Information Security Identity and Access Engineer

PSECU

Harrisburg (Dauphin County)

Hybrid

USD 100,000 - 140,000

Full time

10 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

PSECU in Harrisburg, PA, seeks an IAM Engineer II to design, implement, and support enterprise IAM across on-premises, cloud, and hybrid environments. You will drive identity governance, lifecycle automation, and secure-by-design initiatives while partnering with information security, infrastructure, and development teams.

Ideal candidates will have 6+ years in IAM, strong scripting capabilities, and familiarity with security frameworks such as NIST and FFIEC, plus experience with Entra ID and

Qualifications

  • 6+ years of IAM engineering, security or identity infrastructure experience.
  • Experience with automation, scripting, or integrations to improve IAM processes.
  • Experience with IAM including account provisioning, access governance, SSO, MFA, and RBAC.
  • Familiarity with CIAM and external identity solutions.
  • Knowledge of FFIEC, NIST or other security and compliance frameworks.
  • Knowledge of Microsoft Entra ID and Active Directory.

Responsibilities

  • Design, implement, and support IAM solutions across on-prem, cloud, and hybrid.
  • Engineer identity lifecycle management, access governance, and automated provisioning.
  • Integrate applications with IAM platforms using modern authentication and federation.
  • Develop automation and infrastructure-as-code; optimize IAM and security services.
  • Support security architecture reviews, vulnerability management, incident response, risk reduction.
  • Collaborate with teams to implement secure-by-design solutions and support audits.
  • Maintain technical documentation and propose continuous improvements.
  • Perform other duties as assigned.

Skills

Automation and scripting
IAM engineering
SSO
MFA
RBAC
Microsoft Entra ID
Active Directory
Zero Trust
Hybrid identity environments
Security engineering
CIAM
Threat remediation

Education

Bachelors: Computer Science
Bachelors: Engineering
Bachelors: Information Technology

Job description

Members Achieve More

isn’t just a tagline for us, it’s part of everything we do! We’re looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that’s remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on…

The Identity and Access Management (IAM) Engineer is responsible for designing, implementing, integrating, and supporting enterprise identity and access management solutions across on-premises, cloud, and hybrid environments. This role provides engineering expertise for identity governance, authentication, authorization, privileged access management, and identity lifecycle automation platforms.

In addition to identity-focused responsibilities, the IAM Engineer II serves as a member of the broader information security engineering team and contributes to enterprise cybersecurity initiatives. The role participates in the implementation of security controls, security architecture reviews, vulnerability remediation efforts, incident response activities, and technical risk reduction projects that strengthen the organization’s overall security posture.

Working under general supervision, the IAM Engineer II partners with Information Security, Infrastructure, Application Development, Cloud Engineering, Risk Management, Compliance, and business stakeholders to develop secure and scalable identity solutions. This position contributes to the engineering and enhancement of enterprise IAM capabilities through application integrations, automation, process optimization, and implementation of modern authentication technologies while ensuring compliance with organizational security standards and regulatory requirements.

Schedule: Monday - Friday, 8:00am -4:00pm or 9:00am -5:00pm This position will be a hybrid model both in person and remote with minimum of onsite expectation of 60% or as needed.

In this position, you will

  • Design, implement, and support enterprise Identity and Access Management (IAM) solutions, including identity governance, authentication, authorization, privileged access management, directory services, and cloud identity platforms.
  • Engineer and maintain identity lifecycle management, access governance, role-based security models, and automated provisioning and deprovisioning processes to ensure secure and efficient access control.
  • Integrate enterprise applications, cloud services, and infrastructure with IAM platforms using modern authentication, federation, API, and directory technologies while supporting hybrid environments.
  • Develop automation, scripting, and infrastructure-as-code solutions; perform system analysis, testing, troubleshooting, and performance optimization to improve the reliability and scalability of IAM and security services.
  • Design, implement, administer, and continuously enhance cybersecurity controls and security technologies across on-premises, cloud, and hybrid environments to protect enterprise systems, applications, networks, and data.
  • Support security architecture reviews, vulnerability management, security monitoring, incident response investigations, and threat remediation activities to reduce organizational risk and strengthen security posture.
  • Collaborate with information security, infrastructure, cloud, application development, compliance, data, and business teams to implement secure-by-design solutions, support regulatory and audit requirements, maintain technical documentation, and recommend continuous improvements to IAM and cybersecurity capabilities.
  • Other Duties as assigned.
Qualifications:

Bachelors: Computer Science (Required), Bachelors: Engineering (Required), Bachelors: Information Technology (Required)

Any equivalent combination of experience and education.| RequiredExperience with automation, scripting, or integrations that improve identity and access management processes| RequiredExperience with Identity and Access Management (IAM), including account provisioning, access governance, SSO, MFA, and role-based access controls| RequiredExperience with identity governance, access reviews, and automated provisioning| Not RequiredExperience with Microsoft Entra RBAC, Conditional Access, and hybrid identity environments| Not RequiredFamiliarity with CIAM and external identity solutions| Not RequiredKnowledge of FFIEC, NIST, or other security and compliance frameworks| Not RequiredKnowledge of Microsoft Entra ID, Active Directory, and identity lifecycle management| RequiredPossess solid working knowledge of IAM technologies and may provide technical guidance or mentoring to junior staff| RequiredRequires 6 or more years of experience in IAM engineering, security engineering, systems engineering, directory services, or identity infrastructure support| RequiredUnderstanding of Zero Trust, least privilege, and access security best practices| Required

Certified Ethical Hacker (CEH) - EC-Council (International Council of E-Commerce Consultants), Certified Identity and Access Manager (CIAM) - Identity Management Institute (IMI), Certified Information Systems Security Professional (CISSP) - ISC2 (International Information System Security Certification Consortium), CompTIA Security+ - CompTIA (Computing Technology Industry Association), CyberArk Defender Certifications - CyberArk Software, CyberArk Sentry Certifications - CyberArk Software, Microsoft Certified: Cybersecurity Architect Expert - Microsoft, Microsoft Certified: Identity and Access Administrator Associate - Microsoft, Okta Certified Administrator - Okta, Inc., Okta Certified Professional - Okta, Inc., SailPoint IdentityIQ Engineer Certification - SailPoint Technologies

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Identity and Access Engineer
Information Security Identity and Access Engineer

PSECU Pennsylvania State Employees Credit Union • United States

Hybrid
USD 110,000 - 160,000
Senior IT Security Analyst
Senior IT Security Analyst

Cybersecurity Jobs • Denver (CO)

On-site
USD 140,000 - 190,000
Medical benefits
401(k) match
Paid time off
+1
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
Sr. Identity & Access Management (IAM) Engineer
Sr. Identity & Access Management (IAM) Engineer

NKC Health • Kansas City (MO)

On-site
USD 100,000 - 130,000
IAM Cybersecurity Engineer
IAM Cybersecurity Engineer

D&H Distributing Co. • Harrisburg

On-site
USD 100,000 - 140,000
Employee Stock Ownership Plan
401k
Paid Time Off
+7
Manager, IAM Engineering-IS Security, Days
Manager, IAM Engineering-IS Security, Days

Norton Healthcare, Inc. • Louisville (KY), Northern (KY)

Hybrid
USD 130,000 - 170,000
Information Security Identity & Access Management Engineer
Information Security Identity & Access Management Engineer

Johnson Financial Group • Racine (WI)

On-site
USD 110,000 - 150,000
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

On-site
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
IAM (Identity & Access Management) Engineer (Okta / SailPoint)
IAM (Identity & Access Management) Engineer (Okta / SailPoint)

Zoho • United States

On-site
USD 124,000 - 207,000