IAM Security Engineer
Insight Global
Job Description
We are seeking a Security Engineer Prin with strong expertise in Identity and Access Management (IAM) to support and secure a FedRAMP ATO–authorized environment. The ideal candidate has hands-on experience designing, implementing, and operating Privileged Access Management (PAM) and Identity Governance & Administration (IGA) solutions while ensuring compliance with NIST 800-53 Moderate controls.
This role requires deep technical skills in Delinea PAM, One Identity IGA, Microsoft Entra ID, Azure Automation and automation using PowerShell, calling API’s and modern scripting languages to support secure, scalable, and compliant cloud environments.
Key Responsibilities:
Identity & Access Management
• Design, implement, and maintain Delinea PAM solutions for privileged account discovery, credential vaulting, session management, and just-in-time access.
• Implement and support One Identity IGA for identity lifecycle management, access requests, approvals, certifications, and role-based access control.
• Design, develop, and maintain API integrations between IAM platforms (Delinea PAM, One Identity IGA, Microsoft Entra ID) and non-identity systems, including ServiceNow, SIEM/SOAR platforms, and other enterprise applications.
• Manage and secure identities in Microsoft Entra ID (Azure AD), including:
o Conditional Access policies
o MFA and passwordless authentication
o Privileged Identity Management (PIM)
o External and workforce identities
Security Engineering & Automation
• Develop and maintain PowerShell automation for IAM, PAM, and compliance workflows.
• Create scripts and tools using Python, Bash, or other modern languages to integrate security platforms and automate controls.
• Integrate IAM solutions with cloud platforms, SaaS applications, and on-prem systems.
• Support secure API integrations and identity federation (SAML, OAuth 2.0, OIDC).
• Automate identity lifecycle, access requests, approvals, provisioning, and deprovisioning workflows using REST APIs, webhooks, and scripted integrations.
FedRAMP & Compliance
• Implement and operate security controls aligned with NIST 800-53 Moderate.
• Support FedRAMP ATO audits, assessments, and continuous monitoring activities.
• Produce and maintain technical documentation, SOPs, and evidence artifacts.
• Participate in vulnerability remediation, access reviews, and incident response related to identity security.
• Ability to obtain and maintain Public Trust clearance
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Skills and Requirements
5+ years engineering experience with IAM capabilities / technologies such as IGA,
PAM, and IAM
• Expert knowledge and hands-on technical experience with MS Entra,
Onprem Delinea PAM, IAM, and One Identity IGA solutions
• Expert knowledge and hands-on technical experience with automation calling API’s
• Expert knowledge of SSO, MFA, RBAC, MS Entra PIM
• Highly proficient in automation scripting languages such as PowerShell
• Superior communication skills (written and verbal) with an ability to articulate
complex topics in a business understandable manner at all levels in an enterprise
• Ability to prioritize workload and consistently meet deadlines in a fast-paced
environment • Familiarity with Proofpoint email security platforms, including identity-based threat
protection and user risk signals.
• Experience implementing and managing FIDO2 / hardware security keys (e.g.,
YubiKeys) for phishing-resistant authentication.
• Certifications such as CISSP, Cloud Security (CCSP, CCSK, AZ-305, AZ-500) are
highly desirable
• Bachelor’s degree is a plus
Confirm your E-mail: Send Email
All Jobs from Insight Global