Information Security Identity and Access Engineer

PSECU Pennsylvania State Employees Credit Union

United States

Hybrid

USD 110,000 - 160,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

PSECU is seeking an IAM Engineer II to design, implement, and support enterprise IAM solutions across on-premises, cloud, and hybrid environments. You will manage identity governance, authentication, authorization, privileged access management, and lifecycle automation, ensuring secure access for our members and staff.

The role engages with Information Security, Infrastructure, Cloud Engineering, and Compliance to drive secure-by-design solutions, perform security reviews, and participate in

Qualifications

  • Automation, scripting, or integrations to improve IAM processes.
  • Experience with IAM including provisioning, governance, SSO, MFA, and RBAC.
  • Experience with identity governance, access reviews, and automated provisioning.
  • Not required: Microsoft Entra RBAC, Conditional Access, and hybrid identity environments.
  • Not required: Familiarity with CIAM and external identity solutions.
  • Not required: Knowledge of FFIEC, NIST, or other security and compliance frameworks.
  • Not required: Knowledge of Microsoft Entra ID, Active Directory, and identity lifecycle management.
  • Possess solid working knowledge of IAM technologies and may provide technical guidance or mentoring to junior staff.
  • Requires 6+ years of experience in IAM engineering, security engineering, systems engineering, or identity infrastructure support.
  • Understanding of Zero Trust, least privilege, and access security best practices.
  • Certified credentials in CEH, CISSP, SSO-related and other IAM certifications may be desirable.

Responsibilities

  • Design, implement, and support enterprise IAM solutions across on-premises, cloud, and hybrid environments.
  • Engineer and maintain identity lifecycle management, access governance, role-based security models, and automated provisioning and deprovisioning processes.
  • Integrate enterprise applications, cloud services, and infrastructure with IAM platforms using modern authentication and federation.
  • Develop automation, scripting, and infrastructure-as-code solutions to improve IAM reliability and scalability.
  • Support security architecture reviews, vulnerability management, incident response investigations, and risk reduction activities.

Skills

IAM engineering
Automation
Scripting
Account provisioning
SSO
MFA
RBAC
Zero Trust
Security architecture
Mentoring

Education

Bachelors: Computer Science
Bachelors: Engineering
Bachelors: Information Technology
Equivalent combination of experience and education

Job description

Members Achieve More isn't just a tagline for us, it's part of everything we do! We're looking for passionate individuals to join our team to help us maintain that focus every day. Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on...

The Identity and Access Management (IAM) Engineer is responsible for designing, implementing, integrating, and supporting enterprise identity and access management solutions across on-premises, cloud, and hybrid environments. This role provides engineering expertise for identity governance, authentication, authorization, privileged access management, and identity lifecycle automation platforms. In addition to identity-focused responsibilities, the IAM Engineer II serves as a member of the broader information security engineering team and contributes to enterprise cybersecurity initiatives. The role participates in the implementation of security controls, security architecture reviews, vulnerability remediation efforts, incident response activities, and technical risk reduction projects that strengthen the organization's overall security posture. Working under general supervision, the IAM Engineer II partners with Information Security, Infrastructure, Application Development, Cloud Engineering, Risk Management, Compliance, and business stakeholders to develop secure and scalable identity solutions. This position contributes to the engineering and enhancement of enterprise IAM capabilities through application integrations, automation, process optimization, and implementation of modern authentication technologies while ensuring compliance with organizational security standards and regulatory requirements.

Schedule:

Monday - Friday, 8:00am -4:00pm or 9:00am -5:00pm This position will be a hybrid model both in person and remote with minimum of onsite expectation of 60% or as needed.

In this position, you will Design, implement, and support enterprise Identity and Access Management (IAM) solutions, including identity governance, authentication, authorization, privileged access management, directory services, and cloud identity platforms. Engineer and maintain identity lifecycle management, access governance, role-based security models, and automated provisioning and deprovisioning processes to ensure secure and efficient access control. Integrate enterprise applications, cloud services, and infrastructure with IAM platforms using modern authentication, federation, API, and directory technologies while supporting hybrid environments. Develop automation, scripting, and infrastructure-as-code solutions; perform system analysis, testing, troubleshooting, and performance optimization to improve the reliability and scalability of IAM and security services. Design, implement, administer, and continuously enhance cybersecurity controls and security technologies across on-premises, cloud, and hybrid environments to protect enterprise systems, applications, networks, and data. Support security architecture reviews, vulnerability management, security monitoring, incident response investigations, and threat remediation activities to reduce organizational risk and strengthen security posture. Collaborate with information security, infrastructure, cloud, application development, compliance, data, and business teams to implement secure-by-design solutions, support regulatory and audit requirements, maintain technical documentation, and recommend continuous improvements to IAM and cybersecurity capabilities. Other Duties as assigned.

Qualifications:
  • Bachelors: Computer Science (Required), Bachelors: Engineering (Required), Bachelors: Information Technology (Required) Any equivalent combination of experience and education.
  • | Required Experience with automation, scripting, or integrations that improve identity and access management processes
  • | Required Experience with Identity and Access Management (IAM), including account provisioning, access governance, SSO, MFA, and role-based access controls
  • | Required Experience with identity governance, access reviews, and automated provisioning
  • | Not Required Experience with Microsoft Entra RBAC, Conditional Access, and hybrid identity environments
  • | Not Required Familiarity with CIAM and external identity solutions
  • | Not Required Knowledge of FFIEC, NIST, or other security and compliance frameworks
  • | Not Required Knowledge of Microsoft Entra ID, Active Directory, and identity lifecycle management
  • | Required Possess solid working knowledge of IAM technologies and may provide technical guidance or mentoring to junior staff
  • | Required Requires 6 or more years of experience in IAM engineering, security engineering, systems engineering, directory services, or identity infrastructure support
  • | Required Understanding of Zero Trust, least privilege, and access security best practices
  • | Required Certified Ethical Hacker (CEH) - EC-Council (International Council of E-Commerce Consultants), Certified Identity and Access Manager (CIAM) - Identity Management Institute (IMI), Certified Information Systems Security Professional (CISSP) - ISC2 (International Information System Security Certification Consortium), CompTIA Security+ - CompTIA (Computing Technology Industry Association), CyberArk Defender Certifications - CyberArk Software, CyberArk Sentry Certifications - CyberArk Software, Microsoft Certified: Cybersecurity Architect Expert - Microsoft, Microsoft Certified: Identity and Access Administrator Associate - Microsoft, Okta Certified Administrator - Okta, Inc., Okta Certified Professional - Okta, Inc., SailPoint IdentityIQ Engineer Certification - SailPoint Technologies

In 1934, 22 ordinary people pooled $90 of their own money and formed PSECU, a not-for-profit credit union, to provide a better life for themselves and their families. Since then, PSECU has grown to over $8 billion in assets, more than 590,000 members, and approximately 850 employees. We’ve been recognized by several organizations for our high-quality, low-cost financial products and services, positive member experience, and commitment to helping our Members Achieve More.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Identity and Access Engineer
Information Security Identity and Access Engineer

PSECU • Harrisburg

Hybrid
USD 120,000 - 170,000
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

Hybrid
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
Hybrid IAM Engineer: Secure Identity & Access
Hybrid IAM Engineer: Secure Identity & Access

PSECU Pennsylvania State Employees Credit Union • United States

Hybrid
USD 110,000 - 160,000
IAM Engineer
IAM Engineer

PAYCO The Clearing House Payments Company L.L.C. • North Carolina

On-site
USD 100,000 - 140,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000
Hybrid IAM Engineer: Identity & Access Security Expert
Hybrid IAM Engineer: Identity & Access Security Expert

PSECU • Harrisburg

Hybrid
USD 120,000 - 170,000
Senior Security Engineer 5529
Senior Security Engineer 5529

Tier4 Group • Chicago (IL)

On-site
USD 140,000 - 200,000
Sr Security Engineer - IAM
Sr Security Engineer - IAM

SECU • United States

On-site
USD 90,000 - 120,000
Cybersecurity Engineer
Cybersecurity Engineer

ssacareers • Washington

Remote
USD 130,000 - 160,000
IAM Engineer
IAM Engineer

The Clearing House • North Carolina

Hybrid
USD 90,000 - 130,000