Назад
Company hidden
4 дня назад

Senior Security Engineer (Identity & Access Management)

180 000 - 230 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer (Identity & Access Management) (IAM/AI): Designing and operating workforce identity systems and customer-facing authentication and authorization capabilities for a regulated mortgage-servicing platform with an accent on least-privilege access, privileged access management, and secure identity patterns. Focus on building AI-assisted IAM workflows, securing agentic identities and AI pipelines, and addressing complex compliance and infrastructure security risks.

Location: Remote; hirify.global offices are located in New York City and San Francisco. Base compensation may vary by location.

Salary: $180,000–$230,000 base compensation, plus equity.

Company

hirify.global is building an AI-native operating system for regulated finance, starting with mortgage servicing, and operates its own mortgage servicing business.

What you will do

  • Design and operate the full lifecycle of workforce identity systems, including identity automation, access management, and least-privilege enforcement.
  • Manage and evolve the enterprise identity provider, including SSO integrations, MFA policies, conditional access, and directory synchronization.
  • Define RBAC and group-based access policies for internal applications, cloud environments, and development tooling.
  • Support privileged access management and secure identity design patterns for hirify.globalOS product teams.
  • Build AI-assisted workflows for IAM operations and evaluate risks such as data exposure and prompt injection in IAM pipelines.
  • Collaborate with Product, Engineering, Data, Compliance, and Legal on data security risks, incident response, vulnerability management, regulatory compliance, and security reviews.

Requirements

  • 5+ years of security engineering experience focused on identity and access management.
  • Hands-on ownership of enterprise identity solutions and experience administering Okta, Entra ID, or Google Workspace, including SSO, MFA, SCIM, and directory synchronization.
  • Deep knowledge of SAML 2.0, OIDC/OAuth 2.0, LDAP, RBAC, ABAC, and API access controls.
  • Experience with cloud IAM, preferably GCP, including service accounts, workload identity federation, and policy-as-code.
  • Strong experience building PAM solutions and enforcing least privilege for human and non-human identities.
  • Bachelor’s degree in Information Security, Computer Science, Technology, or a related field; relevant security certifications are valued.

Nice to have

  • Experience building AI/LLM-powered workflows in security or operations.
  • Experience securing AI service accounts, API keys, agentic identities, and automated-system audit logging.
  • Experience in high-growth or startup environments.
  • CISSP, CISM, CCSK, CCSP, or similar certification.

Culture & Benefits

  • Competitive salary, meaningful equity, and a 401(k) plan.
  • Comprehensive medical, dental, and vision benefits.
  • Flexible paid time off, sick days, and 11 company holidays.
  • Fully paid 12-week baby bonding leave for birthing and non-birthing parents.
  • Learning and development opportunities, regular review cycles, and 360-degree feedback.
  • Quarterly budgets for team and company outings, plus commuter benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →