Senior Full Stack Engineer – IAM

Socket.dev

Burbank (CA)

On-site

USD 120,000 - 190,000

Full time

7 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Argano is hiring for an Application & Automation Engineer to design, build, and maintain secure enterprise web apps using .NET and Angular. You will create RESTful APIs, automate identity onboarding for non-human identities, and implement RBAC-based access models integrated with Entra ID.

This onsite role in Burbank, CA requires 8+ years in software engineering, strong Azure AD experience, and a proven ability to deliver production-ready solutions within contract timelines.

Qualifications

  • 8+ years of professional software engineering experience building and shipping web applications.
  • Expertise in .NET / .NET Core, C#, ASP.NET Web API.
  • Strong Angular (modern versions), TypeScript, HTML/CSS.
  • REST API design and relational data modeling with SQL Server.
  • Scripting with PowerShell for identity and directory automation.

Responsibilities

  • Design, build, and maintain secure, enterprise-scale web applications using .NET on the backend and Angular on the frontend.
  • Develop and deliver RESTful APIs and microservices that integrate with Active Directory/Entra ID.
  • Automate onboarding and lifecycle management of non-human identities and related workflows.
  • Implement RBAC-based access models and integrate with identity governance platforms.
  • Contribute to CI/CD pipelines, automated testing, and production-ready code.

Skills

C# / .NET
Angular / TypeScript
REST API design
SQL Server
PowerShell
Azure Active Directory / Entra ID
Git / CI-CD
Automated testing
Communication
Independent work

Education

Bachelor’s degree in Computer Science or related field

Tools

Git
CI/CD
Azure DevOps
SQL Server Management Studio

Job description

Description:

The Identity & Access Management (IAM) – Directory Services team is responsible for building and operating a secure, standardized, and automated enterprise identity foundation across The Walt Disney Company. We provide the authoritative directory platforms that enable authentication, authorization, and access governance for both human and non‑human identities.

Our mission is to move identity governance from manual, reactive processes to automated, policy‑driven enforcement, ensuring identities are secure, compliant, and healthy by default across their lifecycle. We partner closely with security, infrastructure, and application teams to eliminate legacy risk, reduce operational toil, and enable modern, cloud‑first identity capabilities at enterprise scale.

What You’ll Do:
Application & Automation Engineering
  • Design, build, and maintain secure, enterprise-scale web applications using .NET (C#) on the backend and Angular on the frontend.
  • Develop and deliver RESTful APIs and microservices that integrate with Active Directory, Entra ID, and enterprise identity platforms.
  • Build self-service portals and workflows that replace manual identity operations with automated, policy-driven processes.
  • Write clean, testable, well-documented code and participate in code reviews, CI/CD pipelines, and automated testing.
Non-Human Identity (NHI) Onboarding & Management
  • Automate the onboarding, lifecycle, and decommissioning of non-human identities — service accounts, managed identities, application registrations, certificates, and secrets.
  • Build tooling for NHI discovery, ownership attestation, credential rotation, and expiry notification.
  • Implement guardrails and approval workflows that ensure every NHI has a valid owner, justification, and least-privilege entitlement set.
AD Group Management & Access Automation
  • Develop automation for Active Directory group lifecycle management — creation, naming standards, nesting rules, ownership, membership review, and cleanup of stale or orphaned groups.
  • Implement RBAC-based, request-and-approve access models with time-bound and just-in-time membership patterns.
  • Integrate group management with Entra ID, ITSM, and identity governance platforms.
Governance, Compliance & Reporting Automation
  • Automate governance and compliance policy enforcement for Active Directory and Entra ID, including drift detection, automated remediation, and exception handling.
  • Build dashboards and compliance reporting that give owners, auditors, and leadership continuous visibility into identity posture.
  • Translate security standards and audit requirements into codified, testable policy checks.
Collaboration & Delivery
  • Partner with identity engineers, security architects, and application teams to gather requirements and deliver iteratively.
  • Produce runbooks, technical documentation, and knowledge transfer materials so solutions remain supportable beyond the contract term.
Work Location:

This is an onsite position based in Burbank, California. Candidates must be able to work onsite.

Required Qualifications & Skills:
  • 8+ years of professional software engineering experience building and shipping web applications.
  • Strong, hands-on expertise in:
  • .NET / .NET Core, C#, ASP.NET Web API
  • Angular (modern versions), TypeScript, HTML/CSS
  • REST API design, SQL Server / relational data modeling
  • PowerShell scripting for identity and directory automation
  • Demonstrated experience automating against Active Directory and/or Microsoft Entra ID (Azure AD) — LDAP, Microsoft Graph API, directory objects, groups, and service principals.
  • Experience with Git-based source control, CI/CD pipelines, and automated testing.
  • Ability to work independently in a complex enterprise environment and deliver production-ready outcomes within a fixed contract timeline.
  • Strong communication skills, with the ability to explain technical design to both engineers and non-technical stakeholders.
Preferred Qualifications:
  • Experience building identity governance, IAM, or access-request automation solutions.
  • Familiarity with non-human identity management, secrets management (e.g., Azure Key Vault, HashiCorp Vault), and certificate lifecycle automation.
  • Experience with Azure cloud services, Azure Functions, Logic Apps, or equivalent serverless automation.
  • Exposure to PIM/PAM platforms and privileged access models.
  • Experience with compliance and audit-driven engineering (SOX, PCI, SOC 2, or similar control environments).
  • Working knowledge of containers, Kubernetes, or infrastructure-as-code (Terraform, Bicep).
  • Relevant Microsoft certifications (e.g., SC-300, AZ-204, AZ-500).
Required Education:
  • Bachelor’s degree in Computer Science, Information Systems, Software, Electrical or Electronics Engineering, or comparable field of study, and/or equivalent work experience

Argano is the first of its kind: a digital consultancy totally immersed in high-performance operations. We steward enterprises through ever-evolving markets, empowering them with transformative strategies and technologies to exceed customer expectations, unlock commercial innovation, and drive optimal efficiency and growth.

Argano is an equal-opportunity employer. All applicants will be considered for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran status, or disability status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Full Stack Engineer – IAM
Senior Full Stack Engineer – IAM

Keste • California (MO)

On-site
USD 120,000 - 180,000
Senior Full-Stack Engineer, IAM Automation
Senior Full-Stack Engineer, IAM Automation

Socket.dev • Burbank (CA)

On-site
USD 120,000 - 190,000
Senior Full-Stack Engineer, IAM & Automation
Senior Full-Stack Engineer, IAM & Automation

Keste • California (MO)

On-site
USD 120,000 - 180,000
Senior Sailpoint Engineer
Senior Sailpoint Engineer

Socket.dev • Seattle (WA)

On-site
USD 140,000 - 200,000
Identity and Security Engineer
Identity and Security Engineer

Ledgent Technology • Houston (TX)

Hybrid
USD 130,000 - 140,000
Principal Software Engineer (Identity Services)
Principal Software Engineer (Identity Services)

INSPYR Solutions • Beverly Hills (CA)

Hybrid
USD 180,000 - 240,000
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration
Enterprise IAM Operations Engineer with Entra ID, RBAC, and Application Integration

Socket.dev • New York (NY)

Hybrid
USD 140,000 - 190,000
Manager, Engineering
Manager, Engineering

United States Digital Space LLC • United States

Hybrid
USD 150,000 - 210,000
Staff Identity Governance and Access Engineer
Staff Identity Governance and Access Engineer

United States Digital Space LLC • Washington

On-site
USD 180,000 - 230,000
Systems Engineer I - IAM
Systems Engineer I - IAM

Berkley Technology Services • Chicago (IL)

On-site
USD 104,000 - 113,000
Health, Dental, Vision, Life Insurance
Paid Time Off
401(k) and Profit-Sharing Plans