Information Security Identity and Access Engineer

PSECU

Harrisburg (Dauphin County)

Hybrid

USD 120,000 - 170,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

PSECU is seeking an Information Security IAM Engineer II to design and implement enterprise identity and access management across on-premises, cloud, and hybrid environments in Harrisburg, PA. You will collaborate with security, infrastructure, cloud engineering, and development teams to enforce secure-by-design IAM solutions.

The role emphasizes identity governance, provisioning, SSO/MFA, RBAC, and automation, with a minimum onsite expectation of 60% and a strong focus on risk reduction and

Qualifications

  • Bachelors: Computer Science, Engineering, or Information Technology (Required) or equivalent experience.
  • Experience with automation, scripting, or integrations that improve IAM processes.
  • Experience with IAM including provisioning, access governance, SSO, MFA, and RBAC.
  • Knowledge of identity governance and automated provisioning is expected.

Responsibilities

  • Design, implement, and support enterprise IAM solutions across on-premises, cloud, and hybrid environments.
  • Engineer identity lifecycle management, access governance, and automated provisioning/deprovisioning.
  • Integrate applications and cloud services with IAM platforms using modern authentication, federation, APIs, and directory tech.
  • Develop automation, scripting, and IaC to improve IAM reliability and scale.
  • Support security controls, incident response, vulnerability remediation, and risk reduction initiatives.

Skills

IAM engineering
Automation scripting
Access governance
RBAC
SSO
MFA
Zero Trust
Least privilege
Security engineering

Education

Bachelor's degree in Computer Science
Bachelor's degree in Engineering
Bachelor's degree in Information Technology

Tools

Microsoft Entra ID
Active Directory
Federation
Directory services
Okta
SailPoint
CyberArk

Job description

## Information Security Identity and Access EngineerApply: This position has a minimum onsite expectation of 3 days per week or as needed: Harrisburg, PA: Full time: Posted Yesterday: JR101042**Members Achieve More** isn't just a tagline for us, it's part of everything we do! We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on...The Identity and Access Management (IAM) Engineer is responsible for designing, implementing, integrating, and supporting enterprise identity and access management solutions across on-premises, cloud, and hybrid environments. This role provides engineering expertise for identity governance, authentication, authorization, privileged access management, and identity lifecycle automation platforms. In addition to identity-focused responsibilities, the IAM Engineer II serves as a member of the broader information security engineering team and contributes to enterprise cybersecurity initiatives. The role participates in the implementation of security controls, security architecture reviews, vulnerability remediation efforts, incident response activities, and technical risk reduction projects that strengthen the organization's overall security posture. Working under general supervision, the IAM Engineer II partners with Information Security, Infrastructure, Application Development, Cloud Engineering, Risk Management, Compliance, and business stakeholders to develop secure and scalable identity solutions. This position contributes to the engineering and enhancement of enterprise IAM capabilities through application integrations, automation, process optimization, and implementation of modern authentication technologies while ensuring compliance with organizational security standards and regulatory requirements. Schedule: Monday - Friday, 8:00am -4:00pm or 9:00am -5:00pm This position will be a hybrid model both in person and remote with minimum of onsite expectation of 60% or as needed.In this position, you will* Design, implement, and support enterprise Identity and Access Management (IAM) solutions, including identity governance, authentication, authorization, privileged access management, directory services, and cloud identity platforms.* Engineer and maintain identity lifecycle management, access governance, role-based security models, and automated provisioning and deprovisioning processes to ensure secure and efficient access control.* Integrate enterprise applications, cloud services, and infrastructure with IAM platforms using modern authentication, federation, API, and directory technologies while supporting hybrid environments.* Develop automation, scripting, and infrastructure-as-code solutions; perform system analysis, testing, troubleshooting, and performance optimization to improve the reliability and scalability of IAM and security services.* Design, implement, administer, and continuously enhance cybersecurity controls and security technologies across on-premises, cloud, and hybrid environments to protect enterprise systems, applications, networks, and data.* Support security architecture reviews, vulnerability management, security monitoring, incident response investigations, and threat remediation activities to reduce organizational risk and strengthen security posture.* Collaborate with information security, infrastructure, cloud, application development, compliance, data, and business teams to implement secure-by-design solutions, support regulatory and audit requirements, maintain technical documentation, and recommend continuous improvements to IAM and cybersecurity capabilities.* Other Duties as assigned.**Qualifications:**Bachelors: Computer Science (Required), Bachelors: Engineering (Required), Bachelors: Information Technology (Required)Any equivalent combination of experience and education. | RequiredExperience with automation, scripting, or integrations that improve identity and access management processes | RequiredExperience with Identity and Access Management (IAM), including account provisioning, access governance, SSO, MFA, and role-based access controls | RequiredExperience with identity governance, access reviews, and automated provisioning | Not RequiredExperience with Microsoft Entra RBAC, Conditional Access, and hybrid identity environments | Not RequiredFamiliarity with CIAM and external identity solutions | Not RequiredKnowledge of FFIEC, NIST, or other security and compliance frameworks | Not RequiredKnowledge of Microsoft Entra ID, Active Directory, and identity lifecycle management | RequiredPossess solid working knowledge of IAM technologies and may provide technical guidance or mentoring to junior staff | RequiredRequires 6 or more years of experience in IAM engineering, security engineering, systems engineering, directory services, or identity infrastructure support | RequiredUnderstanding of Zero Trust, least privilege, and access security best practices | RequiredCertified Ethical Hacker (CEH) - EC-Council (International Council of E-Commerce Consultants), Certified Identity and Access Manager (CIAM) - Identity Management Institute (IMI), Certified Information Systems Security Professional (CISSP) - ISC2 (International Information System Security Certification Consortium), CompTIA Security+ - CompTIA (Computing Technology Industry Association), CyberArk Defender Certifications - CyberArk Software, CyberArk Sentry Certifications - CyberArk Software, Microsoft Certified: Cybersecurity Architect Expert - Microsoft, Microsoft Certified: Identity and Access Administrator Associate - Microsoft, Okta Certified Administrator - Okta, Inc., Okta Certified Professional - Okta, Inc., SailPoint IdentityIQ Engineer Certification - SailPoint Technologies
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Identity and Access Engineer
Information Security Identity and Access Engineer

PSECU Pennsylvania State Employees Credit Union • United States

Hybrid
USD 110,000 - 160,000
IAM Engineer
IAM Engineer

The Clearing House • Northern (KY)

On-site
USD 110,000 - 140,000
IAM Engineer
IAM Engineer

The Clearing House • North Carolina

Hybrid
USD 90,000 - 130,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000
Information Security Identity & Access Management Engineer
Information Security Identity & Access Management Engineer

Johnson Financial Group • Racine (WI)

On-site
USD 110,000 - 150,000
Identity and Security Engineer
Identity and Security Engineer

Ledgent Technology • Houston (TX)

On-site
USD 130,000 - 140,000
Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
IAM Cybersecurity Engineer
IAM Cybersecurity Engineer

D&H Distributing Co. • Harrisburg

On-site
USD 100,000 - 140,000
Employee Stock Ownership Plan
401k
Paid Time Off
+7
IAM Automation Engineer, Senior
IAM Automation Engineer, Senior

Releady • Town of Montana (WI)

Hybrid
USD 146,000 - 156,000
Senior IAM Engineer #3285
Senior IAM Engineer #3285

Genius Road, LLC • Austin (TX)

On-site
USD 120,000 - 150,000