Job Title : Senior IAM and Corporate Security Engineer
We are looking for a dedicated and experienced Senior IAM and Corporate Security Engineer to own and mature our identity and access management program. In this critical role, you will be responsible for designing, implementing, and managing the systems and processes that control access to our corporate, cloud, and application environments. You will be a key contributor to our modern identity solutions, corporate security posture, ensuring that employee workstations, corporate networks, and SaaS applications are secure.
This is a hands-on role for an engineer who is passionate about automation, security-as-code, and building a scalable and secure identity fabric for a complex, multi-cloud enterprise.
What You Will Do (Key Responsibilities) :
- Own and lead our corporate security program, with a primary focus on hardening employee endpoints (macOS, Windows) and securing our email infrastructure against modern threats, using industry frameworks like CIS Benchmarks.
- Design, implement, and manage our corporate security toolchain, including Extended Detection and Response (XDR), Mobile Device Management (MDM), and other endpoint protection solutions to enforce a Zero Trust security model.
- Respond to and investigate access-related security incidents and alerts, serving as a key partner to our InfoSec and IT teams.
- Architect and govern the IAM framework across our multi-cloud environments (AWS), ensuring the consistent application of least-privilege principles for all cloud resources and workloads.
- Partner with DevOps and engineering teams to integrate and embed automated IAM controls directly into their workflows and CI / CD pipelines.
- Develop and automate the end-to-end identity lifecycle program, partnering with IT and HR to streamline access requests, periodic reviews, and entitlement management.
- Research and develop IAM frameworks to securely govern access for emerging technologies, including our LLM and AI platforms, and create clear documentation for all IAM standards and procedures.
Required Qualifications :
5 to 7 years of direct experience in a hands-on Identity and Access Management engineering role.Expert-level proficiency in at least one major Identity Provider (Okta, Azure AD), with a proven track record of designing secure authentication policies (SSO / MFA) and streamlining identity governance processes.Demonstrated ability to architect and manage IAM controls in a multi-cloud environment, with deep, mandatory experience securing services and resources using AWS IAM.Demonstrable experience deploying and managing a Privileged Access Management (PAM) solution within engineering environments.Solid understanding of modern authentication and authorization protocols, including SAML, OAuth 2.0, OIDC, and passwordless standards like FIDO2.Demonstrable expertise in corporate security, with hands-on experience hardening employee endpoints (macOS, Windows) according to frameworks like CIS Benchmarks, securing corporate email infrastructure (e.g., anti-phishing, DMARC), and managing endpoint security solutions.Preferred Qualifications :
Experience with scripting languages such as Python or PowerShell for automation.Strong proficiency with Infrastructure as Code, specifically using Terraform to manage IAM resources.Familiarity with identity governance and administration (IGA) platforms.Relevant industry certifications such as CISSP, etc.Experience building IAM controls for AI / ML or LLM environments.Bachelor's degree in Computer Science, Information Security, or a related field.(ref : hirist.tech)