CareerPlanSign in

Identity and Access Security Engineer

Baltimore, MD💼 Full-time🗓 2026-08-07 → 2026-09-26

Core

Lead and mature identity security controls across Okta, Microsoft Entra ID, Active Directory, CyberArk, and BloodHound Enterprise to reduce identity-related risk across workforce, privileged, service, application, and machine identities.

Role type

Senior Identity and Access Security Engineer

Builds

Identity security governance, privileged access management (PAM), identity threat exposure management, and access control workflows for a mid-sized financial services firm.

Domain

Financial Services / Identity and Access Management (IAM)

Deliverable

production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work

Required skills

Identity engineering, privileged access management, identity threat exposure management, access governance, attack-path remediation, operational control assurance, Active Directory administration, Microsoft Entra ID administration, Okta administration, CyberArk administration, BloodHound Enterprise analysis, service account governance, identity lifecycle automation, SSO integration, Conditional Access configuration, SIEM integration, security metrics reporting, audit finding remediation.

Preferred skills

Experience with identity providers other than Okta, experience with PAM platforms other than CyberArk, experience with BloodHound Community Edition, experience governing non-human identities beyond service accounts, experience with MFA and provisioning/deprovisioning workflows.

Technologies

Okta, Microsoft Entra ID, Active Directory, CyberArk, BloodHound Enterprise, SIEM

Responsibilities

Own day-to-day security governance and engineering of identity controls; design, implement, and operate privileged-access controls using CyberArk; govern the lifecycle of privileged human and non-human identities; identify and remediate unmanaged or improperly configured privileged accounts; operate BloodHound Enterprise to analyze attack paths and remediate weaknesses; maintain Tier Zero and critical-identity models; assess and improve Active Directory security; integrate applications with Okta and Entra ID; lead access review routines; partner with HR and Compliance to improve identity workflows; strengthen identity detection and response; define and report identity-security metrics; drive remediation of audit and penetration-test findings; provide guidance to teams on secure identity patterns.

Seniority

Senior, hands-on IC

Sourced via workday · Listed on CareerPlan, which tracks 70,000+ jobs from 20+ sources.