Назад
Company hidden
3 дня назад

IAM Lead

108 006 - 183 610$
Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IAM Lead (Entra ID/Okta): Architecting and operating identity and access management platforms for a federal cloud-first Zero Trust program with an accent on phishing-resistant authentication, lifecycle automation, and privileged access controls. Focus on implementing fine-grained authorization, identity federation, NIST assurance requirements, and incident response across users, devices, applications, and APIs.

Location: Remote-friendly within the United States, with occasional onsite requirements in the Washington, DC Metro area. Work must be performed in the US; access from foreign locations and personal VPN connections are prohibited.

Salary: $108,006–$183,610 per year

Company

hirify.global is an advisory and technology services provider delivering technology solutions for complex client and federal programs.

What you will do

  • Architect, configure, and operate Entra ID, Entra External ID, and Okta for authentication, authorization, provisioning, federation, and identity lifecycle management.
  • Implement phishing-resistant and passwordless authentication using passkeys, FIDO2, WebAuthn, biometrics, and conditional access policies.
  • Design Zero Trust access controls and authorization models using RBAC, PBAC, and ABAC based on risk, device health, location, behavior, and least privilege.
  • Manage privileged accounts with PAM and just-in-time elevation, including time-bound access logging and monitoring.
  • Build HR-driven joiner, mover, and leaver automation, external identity federation, application integrations, and directory synchronization.
  • Monitor identity risks and incidents, support audits, produce access certifications and control evidence, and document architectures and runbooks.

Requirements

  • Bachelor's degree or equivalent.
  • 7+ years of experience in IAM engineering or a related discipline.
  • 3+ years of hands-on production experience with Entra ID or Okta, including conditional access, lifecycle management, and federation.
  • At least 2 years of experience implementing PAM and just-in-time elevation, plus 2 years configuring RBAC, PBAC, or ABAC.
  • At least 2 years supporting federal IT programs in HHS, NIH, FDA, or other health-focused agencies.
  • US citizenship, US work authorization, residence in the US, and the ability to obtain and maintain a Public Trust background investigation are required.

Nice to have

  • Experience implementing NIST SP 800-63 identity assurance levels, including IAL and AAL.
  • Experience with Entra External ID, FISMA, NIST 800-53, and federal Zero Trust requirements.
  • Experience integrating IAM platforms with HR systems and supporting identity incident response.
  • Microsoft Identity and Access Administrator, Okta Administrator, or equivalent certification.

Culture & Benefits

  • Full-time employment with pay determined by experience, skills, certifications, location, education, and contract provisions.
  • Collaboration across cybersecurity, compliance, enterprise architecture, and application teams.
  • Equal opportunity workplace with reasonable accommodations available throughout the employment process.
  • AI tools may not be used to generate or assist with interview responses, except where required as an approved accommodation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →