{"id":2359,"date":"2025-06-18T04:22:16","date_gmt":"2025-06-18T04:22:16","guid":{"rendered":"https:\/\/estreetsecurity.com\/services\/?post_type=jobpost&#038;p=2359"},"modified":"2025-06-18T04:22:17","modified_gmt":"2025-06-18T04:22:17","slug":"senior-cybersecurity-engineer-identity-access-management-iam","status":"publish","type":"jobpost","link":"https:\/\/estreetsecurity.com\/services\/jobs\/senior-cybersecurity-engineer-identity-access-management-iam\/","title":{"rendered":"Senior Cybersecurity Engineer &#8211; Identity &amp; Access Management (IAM)"},"content":{"rendered":"\n<h2 class=\"wp-block-heading\">Senior Cybersecurity Engineer &#8211; Identity &amp; Access Management (IAM)<\/h2>\n\n\n\n<p><strong>Posted:<\/strong> June 18, 2025 <strong>Job Type:<\/strong> Permanent <strong>Industry:<\/strong> Cybersecurity<\/p>\n\n\n\n<p>A globally leading technology company at the forefront of the <strong>payments and financial services sector<\/strong> is actively seeking a highly skilled and strategic <strong>Senior Cybersecurity Engineer<\/strong> to join its pivotal <strong>Identity &amp; Access Management (IAM)<\/strong> team. This isn&#8217;t just a role; it&#8217;s a high-impact opportunity within a dynamic and rapidly evolving cybersecurity organization. You&#8217;ll be directly responsible for designing, implementing, and maintaining secure access to vital business portals and services across a vast, complex, and global enterprise. If you&#8217;re a seasoned professional passionate about securing digital identities, architecting robust access solutions, and thriving in a challenging, fast-paced environment, this opportunity in Austin, TX, is tailored for you.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\">Location &amp; Compensation:<\/h3>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Location:<\/strong> Austin, TX (This role offers a flexible <strong>hybrid work model<\/strong>, blending onsite collaboration with remote work.)<\/li>\n\n\n\n<li><strong>Salary:<\/strong> USD $175,000 annually<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\">About the Role:<\/h3>\n\n\n\n<p>As a Senior Cybersecurity Engineer on the IAM team, you will be a critical contributor to the strategic design, robust implementation, and ongoing maintenance of our client&#8217;s core IAM solutions. Your expertise will be particularly concentrated on <strong>ForgeRock technologies<\/strong>, serving as a key pillar in their access management ecosystem. You&#8217;ll operate within a dynamic hybrid work environment, necessitating extensive collaboration with cross-functional teams and stakeholders situated across multiple global time zones. Your overarching objective will be to ensure the seamless deployment and optimal functioning of secure, scalable, and high-performing access management systems that not only meet the current demands but also anticipate and adapt to the evolving needs of a cutting-edge global organization.<\/p>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\">Key Responsibilities:<\/h3>\n\n\n\n<p>Your responsibilities in this crucial, high-visibility role will include:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Web Application Single Sign-On (SSO) Integration:<\/strong> You&#8217;ll lead the seamless integration of diverse web applications for single sign-on (SSO) capabilities, leveraging the full power of <strong>ForgeRock<\/strong> solutions to streamline user experience while maintaining stringent security.<\/li>\n\n\n\n<li><strong>Identity Federation Configuration:<\/strong> You&#8217;ll expertly configure and manage identity federation, utilizing industry-standard protocols such as <strong>SAML 2.0, OpenID Connect (OIDC), and OAuth<\/strong> to enable secure and efficient cross-domain access.<\/li>\n\n\n\n<li><strong>Authentication &amp; Authorization Policy Development:<\/strong> You&#8217;ll be instrumental in developing, implementing, and meticulously managing sophisticated authentication chains and granular authorization policies. This ensures precise control over who can access what, under what conditions, across the entire enterprise.<\/li>\n\n\n\n<li><strong>ForgeRock Core System Management:<\/strong> You&#8217;ll be responsible for the end-to-end installation, configuration, and optimization of core <strong>ForgeRock AM (Access Management)<\/strong> and <strong>Directory Server (DS)<\/strong> components, ensuring their stability, performance, and security.<\/li>\n\n\n\n<li><strong>Session &amp; Directory Synchronization:<\/strong> You will implement robust session management strategies and efficient directory synchronization processes to maintain data consistency, user attributes, and access privileges across various identity stores.<\/li>\n\n\n\n<li><strong>LDAP Policy &amp; Custom Access Control:<\/strong> You&#8217;ll set up and enforce advanced <strong>LDAP<\/strong> password policies and design intricate access control mechanisms, including leveraging custom scripts, to meet highly specific security and compliance requirements.<\/li>\n\n\n\n<li><strong>Performance Engineering &amp; Monitoring:<\/strong> This role includes building and meticulously maintaining performance testing labs, alongside developing sophisticated monitoring scripts. Your efforts here will ensure the optimal health, responsiveness, and scalability of the IAM infrastructure.<\/li>\n\n\n\n<li><strong>ForgeRock Agent Deployment &amp; Management:<\/strong> You&#8217;ll strategically deploy and manage <strong>ForgeRock agents<\/strong> across a variety of web and application servers throughout the global enterprise, ensuring consistent policy enforcement.<\/li>\n\n\n\n<li><strong>Global Team Collaboration &amp; Requirements Alignment:<\/strong> You&#8217;ll collaborate extensively and effectively with global teams to understand their unique business needs and security requirements, translating these into actionable, secure, and scalable IAM solutions.<\/li>\n\n\n\n<li><strong>IAM Subject Matter Expertise:<\/strong> You&#8217;ll serve as a primary <strong>subject matter expert (SME)<\/strong> for IAM technologies and best practices, providing critical guidance, insights, and mentorship to internal teams and projects.<\/li>\n\n\n\n<li><strong>Technical Design &amp; Documentation:<\/strong> You are expected to create and maintain comprehensive technical designs, detailed infrastructure configurations, and clear operational runbooks, ensuring accuracy and facilitating effective knowledge transfer.<\/li>\n\n\n\n<li><strong>Multi-Factor Authentication (MFA) Support:<\/strong> You&#8217;ll provide expert support for multi-factor authentication (MFA) implementations, actively enhancing the overall security posture by strengthening user identity verification.<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\">Basic Qualifications:<\/h3>\n\n\n\n<p>Candidates are expected to meet the following foundational requirements:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Experience &amp; Education:<\/strong> A minimum of <strong>5+ years of directly relevant experience<\/strong> in cybersecurity or information technology, coupled with a Bachelor&#8217;s degree. An equivalent combination of education and experience will also be considered.<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<h3 class=\"wp-block-heading\">Preferred Qualifications:<\/h3>\n\n\n\n<p>Highly qualified candidates will also bring the following valuable experience and attributes:<\/p>\n\n\n\n<ul class=\"wp-block-list\">\n<li><strong>Extensive IAM\/Cybersecurity Experience:<\/strong> <strong>6+ years of dedicated experience<\/strong> specifically in Identity &amp; Access Management or broader cybersecurity engineering roles.<\/li>\n\n\n\n<li><strong>ForgeRock &amp; LDAP Mastery:<\/strong> Strong, in-depth knowledge and hands-on expertise with <strong>ForgeRock<\/strong> platforms (including Access Management, Directory Services, Identity Gateway), <strong>LDAP<\/strong> directories, and various authentication protocols (e.g., Kerberos, OAuth, OpenID Connect).<\/li>\n\n\n\n<li><strong>Web &amp; Application Server Experience:<\/strong> Proven experience configuring and troubleshooting web and application servers such as <strong>Apache, IIS, Tomcat, and Node.js<\/strong>, as well as comprehensive familiarity with both <strong>Linux and Windows operating environments<\/strong>.<\/li>\n\n\n\n<li><strong>Agile Development Methodologies:<\/strong> Strong familiarity with <strong>Agile\/Scrum methodologies<\/strong> and practical experience utilizing collaborative project management tools like <strong>Jira<\/strong>.<\/li>\n\n\n\n<li><strong>Security Standards &amp; Compliance:<\/strong> A solid understanding of key security standards and compliance frameworks relevant to financial services, such as <strong>PCI-DSS, NIST, and FFIEC<\/strong>.<\/li>\n\n\n\n<li><strong>Cloud IAM &amp; API Security:<\/strong> Direct experience with cloud-based IAM solutions (e.g., Azure AD, AWS IAM) and a strong grasp of <strong>API security principles<\/strong>, including API gateways and token-based authentication.<\/li>\n\n\n\n<li><strong>Exceptional Communication &amp; Documentation:<\/strong> Outstanding communication skills, both verbal and written, coupled with a demonstrated ability to create clear, concise, and comprehensive technical documentation for diverse audiences.<\/li>\n<\/ul>\n\n\n\n<hr class=\"wp-block-separator has-alpha-channel-opacity\"\/>\n\n\n\n<p>This is an exceptional opportunity for a senior-level cybersecurity engineer to make a profound impact within a global leader in financial technology. If you possess the required expertise in IAM, particularly with ForgeRock, and are eager to contribute to a secure and innovative payments ecosystem, we strongly encourage you to apply. We look forward to connecting with driven professionals who are ready for their next significant challenge!<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Senior Cybersecurity Engineer &#8211; Identity &amp; Access Management (IAM) Posted: June 18, 2025 Job Type: Permanent Industry: Cybersecurity A globally leading technology company at the forefront of the payments and financial services sector is actively seeking a highly skilled and strategic Senior Cybersecurity Engineer to join its pivotal Identity &amp; Access Management (IAM) team. This [&hellip;]<\/p>\n","protected":false},"author":1,"featured_media":0,"menu_order":0,"template":"","jobpost_category":[231],"jobpost_job_type":[348],"jobpost_location":[578],"jobpost_tag":[254,595,604,583,590,592,603,288,602,582,580,584,585,529,331,332,597,599,566,487,593,594,260,598,591,589,581,601,588,600,240,579,587,586,596,507],"class_list":["post-2359","jobpost","type-jobpost","status-publish","hentry","jobpost_category-security","jobpost_job_type-hybrid","jobpost_location-austin-tx","jobpost_tag-agile","jobpost_tag-apache","jobpost_tag-api-security","jobpost_tag-austin-tx","jobpost_tag-authentication","jobpost_tag-authorization","jobpost_tag-cloud-iam","jobpost_tag-cybersecurity","jobpost_tag-ffiec","jobpost_tag-financial-services","jobpost_tag-forgerock","jobpost_tag-forgerock-am","jobpost_tag-forgerock-ds","jobpost_tag-hybrid-work","jobpost_tag-iam","jobpost_tag-identity-and-access-management","jobpost_tag-iis","jobpost_tag-jira","jobpost_tag-ldap","jobpost_tag-linux","jobpost_tag-mfa","jobpost_tag-multi-factor-authentication","jobpost_tag-nist","jobpost_tag-node-js","jobpost_tag-oauth","jobpost_tag-openid","jobpost_tag-payments-industry","jobpost_tag-pci-dss","jobpost_tag-saml-2-0","jobpost_tag-scrum","jobpost_tag-security-engineer","jobpost_tag-senior-cybersecurity-engineer","jobpost_tag-single-sign-on","jobpost_tag-sso","jobpost_tag-tomcat","jobpost_tag-windows"],"aioseo_notices":[],"_links":{"self":[{"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost\/2359","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost"}],"about":[{"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/types\/jobpost"}],"author":[{"embeddable":true,"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/users\/1"}],"wp:attachment":[{"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/media?parent=2359"}],"wp:term":[{"taxonomy":"jobpost_category","embeddable":true,"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost_category?post=2359"},{"taxonomy":"jobpost_job_type","embeddable":true,"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost_job_type?post=2359"},{"taxonomy":"jobpost_location","embeddable":true,"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost_location?post=2359"},{"taxonomy":"jobpost_tag","embeddable":true,"href":"https:\/\/estreetsecurity.com\/services\/wp-json\/wp\/v2\/jobpost_tag?post=2359"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}