Apply threat intelligence context to prioritize identity exposure remediation;
Lead identity-focused purple team engagements;
Design identity controls embedded in AI-augmented CI/CD pipelines;
Define and track identity KPIs;
Partner with GRC on identity controls aligned to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA;
Support audits, certifications, e-discovery, and forensic integrity requirements;
Provide technical guidance and mentorship to Advanced and Engineer-level identity engineers.
требования
Bachelor's degree in Computer Science, Information Security, or equivalent experience;
8+ Years of hands-on experience in enterprise IAM or security engineering with deep specialization in identity, authentication, and access domains; alternatively, a Master's degree in Cybersecurity or a relevant field with 6+ years of experience;
Expert hands-on experience architecting and operating identity platforms across Okta, Entra ID/Azure AD, Ping, SailPoint, Saviynt, CyberArk, and BeyondTrust;
Advanced knowledge of SAML, OIDC, OAuth 2.0, SCIM, LDAP, and Kerberos;
Experience leading identity threat detection, complex access investigations, and detection-engineering efforts;
Ability to design automation for access enforcement and observability;
Working command of MITRE, NIST 800-63, and Zero Trust frameworks;
Proficiency in Python, Bash, or PowerShell applied to containerized services, CLI-based commands, and identity-specific use cases;
Ability to mentor engineers and communicate technical strategy and findings clearly to engineering peers, leadership, and non-technical stakeholders;
Nice to have: Experience securing SaaS, cloud-native, or globally distributed regulated environments, cloud IAM across AWS, Azure, or GCP, securing non-human/workload identities at scale, AI-augmented security and governance, identity controls in CI/CD and infrastructure-as-code environments, legal technology and e-discovery, digital forensics chain-of-custody requirements, compliance and audit engagements, CISSP, CISM, GCIH, GCFA, CCSP, AWS Security Specialty, SC-300, or AZ-500.
условия
Comprehensive health, dental, and vision plans;
Parental leave for primary and secondary caregivers;
Flexible work arrangements;
Two, week-long company breaks per year;
Additional time off;
Long-term incentive program;
Training investment program;
Competitive base salary, annual performance bonus, and long-term incentives;
The final offered salary will depend on experience, skills, qualifications, and internal pay equity.