Middle Information Security Access Specialist

Gr8tech

United States

Remote

USD 90,000 - 130,000

Full time

13 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Remote-first
Coworking allowance
Flexible benefits budget
Paid parental leave
Childcare support
20+ vacation days
Unlimited sick leave
Emergency time off
Team events
Learning & development

Job summary

gr8tech seeks an Identity and Access Management Engineer to secure and improve employee access across corporate systems. You will manage the full access lifecycle, enforce least- privilege, standardize role models, and automate high-volume workflows while upholding security standards.

You will collaborate with HR, IT, and engineering to design RBAC/ABAC models, configure Okta, CyberArk, AD, SSO, and federation protocols, and apply AI-driven automation to ticket triage and reporting.

Qualifications

  • Two+ years of practical experience in information security, IAM, IT ops, systems administration, or advanced technical support focusing on access control.
  • Experience handling onboarding, offboarding, and role changes in employee lifecycle access.
  • Hands-on knowledge of access profiles, RBAC, permission reviews, and access auditing.
  • Familiarity with Okta, CyberArk, AD, SSO, federation protocols.
  • Understanding of RBAC, ABAC, least privilege and zero-trust concepts; ability to validate complex permission structures.
  • Experience with AI tools or agents for automation and data processing; ability to work with non-technical stakeholders.
  • Ability to manage high-volume requests against SLAs; fluent in Ukrainian or Russian with intermediate-or-higher English.

Responsibilities

  • Manage onboarding, offboarding, and role-change workflows including provisioning and permission updates.
  • Design, maintain, and govern access profiles and role-based permission models across departments.
  • Monitor service levels, identify bottlenecks, and improve access request processes without compromising security.
  • Investigate escalated access requests, analyze permissions data, and resolve issues securely.
  • Leverage AI agents and automation to streamline ticket triage, reporting, and repetitive tasks.
  • Collaborate with HR, IT, and engineering to centralize access workflows and define clear procedures.

Skills

Identity & access management
RBAC/ABAC
Access lifecycle management
Security governance

Education

Bachelor's degree in Computer Science or Information Security

Tools

Okta
CyberArk
Active Directory
SSO / federation protocols

Job description

Role overview

This role focuses on securing and improving employee identity and access management across corporate systems. You will manage the full access lifecycle, strengthen least-privilege controls, standardize role models, and help automate high-volume operational processes while meeting defined service and security standards.

Responsibilities
  • Manage onboarding, offboarding, and internal role-change workflows, including provisioning, access removal, and permission updates.
  • Design, maintain, and govern access profiles and role-based permission models across departments and business systems.
  • Monitor service-level performance, identify bottlenecks, and improve the access request process without reducing security or service quality.
  • Investigate escalated access requests, analyze permission data, identify access drift or inconsistencies, and resolve issues securely.
  • Use AI agents, LLM-powered tools, and other automation methods to streamline ticket triage, reporting, documentation, and repetitive operational work.
  • Partner with HR, IT, and engineering teams to bring additional systems into centralized access workflows and maintain clear procedures, role definitions, and access matrices.
Requirements
  • At least two years of practical experience in information security, identity and access management, IT operations, systems administration, or advanced technical support, with a focus on access control.
  • Experience handling employee lifecycle access processes, including onboarding, offboarding, and changes to responsibilities or positions.
  • Hands‑on knowledge of access profiles, RBAC models, permission reviews, and access auditing across multiple corporate tools or systems.
  • Familiarity with enterprise identity technologies such as Okta, CyberArk, Active Directory, privileged access management, single sign-on, and federation protocols.
  • Understanding of RBAC, ABAC, least privilege, and zero‑trust principles, combined with the ability to validate complex permission structures.
  • Practical experience with AI tools or agents, such as prompt engineering, copilots, or agentic workflows, for operational automation or data processing.
  • Ability to manage high-volume requests against SLAs, communicate security requirements clearly to non-technical stakeholders, and work fluently in Ukrainian or Russian with intermediate-or-higher English.
Nice to have
  • Experience applying PCI DSS or ISO 27001 requirements to access management and user access reviews.
  • Experience integrating AI agents or custom LLM workflows into IT or IAM automation through APIs or agent frameworks.
  • Familiarity with cloud identity and security concepts in AWS, Azure, or GCP; access orchestration platforms; or relevant identity and security certifications.
  • A bachelor's degree in computer science, information security, or a related technical discipline.
Benefits and work setup

The role is remote-first and includes technical support, coworking assistance, and a flexible benefits budget that may be allocated to areas such as sport, medical care, mental health, home office equipment, or language learning. Additional provisions include paid parental leave, childcare support, more than 20 vacation days, unlimited sick leave, emergency time off, team events, and internal learning and development programs.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

On-site
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
Cybersecurity Engineer
Cybersecurity Engineer

ssacareers • Washington

Remote
USD 130,000 - 160,000
Identity & Access Management Specialist (Active Directory • Microsoft Entra ID • CyberArk) - Hybrid
Identity & Access Management Specialist (Active Directory • Microsoft Entra ID • CyberArk) - Hybrid

M&T Bank • Buffalo (NY)

On-site
USD 62,000 - 104,000
Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
Middle Information Security Access Specialist
Middle Information Security Access Specialist

Greenhouse Software, Inc. • United States

Remote
USD 95,000 - 135,000
Paid maternity/paternity leave
20+ vacation days
Learning & growth programs
Security Business Analyst - Access Management (Remote in the US)
Security Business Analyst - Access Management (Remote in the US)

guidepointsecurity • United States

Remote
USD 52,000 - 75,000
Flexible time off
Group medical insurance
HSA contributions
+4
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
Senior Security IAM Engineer
Senior Security IAM Engineer

Hidden Jobs • United States

On-site
USD 125,000 - 171,000
Remote-first
Hybrid in Barcelona
Senior Security Engineer 5529
Senior Security Engineer 5529

Tier4 Group • Chicago (IL)

On-site
USD 140,000 - 200,000
IAM & Security Engineer: Entra ID, AD, RBAC
IAM & Security Engineer: Entra ID, AD, RBAC

Cypress HCM • Cincinnati (OH)

On-site
USD 70,000 - 90,000
Benefits
Community Involvement
PTO
+2