Identity & Security Engineer

Coda Search│Staffing

Town of Texas (WI)

Hybrid

USD 110,000 - 170,000

Full time

47 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Coda Search│Staffing seeks an Identity & Security Engineer to design, implement, and monitor identity services across on‑prem and cloud platforms. You will drive authentication frameworks, access controls, and automation to improve security posture while collaborating with security, compliance, and DevOps teams.

The role emphasizes leadership in identity modernization, proactive risk reduction, and on‑call readiness.

Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent work experience.

Responsibilities

  • Designs, implements, optimizes, and maintains enterprise identity platforms (e.g., AD DS, Entra ID, SSO, MFA) across on‑prem and cloud.
  • Architects identity frameworks with RBAC, least privilege, and just‑in‑time access to reduce over‑privilege.
  • Leads PKI design standards, hardening, and certificate‑based authentication risk reduction.
  • Develops, maintains automation scripts and infrastructure‑as‑code to streamline tasks and improve reliability.
  • Leads incident response and detection for identity threats using ITDR, EDR, and SIEM tools.

Skills

Active Directory
Entra ID
Single Sign-On
MFA
RBAC
Just‑in‑time access
PKI
Zero Trust
PowerShell
Terraform
Python
Microsoft Graph API
Kerberos
SAML
OAuth 2.0
OIDC
LDAP
ITDR
AWS
GCP

Education

Bachelor’s degree in Computer Science, Information Security, or related field
8+ years enterprise Windows AD DS design/ops

Tools

Okta
Ping Identity
PowerShell
API automation
Terraform
Python

Job description

Locations: Texas, Atlanta, Orlando, Tallahassee

A global organization with locations across the world in 15 countries has an exciting employment opportunity for an experienced Identity & Security Engineer. The organization offers competitive compensation and an excellent benefits package, along with the opportunity to work within an innovative and collaborative environment.

Position Overview

We are seeking a professional who thrives in a fast‑paced, deadline‑driven environment. The ideal candidate possesses strong problem‑solving and decision‑making abilities, ensuring efficiency and accuracy in every task. With a dedicated work ethic and a can‑do attitude, you will take initiative and approach challenges with confidence and resilience.

Excellent communication skills are essential for collaborating effectively across teams and delivering exceptional service. The ideal candidate will demonstrate initiative, adaptability, and innovation.

This role can be based in various offices on a hybrid basis and reports to the Enterprise Monitoring and Systems Management Supervisor.

Position Summary

The Identity & Security Engineer is responsible for the engineering, architecture, security, and monitoring of the organization’s core identity services and hybrid integrations, primarily within Microsoft cloud ecosystems, with a growing presence in AWS and GCP.

The engineer designs and implements enterprise identity and access management solutions, leads the design of secure authentication and authorization frameworks, drives automation and engineering best practices, performs root cause analysis on complex identity‑based incidents, and ensures secure access to applications and resources at scale.

The Identity & Security Engineer serves as a lead technical resource for complex identity systems and leads engineering efforts related to Active Directory Domain Services, Entra ID, Single Sign‑On, privileged access management, identity protection, lifecycle automation, and enterprise access controls.

This role requires deep technical expertise, strong architectural thinking, and the ability to lead identity modernization efforts across on‑premise and cloud environments. Individuals must be trustworthy, reliable, and uphold strict ethical standards in all professional dealings. This position requires the ability to work flexible hours and participate in an on‑call rotation.

Key Responsibilities
  • Designs, implements, optimizes, and maintains enterprise identity platforms (e.g., Active Directory Domain Services, Entra ID, SSO, MFA), including architecture, capacity planning, and lifecycle management
  • Architects, implements, and improves secure identity frameworks across on‑premise and cloud environments, including role‑based access control (RBAC), least privilege access models, just‑in‑time (JIT) access models, conditional access policies, and access lifecycles to reduce over‑privilege
  • Defines and improves identity role design to reduce over‑privilege
  • Establishes governance for non‑human identities (service accounts, automation identities, app registrations) and implements guardrails that prevent unmanaged credentials and high‑risk identities
  • Builds integrations between identity platforms and business systems and applications
  • Collaborates with technology teams, including security, compliance, application, DevOps, and infrastructure, to implement and ensure secure identity practices across on‑premises and cloud environments
  • Leads PKI design standards, hardening, modernization efforts, and certificate‑based authentication risk reduction
  • Designs, deploys, and maintains vendor remote access and privileged access management systems
  • Engineers detection logic, monitoring, and auditing capabilities to identify and evaluate anomalous user and identity behavior
  • Leads detection engineering and incident response for identity and access threats using ITDR, EDR, and SIEM tools, and develops playbooks for containment and remediation
  • Partners with Information Security on identity threat detection and response
  • Provides Tier 3 escalation support and guidance and leads root cause analysis for complex identity issues impacting privileged access and authentication across on‑premise and cloud environments
  • Implements and maintains security configurations to protect against unauthorized access and other security threats against the organization’s on‑premise infrastructure and cloud‑based platforms
  • Develops, maintains, and reviews automation frameworks, scripts, and infrastructure‑as‑code to drive process improvement and reduce manual administrative and routine tasks
  • Partners with information security and compliance teams to design controls and engineer evidence collection that demonstrates compliance with industry standards
  • Leads project delivery and execution of tasks related to areas of identity responsibility, including requirements, design, implementation, testing, rollout, and operational transition
  • Evaluates and recommends emerging technologies, trends, and best practices in identity and access management, identity protection, and governance
  • Authors design documentation, runbooks, and standards and enforces identity governance procedures across the team
Qualifications
  • Deep expertise in AD DS, Entra ID, AD CS, and Single Sign‑On
  • Expert knowledge of identity and access management and role‑based access controls
  • Expertise designing and engineering federation and multifactor authentication solutions
  • Expertise in authentication and authorization protocols and flows, including Kerberos, SAML, OAuth 2.0, OIDC, and LDAP
  • Good working knowledge of public key infrastructure (PKI) and certificate lifecycle management
  • Strong understanding of Zero Trust security principles
  • In‑depth knowledge of Microsoft Windows operating systems
  • Good working knowledge of basic networking concepts, including TCP/IP, DNS, and DHCP
  • Advanced automation and scripting skills using PowerShell, Microsoft Graph API, Python, Terraform, or similar technologies
  • Fundamental understanding of AI model infrastructure and AI agent security
  • Strong analytical, critical‑thinking, and problem‑solving skills
  • Ability to troubleshoot and resolve complex system, application, security, and performance issues
  • Strong communication, interpersonal, and cross‑functional collaboration skills
  • Ability to articulate issues, risks, and proposed solutions to various levels of technology staff, management, and non‑technical audiences
  • Strong attention to detail and accuracy
  • Ability to document and maintain security and monitoring policies, procedures, and configurations
  • Ability to multitask efficiently while prioritizing and organizing competing work demands
  • Demonstrated integrity and commitment to strict ethical standards in all professional dealings
  • Proven record of reliability and dependability
  • Must be a self‑starter and independent while functioning as an integral part of a team
  • Proven ability to work independently and collaboratively in a fast‑paced, security‑conscious environment
  • Must demonstrate a high degree of initiative and motivation
  • Ability to work flexible hours and participate in an on‑call rotation
Education & Prior Experience
  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent work experience
  • 8+ years of professional experience designing and engineering medium‑to‑large enterprise Microsoft Windows AD DS environments, preferably within professional services environments
  • 5+ years of hands‑on experience with Microsoft Entra ID in hybrid environments
  • Extensive hands‑on experience with Active Directory Domain Services design and operations
  • Strong hands‑on experience with Microsoft Entra Suite architecture
  • Strong hands‑on experience with federation and SSO integrations
  • Hands‑on experience with identity platforms such as Okta, Ping Identity, or similar
  • Experience managing multifactor authentication solutions
  • Experience engineering and managing Privileged Access Management platforms
  • Experience with AD CS design/hardening or certificate‑based authentication modernization
  • Strong experience with automation, with PowerShell required and API experience strongly preferred
  • Experience with ITDR platforms such as Microsoft Defender for Identity, Entra ID Protection, Microsoft Defender XDR, or similar
  • Familiarity with AWS and GCP cloud environments is a plus
  • Relevant Microsoft certifications, such as Azure Security Engineer Associate and Identity and Access Administrator Associate, or equivalent, are preferred
  • Relevant professional cybersecurity certifications, such as CISSP, are a plus
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Identity and Security Engineer
Identity and Security Engineer

Ledgent Technology • Houston (TX)

On-site
USD 130,000 - 140,000
Identity and Security Engineer
Identity and Security Engineer

Greenberg Traurig, LLP • Houston (TX)

On-site
USD 120,000 - 150,000
Identity and Security Engineer
Identity and Security Engineer

Greenberg Traurig, LLP • Town of Florida (NY)

On-site
USD 120,000 - 150,000
Competitive compensation
Excellent benefits package
Collaborative work environment
Identity and Security Engineer
Identity and Security Engineer

Greenberg Traurig, LLP • Charlotte (NC)

On-site
USD 120,000 - 150,000
Sr. Identity Security Engineer Active Directory & Entra ID
Sr. Identity Security Engineer Active Directory & Entra ID

MathWorks • Natick (MA)

On-site
USD 122,000 - 190,000
System Engineer
System Engineer

Franklin Fitch • Houston (TX)

On-site
USD 130,000 - 170,000
Senior Security Engineer 5529
Senior Security Engineer 5529

Tier4 Group • Chicago (IL)

On-site
USD 140,000 - 200,000
Senior Identity Engineer (Cloud & Microsoft 365)
Senior Identity Engineer (Cloud & Microsoft 365)

Teledyne Technologies Incorporated • Stillwater (OK)

On-site
USD 110,000 - 170,000
Identity & Access Management (IAM)- Senior Engineer - Microsoft Entra
Identity & Access Management (IAM)- Senior Engineer - Microsoft Entra

ARK Infotech Spectrum India Pvt. Ltd • Dallas (TX)

Hybrid
USD 110,000 - 150,000
Hybrid work arrangement
Identity Security Engineer
Identity Security Engineer

ecsfederal • Washington

Hybrid
USD 120,000 - 130,000