Security Engineer I

Lennar

Irving (TX)

On-site

USD 90,000 - 130,000

Full time

5 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health insurance
401(k) with company match
Education assistance
Adoption assistance
Paid parental leave
Vacation

Job summary

Lennar is seeking a Systems Engineer I - Security in Irving, TX to strengthen identity security across the enterprise. The role focuses on designing, implementing, and operating identity access controls spanning IAM, IGA, and PAM to ensure appropriate access at the right time.

You will help enforce least privilege and governance while aligning with security and regulatory requirements. Ideal candidates have 2–3 years in cybersecurity with IAM focus, hands-on experience with SailPoint, Delinea,

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or related field.
  • 2-3 years of hands-on cybersecurity engineering experience with exposure to IAM.
  • 2+ years of experience in security engineering focusing on IAM concepts and technologies (SSO, MFA, IAM workflows).
  • Experience with IAM solutions deployment and configuration for SSO, MFA, and identity integration protocols (SAML, OIDC).
  • Experience building SailPoint connectors, provisioning jobs, roles/entitlements, and HR-driven JML workflows.
  • Experience administering Microsoft Entra ID including users, groups, and enterprise apps.
  • Knowledge of IAM governance, PAM, and access control models (RBAC, ABAC, PBAC, FGAC).

Responsibilities

  • Support enterprise IAM solutions delivering SSO, MFA, IGA, and PAM for diverse identities (on-prem, cloud, service accounts, APIs).
  • Monitor IAM activities, analyze logs, and assist incident response and forensics related to identity misuse.
  • Support audit and certification efforts by improving controls and remediating findings in IAM/IGA/PAM.
  • Troubleshoot IAM issues, perform root cause analysis, and drive modernization of identity platforms.
  • Collaborate with security architecture, infrastructure, app, and DevOps teams to embed Zero Trust in new solutions.
  • Document architectures, runbooks, and knowledge articles; train teams on identity security best practices.
  • Participate in POCs and evaluations of new identity security services and technologies.
  • Mentor and support junior security engineers and operations staff.

Skills

IAM
SailPoint
Delinea
CyberArk
Entra ID
Ping Identities
RBAC
ABAC
PBAC
FGAC

Education

Bachelor’s degree

Tools

SailPoint connectors
Active Directory
Microsoft Entra ID

Job description

We are Lennar

Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500® company and consistently ranked among the top homebuilders in the United States.

Job Description
We are Lennar

Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communities, and Associates by building quality homes and providing exceptional customer service, giving back to the communities in which we work and live in, and fostering a culture of opportunity and growth for our Associates throughout their career. Lennar has been recognized as a Fortune 500® company and consistently ranked among the top homebuilders in the United States.

Join a Company that Empowers you to Build your Future

The Systems Engineer I - Security is a mid-level position responsible for enhancing and maintaining the security of the organization’s information technology infrastructure. The Systems Engineer I – Security role is responsible for designing, implementing, and operating enterprise identity and access controls across IAM, IGA, and PAM platforms to ensure the right users and workloads have the right access at the right time. This role reduces identity-related risk by enforcing least privilege, strengthening authentication, and governing privileged access in alignment with security and regulatory requirements.

Your Responsibilities On The Team
Systems Security
  • Support enterprise IAM solutions that collectively deliver single sign-on (SSO), multifactor authentication (MFA), identity governance and administration, and privileged access management for all types of identities, including on-premises, hybrid, cloud-only, non-human (service accounts), and application-based credentials (API keys, tokens).
  • Monitor identity and privileged access activities, analyze logs and alerts, and support incident response and forensic investigations related to compromised identities or misuse of privilege.
  • Support audit, compliance, and certification efforts by providing evidence, improving control design, and remediating findings related to IAM, IGA, and PAM.
  • Troubleshoot complex IAM issues, perform root cause analysis, and drive continuous improvement and modernization of identity platforms.
  • Collaborate with security architecture, infrastructure, application, and DevOps teams to embed identity security and Zero Trust principles in new solutions and strategic programs.
  • Document architectures, standards, runbooks, and knowledge articles, and provide guidance and training to operations and application teams on identity security best practices
  • Participate in Proof of Concepts and product evaluations of new and emerging Identity security services and technologies.
  • May provide mentorship and support to various junior security engineers and security operations team members.
Requirements
  • Education: Bachelor’s degree required in Computer Science, Cybersecurity, Engineering, or related field.
  • Experience:
  • 2-3 years of hands-on cybersecurity engineering experience with exposure to IAM.
  • 2+ years of relevant work experience in security engineering, with a focus on concepts and technologies in Identity & Access Management (IAM) like SailPoint, Delinea, CyberArk, Entra ID, Ping Identities
  • 2+ years of relevant work experience with Identity and Access Management solutions, including the implementation and configuration of solutions for Single Sign-On (SSO), Multifactor Authentication (MFA), and various identity integration protocols (SAML, OIDC).
  • Experience building and maintaining SailPoint connectors, aggregation and provisioning jobs, roles/entitlements, and workflows for HR-driven JML processes.
  • Experience administering Microsoft Entra ID, including users, groups, roles, app registrations, and enterprise applications.
  • Working knowledge of solutions for Identity Governance and Administration, Privileged Access Management, and access control models such as RBAC, ABAC, PBAC, and FGAC
Additional Skills, Knowledge, and Experience:
  • Working knowledge of cloud-based Identity Providers, access controls, and hybrid federated IAM architectures.
  • Strong knowledge and experience with Microsoft Entra and Microsoft Active Directory (AD) Domain Services, management of AD users and security groups, and security best practices for configuring AD infrastructure, policies, group policy objects.
  • Experience with implementing access control mechanisms, such as authentication policies, identity lifecycle management (provisioning, deprovisioning), and methods for authorization management.
  • Strong verbal and written communication skills.
  • Ability to facilitate productive meetings and work comfortably in a team-oriented environment.
Personal Attributes:
  • Team Player: Ability to work collaboratively with senior engineers, IT teams, and other stakeholders to achieve shared goals.
  • Communication: Effective written and verbal communication skills, with the ability to explain technical concepts to non-technical audiences. Ability to leverage communication skills to ensure a strong commitment to customer service.
  • Detail-Oriented: Attention to detail and consideration of the non-technical components necessary for successfully executing projects and initiatives.
  • Adaptability: Ability to balance multiple competing prioities in a fast-paced environment.
  • Minimal Supervision: Comfortable with executing workstreams independently with a positive and self-motivated drive. Exercise sound judgement in complex situations.
Additional Requirements:
  • Continuous Learning: Commitment to staying current with industry trends and pursuing relevant certifications and training.
  • Travel: Willingness to travel occasionally
Physical & Office/Site Presence Requirements:

This is primarily a sedentary office position which requires the incumbent to have the ability to operate computer equipment, speak, hear, bend, stoop, reach, lift, and move and carry up to 25 lbs. Finger dexterity is necessary. 10-20% of travel is required.

Life at Lennar
  • Our Associates have access to robust health insurance plans, including Medical, Dental, and Vision coverage, ensuring their health needs are well taken care of.
  • Our 401(k) Retirement Plan, complete with a $1 for $1 Company Match up to 5%, helps secure their financial future, while Paid Parental Leave and an Associate Assistance Plan provide essential support during life's critical moments.
  • Education Assistance Program and up to $30,000 in Adoption Assistance, underscoring our commitment to their diverse needs and aspirations.
  • From the moment of hire, they can enjoy up to three weeks of vacation annually, alongside generous Holiday, Sick Leave, and Personal Day policies.
  • New Hire Referral Bonus Program, significant Home Purchase Discounts, and unique opportunities such as the Everyone’s Included Day.

At Lennar, we believe in investing in our Associates, empowering them to thrive both personally and professionally. Lennar Associates will have access to these benefits as outlined by Lennar’s policies and applicable plan terms. Visit Lennartotalrewards.com to view our suite of benefits.

Lennar is an equal opportunity employer and complies with all applicable federal, state, and local fair employment practices laws.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer I
Security Engineer I

Lennar USA • Irving (TX)

On-site
USD 95,000 - 135,000
Health insurance
401(k) match
Paid parental leave
+1
Sr Security Engineer
Sr Security Engineer

Lennar • Irving (TX)

On-site
USD 130,000 - 190,000
Health insurance
401(k) match program
Paid parental leave
+3
Sr Security Engineer
Sr Security Engineer

Lennar USA • Irving (TX)

On-site
USD 120,000 - 180,000
Health insurance
401(k) with company match
Education assistance
+2
Lead Security Analyst
Lead Security Analyst

Lennar • Irving (TX)

On-site
USD 120,000 - 160,000
Health insurance
401(k) match
Paid parental leave
+6
Sr Systems Engineer (Microsoft 365 Collaboration Platforms)
Sr Systems Engineer (Microsoft 365 Collaboration Platforms)

LEN Lennar Corporation • Town of Florida (NY)

On-site
USD 120,000 - 150,000
Health insurance
401(k) Company Match
Paid time off
+2
Security Program Manager
Security Program Manager

LEN Lennar Corporation • Town of Florida (NY)

On-site
USD 120,000 - 190,000
Health insurance
401(k) with company match
Paid parental leave
+3
Security Program Manager
Security Program Manager

Lennar • Irving (TX)

On-site
USD 120,000 - 150,000
Health insurance
401(k) plan
Sr Security Analyst
Sr Security Analyst

LAM Lennar Associates Mgmt LLC • Springfield (IL)

Hybrid
USD 105,000 - 140,000
Health insurance
401(k) Company match
Paid parental leave
+7
Security Program Manager
Security Program Manager

Lennar USA • Miami (FL)

On-site
USD 120,000 - 180,000
Health insurance
401(k) match
Paid parental leave
+1
Security Program Manager
Security Program Manager

Lennar USA • Irving (TX)

On-site
USD 120,000 - 150,000
Health insurance
401(k) match
Paid parental leave
+4