to effectively convey technical concepts to diverse audiences.
• Strong project management skills, with the ability to prioritize and manage multiple projects simultaneously.
• Experience developing and documenting business processes and workflows within IAM implementations.
• Experience assisting in security/privacy incident investigations and collaborating with incident response teams.
• Experience in vendor management and oversight, with the ability to escalate concerns to management when necessary.
• Motivated self-starter with the ability to take initiative and ownership of responsibilities.
• Ability to maintain a high level of confidentiality and demonstrate sound judgment.
• Creative, proactive analytical person who can independently make decisions and manage work priorities.
• Highly organized, flexible, and resourceful, with strong attention to detail.
Desired:
• Minimum of 3 years of hands-on experience with ForgeRock Identity and Access Management (IAM) solutions.
• Strong knowledge and practical experience in understanding and implementing IT security controls.
• Experience working with Security Information and Event Management (SIEM) systems.
• Background in government and/or healthcare industries.
• Comprehensive understanding of standards and guidelines, including IRS 1075, MARS-E, NIST, FISMA, and HITECH.
• Proven experience in contracts management.
• Bachelor's or master's degree in Cybersecurity or a related field.
Relevant certifications such as CISSP, CISM, or vendor-specific IAM credentials (e.g., ForgeRock Certified Identity Management Specialist, Okta Certified Professional).
Demonstrated ability to quickly learn and apply new concepts effectively.
APPLICATION INSTRUCTIONS
This position will be open until we find a suitable number of candidates to review. If interested, please submit an application as soon as possible. The Exchange reserves the right to close the recruitment at any time.
SALARY INFORMATION
Full Salary Range: $109,719.00 to $64,579.00 annually, with midpoint at 137,149.00.
Hiring Range: 126,177.00 and 137,149.00 annually. This is an estimate of where a qualified candidate can expect to receive an offer.
The actual salary offer will consider candidate experience, skills, qualifications, internal equity, and the market. Our compensation policy reserves the salary range above the midpoint for employees who are meeting and exceeding expectations and for growth and development, up to the maximum.
BENEFITS
Take a peek at our benefits package.
WORKING CONDITIONS
Core business hours are 8:00 a.m. to 5:00 p.m., Monday through Friday. There are times where irregular hours will be required. The preferred duty station is our Olympia, Washington headquarters. The nature of this role relies heavily on remote and in-person collaboration. While a hybrid remote and on-site schedule may be considered, the position will require flexibility to allow for in-office availability as business needs dictate. Travel requirements will be limited, however there may be occasions where an employee is required to travel and work irregular hours to attend meetings or trainings. Duties of this position require the use of standard office furniture and equipment, including setup for remote work. The employee is responsible for providing and maintaining a safe, ergonomic, and secure workspace at their remote location.
The working conditions and physical demands are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
SPECIAL REQUIREMENTS
A criminal background screen will be conducted for candidates under final consideration, and if hired, every five years of employment where highly sensitive data is processed or maintained by the position. The result of this background screen must meet the Exchange's eligibility standards.
OTHER INFORMATION
The above statements are intended to describe the general nature and levels of work being performed. They are not intended to be construed as an exhaustive list of responsibilities, duties and skills of personnel so classified.
This is not an employment agreement or contract. Management has the exclusive right to alter this job description at any time without notice.
The Washington Health Benefit Exchange is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, age, marital status, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.
We participate in E-Verify. You can view the Department of Justice's Right to Work poster here.
Identity & Access Management Specialist
Posted 23 days ago
Job Viewed
Job Description
Join Us in Making an Impact
At OneAZ Credit Union, our success is measured only by yours. We're here to create lasting change in the lives of our members, our communities, and our team. If you're looking for a career with purpose, where your work truly matters-you've found it!
Who You Are
You're impactful, compassionate, and fearless, ready to embrace new challenges and shape the future of financial well-being. You take accountability for our success and thrive in an environment where curiosity is celebrated. If this sounds like you, let's build something great together.
What You'll Do
This position will be located at our Corporate Office: 2355 W Pinnacle Peak Rd, Phoenix, AZ 85027
The Identity & Access Management (IAM) Specialist is responsible for overseeing access governance processes across enterprise systems and applications. This role ensures that access controls are designed and operating effectively, aligned with regulatory requirements and internal security policies. The IAM Specialist will coordinate access reviews, support audit responses, and work to strengthen identity governance within a secure and compliant environment.
- Coordinate and monitor user access reviews across enterprise systems, including Active Directory, core banking platforms, and cloud applications.
- Review and validate role-based access models to ensure alignment with the principle of least privilege and segregation of duties.
- Analyze access rights and user entitlement data to identify and report on anomalies, excessive privileges, or policy violations.
- Partner with system administrators and business units to ensure timely remediation of access issues identified during reviews.
- Maintain documentation of access review procedures, escalation paths, and reviewer responsibilities.
- Support audit and compliance efforts by compiling and validating evidence related to user access controls and identity governance.
- Collaborate with HR, IT, and Information Security to improve access governance processes related to onboarding, transfers, and terminations.
- Participate in IAM policy and standard development, ensuring practices align with regulatory expectations (GLBA, FFIEC, NIST).
- Contribute to the evaluation and implementation of IAM tools or platforms to automate access review and certification processes.
- Assist in defining and refining IAM metrics and reporting dashboards to provide insights into access compliance and control effectiveness.
What You Bring
- H.S. Diploma required.
- Bachelor's degree in information security, computer science or a related field required.
- 1-3 years similar or related experience in Identity and Access Management required.
- 3-5 years similar or related experience in IT Security, or IT Compliance required.
- Experience supporting user access reviews and audit responses required.
- Experience with implementing and managing IAM tools preferred.
- Financial industry experience or knowledge of banking applications preferred.
- Familiarity with access control principles, user entitlement analysis, and access governance.
- Understanding of RBAC, least privilege, and segregation of duties principles.
- Working knowledge of regulatory and security frameworks such as GLBA, FFIEC, or NIST.
- Strong analytical and problem-solving skills.
- Excellent verbal and written communication skills.
- Ability to manage multiple tasks and meet deadlines under pressure.
- High attention to detail with a focus on accuracy and accountability.
- Strong collaboration skills across technical and business teams.
- Certified Identity and Access Manager (CIAM) Preferred
- Certified Identity and Access Professional (CIAP) Preferred
- Or similar industry certification
- A passion for people, innovation, and growth.
Not sure if you meet every requirement? That's okay. We believe great talent comes from all backgrounds and experiences. At OneAZ, we value potential, passion, and purpose. If you're excited about this opportunity and believe in our mission, we encourage you to join our Talent Community
Compensation & Benefits
- Generous paid time off: paid holidays, floating holidays, personal days, vacation days, plus sick time
- Low-cost Medical, Dental & Vision plans
- Paid childcare assistance
- Award-winning 401K
- Gym fee reimbursement
- Tuition Reimbursement
- Student loan repayment
- .and much more. Explore all the details in our comprehensive Benefits Booklet
- Target hiring range $75K-$95K (Depending on experience and prior to any incentives this position is eligible for)
Why Join OneAZ?
At OneAZ, we're not just a credit union; we're a financial trailblazer that passionately cares about inspiring dreams and driving prosperity in the communities we serve. We exist to clear the way for dreamers and doers, aspiring to be the bank for new pioneers.
We are driving change in our communities, constantly improving our products and services so our members and their families can relentlessly pursue their dreams. By embodying our values and living our promise, you'll be part of a team committed to exceeding expectations and redefining what's possible.
Additional Notes:
Knowingly submitting false information will result in disqualification for consideration of future positions, termination of employment and forfeiture of other rights. Candidates for this position will be required to sign an authorization for OneAZ to conduct a credit and criminal background check, pursuant to procedures in the Fair Credit Reporting Act and any other applicable laws. All candidates will be considered for this position on an individualized basis, in compliance with all applicable equal employment opportunity laws. Ensures compliance with applicable policies, laws, and regulations, including the Bank Secrecy Act (BSA), Anti-Money Laundering (AML) compliance, USA Patriot Act, and Office of Foreign Assets Control (OFAC). This job description should not be considered all-inclusive. It is merely a guide of expected duties. The associate understands that the job description is neither complete, nor permanent and may be modified at any time. At the request of their supervisor, an associate may be asked to perform additional duties or take on additional responsibilities without notice. Complies with all policies and standards. Position grades could fluctuate based on market value.
Be The First To Know
About the latest Identity and access management Jobs in United States !
Identity Access Management Analyst
Posted 23 days ago
Job Viewed
Job Description
Job Location
AAON Tulsa - Tulsa, OK
Position Type
Full Time
Salary Range
$71622.00 - $87538.00 Salary
Travel Percentage
Up to 25%
Job Shift
Day
Job Category
Information Technology
Job Posting Date(s)
Start Date
07/24/2025
Description
The Identity and Access Management (IAM) analyst, is responsible for supporting operations and personnel within the IAM team. This role ensures the proper implementation, maintenance, and enforcement of IAM policies, procedures, and technologies to protect the organization's digital assets. The analyst will manage workflows related to provisioning, de-provisioning, access reviews, and role-based access controls, ensuring compliance with security policies and regulatory requirements.
• Oversee identity lifecycle processes including user provisioning, de-provisioning, access requests, and approvals.
• Ensure adherence to IAM governance policies and compliance requirements (e.g., SOX, HIPAA, GDPR).
• Coordinate periodic access reviews, certification campaigns, and audit-related activities.
• Manage IAM systems and tools such as Active Directory, Azure AD, Okta, SailPoint, CyberArk, or equivalent platforms.
• Collaborate with internal teams (HR, IT, Compliance, Security) to support identity-related projects and initiatives.
• Support incident response for IAM-related security incidents or breaches.
• Contribute to process improvement initiatives to enhance efficiency, accuracy, and security posture.
• Maintain documentation of IAM processes, workflows, and controls.
• Stay current on industry trends, emerging threats, and IAM best practices
Qualifications
• Oversee identity lifecycle processes including user provisioning, de-provisioning, access requests, and approvals.
• Ensure adherence to IAM governance policies and compliance requirements (e.g., SOX, HIPAA, GDPR).
• Coordinate periodic access reviews, certification campaigns, and audit-related activities.
• Manage IAM systems and tools such as Active Directory, Azure AD, Okta, SailPoint, CyberArk, or equivalent platforms.
• Collaborate with internal teams (HR, IT, Compliance, Security) to support identity-related projects and initiatives.
• Support incident response for IAM-related security incidents or breaches.
• Contribute to process improvement initiatives to enhance efficiency, accuracy, and security posture.
• Maintain documentation of IAM processes, workflows, and controls.
• Stay current on industry trends, emerging threats, and IAM
Education and Experience Requirements:
• Bachelor's degree in Information Security, Computer Science, Information Technology, or related field (or equivalent experience).
• 3+ years of experience in IAM, Information Security, or Information Technology roles like Help Desk, or Systems Engineering.
• Strong knowledge of identity governance, authentication protocols (e.g., SAML, OAuth, LDAP), and access control models (RBAC, ABAC).
• Familiarity with IAM tools such as Okta, SailPoint, Ping Identity, Microsoft Identity Manager, etc.
• Experience with compliance frameworks (e.g., ISO 27001, NIST, SOX).
• Professional certifications such as CISSP, CISM, Microsoft Identity and Access Administrator preferred.
• Experience with cloud IAM (AWS, Azure, GCP) preferred.
• Project management experience or training preferred.
Knowledge, Skills, and Abilities:
• Excellent interpersonal, leadership, and communication skills.
Essential Mental and Physical Functions:
- Ability to sit for long periods of time.
- Ability to process, analyze, problem solve, plan and manage projects and deliverables.
- Ability to develop relationships and communicate effectively.
- Visual, auditory, and computer usage skills.
- Work is primarily performed in a climate-controlled office environment.
- Incumbent may visit manufacturing plants and warehouses with potential exposure to climate, dust, chemical fumes, noise, and forklift traffic.
Disclaimer:
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice. This job description is not an exhaustive list of all functions that the employee may be required to perform, and the employee may be required to perform additional functions. The company reserves the right to revise this job description at any time. The employee must be able to perform the essential functions of the position satisfactorily. If requested, reasonable accommodation may be made to enable employees with disabilities to perform the essential functions of the job, absent undue hardship.
Principal, Identity & Access Management

Posted 2 days ago
Job Viewed
Job Description
**Job Purpose and Impact**
+ The Principal, Identity & Access Management leads the design, implementation and operation of identity and access management systems (IAM), including the IGA and governance aspects within the organization. As a recognized subject matter authority in IAM, this job provides thought leadership to ensure secure access to resources, minimize risk exposure, and maintain compliance with security standards.
**Key Accountabilities**
+ DIRECTORIES & AUTHENTICATION: Leads the analysis of current systems and development of solutions to improve directory services and authentication processes, including implementing and maintaining identity governance processes and controls to ensure oversight and accountability for user access.
+ DIGITAL IDENTITY LIFECYCLE: Advises the entire digital identity lifecycle, ensuring efficient provisioning, maintenance and archiving of user identities, and leads assessment and preparation for potential risks.
+ ACCESS CERTIFICATIONS & RE-AUTHORIZATIONS: Leads the establishment and improvement of access certification processes to ensure compliance and security of user access rights, identifying and assessing systemic compliance gaps, finding root cause resolution and proposing improvement options, including cost benefit analysis.
+ PRIVILEGED ACCESS MANAGEMENT: Leads the analysis and solution development for administering privileged accounts and access to sensitive information.
+ ENTITLEMENT MANAGEMENT: Establishes and mentors the implementation of entitlement management standards to ensure consistent access control across the organization.
+ COLLABORATION: Influences collaboration with cybersecurity peers, data privacy partners, external experts, industry consortia, and other internal and external teams to enable effective and efficient authentication and provisioning fundamentals and delivery of business objectives.
**Qualifications**
+ 8-10 years of professional experience with IAM domains, such as IGA, privileged access management, credential/secrets management, governance and compliance
+ Extensive experience with identity technologies and concepts
+ Strong communication, collaboration, and change management experience
Equal Opportunity Employer, including Disability/Vet.
Identity & Access Management Engineer

Posted 1 day ago
Job Viewed
Job Description
Our SpartanNash family of Associates is 20,000 strong, ranging from bakery managers to order selectors; from IT developers to vice presidents of finance; from HR Business Partners to export specialists. Each of them plays an integral role in SpartanNash's **People First** culture, Operational Excellence and Insights that Drive Solutions. Ready to contribute to the success of our food solutions company? Apply now!
**Location:**
850 76th Street S.W. - Byron Center, Michigan 49315
**Job Description:**
**Position Summary:**
The IAM engineer is responsible for designing, implementing, and managing SpartanNash's IAM solutions. As a key player on the IAM team, the IAM engineer will help the organization centralize IAM, document and optimize processes, automate provisioning and deprovisioning, and migrate to a Role Based Access Control framework.
**Here's What You'll Do:**
+ Contributes to the development and implementation of a strong Identity and Access Management program at SpartanNash.
+ Work with stakeholders to define system requirements and deliver solutions.
+ Onboard applications to SailPoint IdentityNow through OOTB or custom connectors
+ Develop custom connectors, workflows, rules, and forms in SailPoint Identity Now
+ Develop automation and self service solutions for access requests
+ Design, create, and maintain access roles for RBAC and birthright provisioning
+ Develop and maintain technical documentation related to IAM areas of responsibility
+ Maintain IAM applications and servers for patching, antivirus and compliance
**Here's What You'll Need:**
+ Bachelor's degree in Computer Science or related field
+ 5+years experience
+ Deep understanding of SailPoint IdentityNow and integrating a variety of business applications and identity stores including but not limited to AD, EntraID, HR systems, LDAP directories
+ Experience with integrating enterprise SaaS applications for Single-Sign On a plus
+ Strong technical ability in BeanShell, Java, XML, SQL, REST.
+ Privileged Access Management (PAM) experience a plus
**Physical Requirements:**
The physical demands described here are representative of those that must be met by an associate to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.
May be required to lift and/or move 20 pounds. The associate is frequently required to sit/stand/walk. While performing the duties of this position, the associate is subject to a typical office environment and is rarely exposed to outside weather conditions. Temperatures may vary for those subject to any of the following areas: computer/server room, print shop, production area). The noise level in the work environment is usually low to moderate but may be high in distribution settings. Travel requirements vary by assignment.
As part of our **People First** culture, SpartanNash is proud to offer a robust and competitive Total Rewards benefits package ( .
SpartanNash is an Equal Opportunity Employer that invests in Associate development, recognizes and celebrates success, fosters two-way communication, and promotes a sense of belonging. We are committed to providing equal employment opportunities to all individuals, including those with disabilities and Veterans.
We are not able to sponsor work visas for this position.
**SpartanNash (Nasdaq: SPTN) is a food solutions company that delivers the ingredients for a better life. Committed to fostering a** **People First** **culture, the SpartanNash family of Associates is 20,000 strong. SpartanNash operates two complementary business segments - food wholesale and grocery retail. Its global supply chain network serves wholesale customers that include independent and chain grocers, national retail brands, e-commerce platforms, and U.S. military commissaries and exchanges. The Company distributes products for every aisle in the grocery store, from fresh produce to household goods to its OwnBrands, which include the Our Family® portfolio of products. On the retail side, SpartanNash operates nearly 200 brick-and-mortar grocery stores, primarily under the banners of Family Fare, Martin's Super Markets and D&W Fresh Market, in addition to dozens of pharmacies and fuel centers with convenience stores. Leveraging insights and solutions across its segments, SpartanNash offers a full suite of support services for independent grocers. For more information, visit** **spartannash.com** **.**
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by state or federal law. Reasonable accommodations may be made to enable individuals with disabilities to perform essential job functions. If you require assistance or an accommodation of any kind to complete an application, please contact us at