Lyric - Clarity in motion.

Senior IAM Engineer

Lyric - Clarity in motion.

full-time

Posted on:

Origin:  • 🇺🇸 United States

Visit company website
AI Apply
Manual Apply

Salary

💰 $102,021 - $153,032 per year

Job Level

Senior

Tech Stack

AzureCyber SecurityPythonSplunk

About the role

  • We are seeking a skilled Senior Identity and Access Management (IAM) Engineer to design, implement, and optimize IAM solutions that support secure and compliant enterprise environments.
  • The IAM Engineer will work across IT, security, and business teams to ensure effective access controls, drive automation, and enhance security posture.
  • Configure, maintain, and enhance IAM platforms such as Okta, SailPoint, Azure AD, and Ping Identity.
  • Implement and manage identity federation protocols (SAML, OAuth, OpenID Connect).
  • Define and enforce access policies following least privilege and RBAC principles.
  • Conduct periodic access reviews and ensure compliance with GDPR, SOX, and HIPAA.
  • Troubleshoot and resolve IAM-related incidents, including unauthorized access or integration failures.
  • Automate identity lifecycle management using scripting languages such as PowerShell or Python.
  • Collaborate with cross-functional teams to integrate IAM solutions with enterprise applications and services.
  • Provide Tier 2/3 support for escalated IAM issues and act as SME for IAM initiatives.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field or 8 years related experience
  • 3 + years of professional experience in IAM or related security roles.
  • 3 + years of experience with IAM systems such as Okta, Azure AD, SailPoint, and directory services (Active Directory, LDAP).
  • 1 + years with identity federation protocols (SAML, OAuth, OIDC) and MFA solutions.
  • 3 + years of experience scripting languages (PowerShell, Python) for IAM automation tasks.
  • Knowledge of compliance standards including GDPR, SOX, and HIPAA.
  • Experience with privileged access management (e.g., CyberArk, BeyondTrust).
  • Familiarity with SIEM tools such as Splunk or LogRhythm.
  • Exposure to DevOps, CI/CD pipelines, and automation frameworks.
  • Relevant certifications such as CompTIA Security+, Microsoft Certified Identity and Access Administrator Associate, or Certified Identity and Access Manager (CIAM).