IAM Cybersecurity Engineer

D&H Distributing Co.

Harrisburg (Dauphin County)

On-site

USD 100,000 - 140,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Employee Stock Ownership Plan
401k
Paid Time Off
Medical Insurance
Prescription Coverage
Dental and Vision
Gym Reimbursement
Work From Home Reimbursement
Employee Purchase Program
Tuition Assistance

Job summary

D&H Distributing Co. is seeking an IAM Security Engineer to design, implement, and maintain identity and access management solutions across cloud, SaaS, and on‑premises environments. You will manage IdP integrations, MFA controls, and Conditional Access policies to protect our systems and data.

The role requires hands-on experience with Entra ID, Active Directory, SSO, and CIAM, and collaboration with application, infrastructure, and security teams to strengthen our security posture.

Qualifications

  • Experience with IAM concepts including authentication, authorization, lifecycle management and least privilege.
  • Hands-on with IDaaS platforms, Entra ID, AD, MFA, and Conditional Access policies.
  • Experience integrating applications with SSO and federation protocols (SAML/OIDC/OAuth).

Responsibilities

  • Design, implement, administer, and support IAM solutions across cloud, SaaS & on-prem environments.
  • Configure integrations with identity providers using SAML, OAuth, OpenID Connect, LDAP, SCIM.
  • Manage Microsoft Entra ID, Active Directory, hybrid identity, authentication methods, and identity sync.
  • Implement and maintain MFA controls, passkeys, phishing-resistant auth, and passwordless methods.
  • Develop and enforce Conditional Access policies aligned to security standards and least privilege.
  • Support CIAM for customer-facing identity use cases including secure registration and authentication.
  • Collaborate with teams to enable SSO, MFA, identity governance, and access management controls.
  • Troubleshoot authentication/authorization issues and support identity lifecycle processes.
  • Monitor logs, risky sign-ins, and audit events; participate in incident response and remediation.
  • Evaluate new identity security technologies and automation opportunities.

Skills

IAM concepts
IDaaS platforms
Entra ID & Active Directory
SSO & federation
MFA & passkeys
CIAM concepts
Security incident response
PowerShell scripting

Education

Associate degree in Cybersecurity
Bachelor degree preferred

Tools

SAML
OAuth
OpenID Connect
LDAP
SCIM

Job description

D&H is growing! Join 100+ year old Employee-Owned technology distributor, offering end-to-end solutions for today's resellers, retailers, and the clients they serve across the SMB and Consumer markets.

  • We are empowered by our employee Co-Owners who provide the industry’s best service, and we promote a collaborative culture.
  • We offer an Employee Stock Ownership Plan, 401k, Paid Time Off, Medical, Prescription, Dental and Vision benefits as well as Gym Reimbursement, Work from Home Reimbursement, Employee Purchase Program, Tuition Assistance and much more!
  • As a D&H Co-Owner you receive numerous discounts on services.
  • We feel strongly about giving back to the community and promoting sustainable, eco-friendly business practices.
SUMMARY

The IAM Security Engineer is responsible for designing, implementing, maintaining, and improving identity and access management solutions that protect company systems, applications, users, and data. This role supports secure authentication, authorization, single sign-on, multi-factor authentication, identity lifecycle management, and access control capabilities across cloud, SaaS, and on-premises environments.

Knowledge of IDaaS platforms, identity providers, Microsoft Entra ID, Active Directory, MFA, passkeys, Microsoft Authenticator, Conditional Access policies, federation, SSO, and Customer Identity and Access Management (CIAM) capabilities is essential to this role.

ESSENTIAL DUTIES AND RESPONSIBILITIES
  • Design, implement, administer, and support enterprise identity and access management solutions across cloud, SaaS, and on-premises environments.
  • Engineer and maintain identity provider integrations using standards such as SAML, OAuth, OpenID Connect, LDAP, SCIM, and federation technologies.
  • Configure and support Microsoft Entra ID, Active Directory, hybrid identity services, enterprise applications, app registrations, authentication methods, and identity synchronization.
  • Implement and maintain multi-factor authentication controls, including Microsoft Authenticator, phishing-resistant authentication, passkeys, and passwordless authentication capabilities.
  • Develop, test, and enforce Conditional Access policies aligned to security standards, business requirements, risk posture, and least privilege principles.
  • Support CIAM capabilities for customer-facing identity use cases, including secure registration, authentication, authorization, and user experience considerations.
  • Partner with application, infrastructure, security operations, and business teams to integrate applications with SSO, MFA, identity governance, and access management controls.
  • Troubleshoot and resolve complex authentication, authorization, provisioning, federation, and access-related issues.
  • Assist with identity lifecycle processes, including onboarding, role changes, access reviews, deprovisioning, privileged access controls, and entitlement management.
  • Monitor identity-related logs, alerts, risky sign-ins, audit events, and security incidents to support timely investigation and response.
  • Evaluate and recommend new identity security technologies, authentication methods, and automation opportunities to improve the organization’s security posture.
  • Maintain IAM documentation, standards, configuration baselines, operational procedures, and support materials.
  • Maintain knowledge of cybersecurity frameworks and identity security best practices, including NIST, ISO 27001, CIS, Zero Trust, and least privilege principles.
  • Provide input on the design of IAM policies, authentication standards, access control models, and secure identity processes for the organization.
  • Effectively deal with rapid change in a positive manner.
  • Maintain a positive and professional working relationship with peers, management, and support resources, with a constant commitment to teamwork and exemplary customer service.
  • Maintain technical knowledge by attending educational workshops and reviewing publications.
  • Conduct self in the presence of co-owners and community to present a professional image of D&H Distributing.
  • Perform all other duties as assigned by management in a professional and efficient manner.
KNOWLEDGE, SKILLS, and/or ABILITIES
  • Strong understanding of identity and access management concepts, including authentication, authorization, federation, identity lifecycle management, least privilege, RBAC, ABAC, and Zero Trust principles.
  • Hands-on experience with IDaaS platforms, identity providers, Microsoft Entra ID, Active Directory, hybrid identity, MFA, passkeys, Microsoft Authenticator, and Conditional Access policies.
  • Experience integrating applications with SSO and federation protocols such as SAML, OAuth, OpenID Connect, LDAP, and SCIM.
  • Knowledge of CIAM concepts and customer-facing authentication patterns, including secure registration, account recovery, user consent, and adaptive authentication.
  • Ability to analyze identity-related logs, risky sign-ins, audit events, access failures, and authentication patterns to support troubleshooting and security investigations.
  • Working knowledge of PowerShell or similar scripting languages to support automation, reporting, configuration management, and operational efficiency.
  • Exceptional verbal and written communications skills.
  • Effectively communicate complex identity and security issues in business terms at any level within the organization.
  • Respond to customer inquiries, effectively communicate critical problems, and discuss resolutions with management.
  • Highly self-motivated and directed.
  • Ability to prioritize and execute tasks in a high-pressure environment and make sound decisions in urgent situations.
EDUCATION and/or EXPERIENCE
  • Education
    • Associate’s degree in Cybersecurity or similar area of study required or equivalent years of related work experience.
    • Bachelor’s Degree in Cybersecurity or similar area of study preferred.
  • Experience
    • At least 3-5 years of experience in cybersecurity, information technology, identity and access management, or security engineering with implementation and system maintenance preferred.
    • At least 3-5 years of experience supporting Microsoft Entra ID, Active Directory, identity provider integrations, SSO, MFA, Conditional Access, or related IAM technologies preferred.
    • Scripting experience in PowerShell, Python, or similar languages preferred.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IAM Cybersecurity Engineer
IAM Cybersecurity Engineer

D&H Distributing • Harrisburg

Hybrid
USD 120,000 - 180,000
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000
Sr. Identity & Access Management (IAM) Engineer
Sr. Identity & Access Management (IAM) Engineer

NKC Health • Kansas City (MO)

On-site
USD 100,000 - 130,000
IAM Engineer
IAM Engineer

The Clearing House • North Carolina

Hybrid
USD 90,000 - 130,000
Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
Senior Identity & Access Management (IAM) Engineer
Senior Identity & Access Management (IAM) Engineer

SRG • United States

Hybrid
USD 120,000 - 160,000
IAM Engineer-
IAM Engineer-

Associates Systems LLC • Irving (TX)

On-site
USD 120,000 - 160,000
Application Security Engineer
Application Security Engineer

D&H Distributing • Harrisburg

On-site
USD 110,000 - 150,000
Employee Stock Ownership Plan
401k
Paid Time Off
+1
IT Security and IAM Engineer/Administrator
IT Security and IAM Engineer/Administrator

Cypress HCM • Cincinnati (OH)

On-site
USD 70,000 - 90,000
Benefits
Community Involvement
PTO
+2