Senior IAM Engineer

Openlane

Carmel (IN)

Remote

USD 115,000 - 130,000

Full time

9 days ago
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical benefits
401k
Paid time off
Maternity leave
Disability insurance
Employee assistance program

Job summary

OPENLANE is seeking a Senior Identity & Access Engineer to design and scale our enterprise IAM, SSO, MFA, and PAM platforms across hybrid and cloud environments. You will own complex identity architecture projects and build automated provisioning lifecycles using code and APIs.

You will collaborate with Cloud Engineering, IT Infrastructure, Compliance, and Security to strengthen zero-trust controls, perform access reviews, and support audits. Remote-friendly role with competitive compensation.

Qualifications

  • 5+ years of hands-on IAM or IT security engineering.
  • Bachelor’s degree in CS/IT/Cybersecurity or equivalent.
  • Experience with SAML 2.0, OAuth 2.0, OpenID Connect.
  • Strong directory and scripting automation skills.
  • Familiarity with IaC tools and cloud multi‑cloud IAM.

Responsibilities

  • Design, integration, and daily admin of IAM, SSO, MFA, PAM.
  • Automate provisioning/deprovisioning and access workflows.
  • Provide Tier-3 support and root-cause analysis for IAM issues.
  • Lead access certification, audits, and risk assessments across multi‑cloud.

Skills

IAM architecture
SSO/MFA/RBAC/ABAC/IGA
Cloud IdP config (Okta, Entra ID, Ping
Directory services (AD, LDAP)
Scripting (Python, PowerShell, Bash)
IaC (Terraform, CloudFormation)
AI-assisted coding/tools

Education

Bachelor's degree in CS/IT/Cybersecurity or equivalent

Tools

Okta
Microsoft Entra ID
Ping Identity
Active Directory
LDAP
Terraform
CloudFormation

Job description

## Senior IAM EngineerApply: Remote: US - IN - Carmel (OPENLANE): CAN - ON - Toronto (AutoVIN, OPENLANE, TradeRev): Full time: Posted Today: R-254891**Who We Are:**At OPENLANE we make wholesale easy so our customers can be more successful.**We’re a technology company** building the world’s most advanced—and uncomplicated—digital marketplace for used vehicles.**We’re a data company** helping customers buy and sell smarter with clear, actionable insights they can understand and use.**And we’re an innovation company** accelerating the future of wholesale remarketing through curiosity, collaboration, and an entrepreneurial spirit.**Our Values:****Driven Waybuilders**. We pursue challenges that inspire us to build, create, and innovate.**Relentless Curiosity.** We seek to understand and improve our customers’ experience.**Smart Risk-Taking.** We transform risk into progress through data, experience, and intuition.**Fearless Ownership.** We deliver what we promise and learn along the way.**We’re Looking For:**A Senior Identity & Access Engineer to design, scale, and optimize our enterprise identity infrastructure and access governance frameworks. In this role, you will take ownership of complex identity architecture projects, build seamless automation for access lifecycles, and strengthen our zero-trust security posture across hybrid and cloud environments. **You Are:*** Comfortable using AI coding and productivity tools as part of your daily workflow to work faster and smarter.* A proactive, analytical, and security-focused engineer who thrives on solving complex identity challenges.* A collaborative team player with strong technical ownership and a commitment to continuous improvement.* A clear communicator who can collaborate across technical teams and mentor junior engineers on IAM best practices.**You Bring:*** Core knowledge of advanced identity lifecycles, enterprise governance, zero-trust principles, and least-privilege security architectures.* Functional expertise in designing and optimizing single sign-on (SSO), multi-factor authentication (MFA), role-based/attribute-based access control (RBAC/ABAC), and identity governance and administration (IGA).* Technical expertise in configuring and automating cloud identity providers (e.g., Okta, Microsoft Entra ID, Ping Identity), directory services (Active Directory, LDAP), scripting (Python, PowerShell, Bash), and Infrastructure as Code (IaC) tooling.**You Own:*** Design, integration, and day-to-day administration of enterprise IAM, SSO, MFA, and Privileged Access Management (PAM) platforms.* Development and optimization of automated provisioning/deprovisioning workflows, access request pipelines, and lifecycle operations.* Escalated tier 3 support, root-cause analysis, and technical resolution for complex identity and authentication issues.* Enterprise access certification reviews, compliance audit support, and identity risk assessment across multi-cloud environments.**You Drive:*** **Execution**: Modernizing identity protocols, deploying scalable access policies, and automating manual identity lifecycle tasks using code and API integrations.* **Results:** Enhanced infrastructure security, zero unauthorized access incidents due to legacy controls, streamlined user onboarding/offboarding, and audit readiness.**Who You Will Work With:**Reporting to the Identity & Access Management Manager, this role will collaborate with Cloud Engineering, IT Infrastructure, Compliance Officers, and Security Architects on a daily to weekly basis. **Where You Work:**Your work is performed as a Remote employee, with flexible support aligned to business needs. **Must Have’s:*** 5+ years of hands-on experience in Identity and Access Management (IAM) or IT Security engineering.* Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.* Demonstrated experience architecting and managing enterprise SSO, MFA, and federated identity protocols (SAML 2.0, OAuth 2.0, OpenID Connect).* Advanced proficiency in directory service administration, scripting for workflow automation, and exposure to Infrastructure as Code (e.g., Terraform, CloudFormation).* Demonstrated hands-on use of AI-assisted coding/development tools (e.g., AI coding assistants, LLM-based automation) to accelerate scripting, automation, or documentation work.**Nice to Have’s*** Relevant certifications such as CISSP, Certified Identity and Access Manager (CIAM), or vendor credentials (e.g., Okta Certified Professional, Okta Certified Administrator, Google Professional Cloud Security Engineer, Google Professional Security Operations Engineer, AWS Certified Security - Specialty).* Hands-on experience with Privileged Access Management (PAM) solutions.* Experience designing identity security solutions for multi-cloud environments (AWS, Azure, Google Cloud).**What We Offer:*** Competitive pay* Medical, dental, and vision benefits with employer HSA contributions (US) and FSA options (US)* Immediately vested 401K (US) or RRSP (Canada) with company match* Paid Vacation, Personal, and Sick Time* Paid maternity and paternity leave (US)* Employer-paid short-term disability, long-term disability, life insurance, and AD&D (US)* Robust Employee Assistance Program* Employer paid Leap into Service Day to volunteer* Tuition Reimbursement for eligible programs* Opportunities to expand your skill set and share your knowledge across a publicly traded, global organization* Company culture of internal promotions, diverse career paths, and meaningful advancement**Sound like a match? Apply Now - We can't wait to hear from you!****Compensation Range of**Annual Salary: $115,000.00 - $130,000.00 USD(Depending on experience, skill set, qualifications, and other relevant factors.)
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IAM / Automation Lead
IAM / Automation Lead

Covetrus, Inc. • Northern (KY)

On-site
USD 140,000 - 190,000
401k savings & company match
Paid time off
Paid holidays
+11
Staff Identity Engineer
Staff Identity Engineer

United States Digital Space LLC • Washington

On-site
USD 161,000 - 221,000
Equity
Health insurance
Dental & Vision insurance
+1
Applications Developer II - IAM Operations
Applications Developer II - IAM Operations

Uber • Seattle (WA)

On-site
USD 153,000 - 170,000
401(k) plan
Bonus program
Equity award
+1
Senior IAM Engineer
Senior IAM Engineer

ADE ADESA Inc • Carmel (IN)

Remote
USD 115,000 - 130,000
Medical benefits
Dental benefits
Vision benefits
+1
Senior Identity & Access Management Engineer
Senior Identity & Access Management Engineer

GreatAmerica Financial Services Corporation • Iowa (LA), Northern (KY)

Hybrid
USD 120,000 - 170,000
Hybrid work arrangements
Health insurance
401(k) and company match
+1
Senior IAM Engineer
Senior IAM Engineer

Total Quality Logistics • Cincinnati (OH)

On-site
USD 120,000 - 180,000
Hybrid work model
Relocation assistance
Health, dental, vision
Senior Security Engineer - Identity and Access Management
Senior Security Engineer - Identity and Access Management

marqeta-inc • United States

Remote
USD 98,000 - 123,000
Remote-first flexibility
Annual bonus program
Health insurance
+6
Senior Identity & Access Architect- Remote within the US
Senior Identity & Access Architect- Remote within the US

Francisco Partners • United States

Remote
USD 140,000 - 190,000
Medical benefits
Dental benefits
Vision benefits
+7
Senior+ IAM Engineer
Senior+ IAM Engineer

United States Digital Space LLC • San Mateo (CA)

On-site
USD 200,000 - 300,000
Healthcare coverage
Vision & dental
HSA/FSA
+7
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

On-site
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11