9 дней назад
Senior Identity & Access Management Engineer (CyberArk)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Identity & Access Management Engineer (CyberArk): Designing and enhancing identity governance, access management, and privileged access capabilities across SailPoint, CyberArk, Okta, and related enterprise systems with an accent on automation, RBAC, and regulatory compliance. Focus on building JML workflows, access certifications, PAM integrations, audit evidence generation, and reliable control solutions for SOX and ICFR requirements.
Location: Cedar Rapids, Iowa, United States; hybrid work arrangements. Applicants must be authorized to work for any employer in the United States. Visa sponsorship and transfer of employment visa sponsorship are not available.
Company
Financial Services provides equipment financing to businesses across the United States.
What you will do
- Design, build, and maintain identity lifecycle workflows, certification campaigns, and enterprise connectors in SailPoint IdentityNow.
- Develop RBAC models through role mining, role engineering, and role lifecycle governance.
- Administer Okta SSO, MFA, and SCIM-based lifecycle provisioning.
- Implement and support CyberArk PAM, including credential vaulting, session monitoring, JIT elevation, and privileged account onboarding.
- Automate access requests, JML provisioning and deprovisioning, entitlement reconciliation, reporting, and audit evidence using PowerShell and REST APIs.
- Support SOX, ICFR, segregation-of-duties, FFIEC, and audit requirements while improving IAM reliability and governance.
Requirements
- 5+ years of hands-on experience in IAM engineering or administration.
- 3+ years of direct SailPoint IdentityIQ and/or IdentityNow experience, including lifecycle workflows, certifications, and connector development or integration.
- Experience designing and deploying RBAC models, including role mining, role engineering, and role governance.
- Working experience with CyberArk PAM, including vaulting, session isolation and monitoring, and privileged account onboarding.
- Strong PowerShell scripting and REST API experience for automation, reconciliation, reporting, and audit evidence.
- Experience automating access requests and joiner, mover, and leaver provisioning across multiple enterprise systems.
Nice to have
- Experience administering Okta, including SSO, MFA, and SCIM provisioning.
- Financial services experience and knowledge of banking regulatory and control requirements.
- Experience with ICFR, SOX access controls, segregation of duties, and FFIEC guidance.
- Bachelor's degree in cybersecurity, computer science, or a related field.
- SailPoint, CyberArk, Okta, CISSP, or equivalent certifications.
Culture & Benefits
- Full-time employment with competitive compensation and monthly bonuses for eligible employees.
- 401(k) with company match, annual profit sharing, paid time off, paid holidays, and paid sick days.
- Health, dental, vision, disability, life insurance, FSA, HSA, parental leave, and employee assistance benefits.
- Tuition assistance, networking opportunities, and leadership development programs.
- Hybrid work arrangements, paid parking, gym reimbursement, and a business-casual environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
2 дня назад
Sr. IAM Cybersecurity Engineer, Enterprise Identity
159 600 - 239 400$
2 дня назад
Senior IAM Engineer (Entra ID/AD)
4 дня назад
Senior IAM Engineer
87 000 - 161 300$
3 дня назад
Identity Security Specialist Solutions Engineer (CyberArk)
3 дня назад
Senior Workforce IAM Governance Specialist (IAM)
97 100 - 161 800$
3 дня назад
Workforce IAM Governance Specialist (Cybersecurity)
80 900 - 134 800$