Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
First American

Principal Identity Engineer – Cloud IAM, CIAM

First American

Principal Identity Engineer leading IAM architecture and strategy across cloud environments for First American. Designing secure identity models and overseeing enterprise IAM capabilities.

Posted 5/21/2026full-timeRemote • California • 🇺🇸 United StatesLead💰 $170,900 - $227,900 per yearWebsite

Tech Stack

Tools & technologies
AWSCloudPythonTerraform

About the role

Key responsibilities & impact
  • Own the enterprise IAM strategy and target-state architecture across Microsoft Entra, AWS, and Google Cloud (OCI a plus).
  • Define secure, scalable identity patterns for workforce, partner, and customer access that align with security, risk, and compliance requirements.
  • Design and operationalize a Zero Trust identity model with continuous verification, risk-based access, and adaptive authentication.
  • Reduce standing privilege through least privilege design, just-in-time (JIT) access, and standardized entitlement models.
  • Hands-on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments.
  • Lead modernization efforts, including migration from hybrid Active Directory to Entra ID–based authentication.
  • Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms.
  • Balance security, privacy, performance, and customer experience while enabling scalable enterprise integrations.
  • Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence.
  • Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness.
  • Define and lead an enterprise IAM-as-Code program using Terraform and GitHub.
  • Build reusable, versioned modules and establish PR-based workflows with auditability, approvals, and security guardrails.
  • Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, drift detection, and rollback strategies.
  • Ensure reliable, auditable identity changes with operational monitoring and clear runbooks.
  • Develop automation in Python, Bash, and JSON to scale identity operations and reduce manual risk.
  • Support policy management, bulk changes, integrations, and identity-related incident response and diagnostics.

Requirements

What you’ll need
  • Deep hands-on experience designing and operating identity platforms at scale in complex environments.
  • Advanced expertise across Microsoft Entra ID, AWS IAM, and Google Cloud IAM, with OCI experience a plus.
  • Proven ability to design cloud-agnostic IAM models and implement them consistently across platforms.
  • Strong background in IAM security architecture, governance, and risk-based access controls.
  • Hands-on experience with least privilege design, JIT access, Zero Trust identity, and RBAC/ABAC models.
  • Expert knowledge of OAuth 2.0, OpenID Connect, and SAML.
  • Proven experience delivering enterprise-scale SSO and MFA solutions.
  • Demonstrated experience establishing IAM-as-Code using Terraform with GitHub-based change control.
  • Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design.
  • Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs.

Benefits

Comp & perks
  • Medical insurance
  • Dental insurance
  • Vision insurance
  • 401k
  • PTO/paid sick leave
  • Employee stock purchase plan

ATS Keywords

✓ Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills & Tools
identity access management (IAM)Zero Trust identity modelleast privilege designjust-in-time (JIT) accesssingle sign-on (SSO)multi-factor authentication (MFA)identity lifecycle managementTerraformPythonBash
Soft Skills
leadershipcommunicationorganizational skillsproblem-solvingcollaboration