Security Engineer – L3
Core
Designing and architecting enterprise-wide Identity and Access Management (IAM) solutions, implementing Zero Trust models, and managing privileged access to secure customer IT infrastructure.
Role type
Senior Identity and Access Management (IAM) / Privileged Access Management (PAM) Engineer
Builds
Enterprise IAM, MFA, PAM solutions, Zero Trust access models, and automated identity operations pipelines.
Domain
Cybersecurity, Identity Governance, Cloud Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
CyberArk/BeyondTrust/Delinea/HashiCorp Vault, Microsoft Entra ID, AWS IAM, Google Cloud IAM, SAML, OAuth, OpenID Connect, LDAP, Kerberos, Zero Trust Architecture, Identity Governance and Administration (IGA), Advanced security analytics, PowerShell, Python
Preferred skills
CyberArk Defender/Sentry/Guardian certification, CIAM, Microsoft Certified Identity and Access Administrator, CISSP, CCSP, CISM
Technologies
CyberArk, BeyondTrust, Delinea, HashiCorp Vault, Microsoft Entra ID, AWS IAM, Google Cloud IAM, Active Directory, LDAP, SAML, OAuth, OpenID Connect, PowerShell, Python
Responsibilities
Design and architect enterprise-wide IAM, MFA, and PAM solutions; Lead deployment and integration of PAM platforms with cloud platforms and SSO solutions; Develop privileged access governance frameworks and Zero Trust access models; Implement advanced Conditional Access, Risk-Based Authentication, and Just-in-Time (JIT) access controls; Perform advanced threat analysis involving privileged accounts and identity-based attacks; Lead security audits, compliance assessments, and access reviews; Develop automation using APIs, PowerShell, Python, or scripting tools for identity operations; Mentor L1/L2 engineers and provide escalation support for critical incidents.
Seniority
Senior, hands-on IC