Security Engineer, Identity and Access Management (IAM)
Core
Build and operate the identity platform governing authentication and authorization across corporate, engineering, and mission environments for a high-growth satellite company.
Role type
Mid-level Security Engineer (Identity & Access Management)
Builds
Enterprise identity provider, SSO, federation, phishing-resistant MFA, and lifecycle automation workflows.
Domain
Aerospace / Satellite Manufacturing / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Enterprise identity provider administration (Okta, Entra ID, Ping, Google Identity), SSO, MFA, SAML, OIDC, OAuth 2.0, SCIM, LDAP, Python/PowerShell/Go scripting, Cloud IAM (AWS/Azure/GCP), Privileged Access Management, Secrets management, Conditional access policies, Access review campaigns, Infrastructure as Code.
Preferred skills
CompTIA Security+, Okta Certified Professional, Microsoft SC-300, Terraform/CloudFormation/CDK, HashiCorp Vault, Active Directory/Kerberos, Identity Threat Detection (ITDR), SIEM tooling.
Responsibilities
Administer enterprise identity platform (IdP, SSO, directory services); Onboard applications to SSO and automate provisioning; Operate identity lifecycle workflows (joiner/mover/leaver); Drive adoption of phishing-resistant MFA; Maintain role-based access groups and entitlements; Support privileged access management; Assist with secrets management hygiene; Implement and monitor conditional access policies; Execute access review campaigns; Write scripts to automate identity operations; Triage identity-related tickets and incidents; Contribute to identity documentation and standards.
Seniority
Junior to Mid-level, hands-on IC