Turn this role into an interview — a resume and cover letter built around what this employer wants.
Covetus is seeking a experienced IAM professional in Irving, TX to drive identity and access management initiatives in a complex, possibly financial services environment. The role emphasizes strong communication, analytics, and cross-team collaboration.
Responsibilities include design, implementation, and optimization of IAM controls, PBAC concepts with PlainID/Axiomatics, and automation using Python or PowerShell in a large-scale setup.
5+ years of experience in Identity and Access Management.
Experience working in Financial Services or a large complex and/or global environment
Consistently demonstrates clear and concise written and verbal communication
Comprehensive knowledge of design metrics, analytics tools, benchmarking activities and related reporting to identify best practices
Demonstrated analytic/diagnostic skills
Ability to work in a matrix environment and partner with virtual teams
Ability to work independently, prioritize, and take ownership of various parts of a project or initiative
Ability to work under pressure and manage to tight deadlines or unexpected changes in expectations or requirements
Proven track record of operational process change and improvement
Strong understanding of PBAC principles and implementation experience with leading PBAC solutions (e.g., PlainID, Axiomatics) at scale, handling large user populations and complex access scenarios.
Proven experience in scripting and automation using languages such as Python, PowerShell, or similar.
Experience with directory services (e.g., Active Directory, LDAP) and identity providers (e.g., PlainID, Okta, Azure AD).
Familiarity with security protocols such as SAML, OAuth, and OpenID Connect.
Strong analytical and problem-solving skills.
Excellent communication and collaboration skills.
Education:
Bachelor’s degree/University degree or equivalent experience
Required Skillsets:
Red Team Operations, External Attack Surface Management, Penetration Testing, Adversary Emulation, Vulnerability Assessment, Threat Intelligence, Network Security, Cloud Security, Offensive Security Engineering, Security Automation, Infrastructure Engineering, and Continuous Security Validation.