Senior IT Security Analyst

Cybersecurity Jobs

Denver (CO)

Presencial

USD 140.000 - 190.000

Jornada completa

Hace 3 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Destaca para este puesto — genera un currículum y una carta de presentación adaptados en cuestión de un minuto.

Supera los filtros ATS

Ventajas ofrecidas por este puesto de trabajo

Medical benefits
401(k) match
Paid time off
On-site facilities

Descripción de la vacante

Cybersecurity Jobs in Denver, CO is seeking a Lead enterprise IAM and identity security modernization expert to design and implement IAM across cloud and hybrid environments from our Corporate Headquarters.

You will lead programs across Identity Governance and Administration (IGA), Privileged Access Management (PAM), Identity Threat Detection and Response (ITDR), and Zero Trust, while building automation with PowerShell, Python, SQL, and Power Automate to improve efficiency.

Formación

  • Advanced IAM knowledge including IGA, PAM, authentication, authorization, and lifecycle management.
  • Strong understanding of Zero Trust, least privilege, adaptive authentication, risk-based access controls, and ITDR.
  • On-premise, cloud, and hybrid identity environments.
  • Knowledge of authentication, federation, and directory protocols: SAML 2.0, OAuth 2.0, OIDC, LDAP, Kerberos, RADIUS, SCIM.
  • RBAC, ABAC, PBAC frameworks.
  • Analytical and problem-solving skills; strong communication and leadership.

Responsabilidades

  • Design, implement, and maintain enterprise IAM solutions for workforce, privileged, and application identities.
  • Integrate, administer, and optimize IAM platforms and APIs across cloud and on-prem environments.
  • Define IAM architectures, standards, and roadmaps aligned to security objectives.
  • Lead IAM programs across IGA, PAM, ITDR, and Zero Trust initiatives.
  • Develop automation using PowerShell, Python, SQL, or Power Automate to improve efficiency.
  • Mentor and guide junior engineers; collaborate with stakeholders across IT, Audit, and Compliance.

Conocimientos

IAM
IGA
PAM
Zero Trust
SSO
MFA
Conditional Access
RBAC
ABAC
PBAC
Cloud Security

Educación

Bachelor's degree

Herramientas

SAML 2.0
OAuth 2.0
OIDC
LDAP
Kerberos

Descripción del empleo

Lead enterprise IAM and identity security modernization across global cloud and SaaS environments from the Corporate Headquarters in Denver, CO.

Responsibilities
  • Design, implement, and maintain enterprise Identity and Access Management (IAM) solutions for workforce, privileged, and application identities
  • Integrate, administer, and optimize enterprise IAM platforms
  • Define IAM architecture standards, design patterns, and technical roadmaps aligned to business and security objectives
  • Build scalable identity solutions supporting cloud-first and hybrid environments
  • Assess emerging IAM technologies and industry best practices to strengthen security posture
  • Lead programs across Identity Governance and Administration (IGA), Access Management, Privileged Access Management (PAM), Identity Threat Detection and Response (ITDR), and Zero Trust
  • Design and implement identity lifecycle management including provisioning, deprovisioning, role management, and access certification activities
  • Develop and maintain authorization models using RBAC, ABAC, and PBAC
  • Support segregation of duties (SoD), least privilege, just-in-time access, and privileged account governance programs
  • Administer and enhance authentication services such as SSO, MFA, passwordless authentication, federation, and conditional access
  • Manage on-premise, cloud, and hybrid identity environments
  • Configure Identity Protection policies and Conditional Access controls, including risk-based authentication and adaptive access capabilities
  • Design and maintain integrations between identity platforms, cloud services, and business applications using APIs, provisioning connectors, and automation frameworks
  • Implement secure identity integrations for Microsoft Azure, AWS, and Google Cloud Platform and associated enterprise apps and SaaS
  • Partner with application owners and development teams to ensure consistent authentication and authorization controls
  • Support application onboarding, federation, provisioning, and access governance activities
  • Develop automation solutions using PowerShell, Python, SQL, Power Automate, or similar tools to reduce manual effort and improve efficiency
  • Create and maintain technical documentation, architecture diagrams, operational procedures, and support runbooks
  • Recommend and implement process improvements that enhance security, user experience, and operational effectiveness
  • Act as a senior IAM subject matter expert and trusted advisor to Information Security, IT, Audit, Compliance, and business stakeholders
  • Lead technical projects from planning and design through deployment and operational transition
  • Mentor junior employees and provide technical guidance across IAM initiatives
  • Support audit, compliance, and regulatory activities by implementing controls and providing required evidence
  • Participate in identity-related incident response and root cause investigations
  • Stay current on IAM threats, technologies, and industry trends
  • Perform other duties as assigned
Requirements
  • Advanced knowledge of IAM, including IGA, PAM, authentication, authorization, and identity lifecycle management
  • Strong understanding of modern identity security, including Zero Trust, least privilege, adaptive authentication, risk-based access controls, continuous access evaluation, and ITDR
  • Advanced knowledge of on-premise, cloud, and hybrid identity environments
  • Strong understanding of authentication, federation, and directory protocols: SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), LDAP, Kerberos, RADIUS, SCIM
  • Knowledge of access control frameworks: RBAC, ABAC, PBAC
  • Strong analytical and problem-solving skills to diagnose and resolve complex technical issues
  • Excellent verbal and written communication skills for technical and non-technical audiences
  • Strong organizational and project leadership skills; ability to manage multiple priorities
  • Demonstrated ability to influence stakeholders and collaborate across cross-functional teams
  • Ability to develop and maintain technical documentation, standards, procedures, and operational runbooks
Technologies
  • Identity and Access Management (IAM), Identity Governance and Administration (IGA), Privileged Access Management (PAM), Identity Threat Detection and Response (ITDR)
  • Zero Trust, RBAC, ABAC, PBAC
  • SSO, MFA, passwordless authentication, Conditional Access, Identity Protection policies
  • APIs, provisioning connectors
  • PowerShell, Python, SQL, Power Automate
  • Microsoft Azure, AWS, Google Cloud Platform
  • SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), LDAP, Kerberos, RADIUS, SCIM
Benefits
  • Medical with multiple plan options
  • Short and long-term disability and life insurance
  • Health savings and flexible spending accounts
  • Generous time off: 3 weeks paid vacation, 7 days paid sick time, 12 paid holidays
  • 8 hours of paid volunteer time off
  • 8 weeks of paid parental leave for both parents
  • Company matched 401(k)
  • Tuition reimbursement
  • Expanded mental health coverage and employee assistance programs
  • Voluntary benefits: critical illness, accident and hospital indemnity, pet insurance, identity theft, and legal assistance
Work Environment
  • On-site in Denver, Colorado at Corporate Headquarters
  • Standard office environment
Preferred Qualifications
  • Knowledge of regulatory and compliance frameworks: SOX, NIST, ISO 27001, and CIS Controls
  • Familiarity with IT and Security platforms or applications within Customer Relationship Management (CRM), Zero Trust, and other enterprise product families
  • Understanding of cloud security architectures across Azure, AWS, and Google Cloud Platform
Experience
  • Seven (7) or more years in Identity and Access Management, Cybersecurity Engineering, Information Security, or a related technical discipline
  • Five (5) or more years administering and supporting enterprise IAM platforms and access management processes
  • Three (3) or more years supporting on-premise, cloud, and/or hybrid identity directory services in a medium to large enterprise environment
  • Experience implementing and supporting IGA and PAM solutions
  • Experience administering enterprise authentication solutions including SSO, MFA, federation services, and conditional access policies
  • Experience integrating identity platforms with cloud providers, enterprise applications, and SaaS solutions
  • Experience designing and implementing user provisioning, deprovisioning, access reviews, role management, and access certification processes
  • Experience developing automation solutions using PowerShell, Python, SQL, Power Automate, or similar technologies
  • Experience leading technical projects from planning and design through implementation and operational support
  • Experience collaborating with Information Security, Infrastructure, Application Development, Audit, and business stakeholders to deliver IAM solutions
Preferred Experience
  • Experience with IAM platforms and technologies
  • Experience supporting global or manufacturing organizations
  • Experience supporting regulatory audits, compliance initiatives, and remediation activities
  • Experience implementing Zero Trust, PAM, or enterprise IAM modernization programs
Preferred Certifications
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Identity and Access Manager (CIAM)
  • Certified Identity Management Professional (CIMP)
  • Additional cloud, cybersecurity, or identity management certifications relevant to the role
Education
  • Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field; or an equivalent combination of education and experience
Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Information Security Identity and Access Engineer
Information Security Identity and Access Engineer

PSECU • Harrisburg

Híbrido
USD 100.000 - 140.000
Senior Identity and Access Management Analyst
Senior Identity and Access Management Analyst

Baptist Memorial Health Care • Memphis (TN)

Presencial
USD 110.000 - 160.000
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

Presencial
USD 100.000 - 130.000
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

Presencial
USD 130.000 - 160.000
Medical insurance
Dental insurance
Vision insurance
+11
Sr. IAM Engineer
Sr. IAM Engineer

Pho Prime, LLC • Shelton (CT)

Presencial
USD 120.000 - 170.000
Mobility Allowance
Senior IAM Engineer
Senior IAM Engineer

Total Quality Logistics • Cincinnati (OH)

Presencial
USD 120.000 - 180.000
Hybrid work model
Relocation assistance
Health, dental, vision
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

Presencial
USD 140.000 - 180.000
Cybersecurity IAM Architect - Staff Engineer
Cybersecurity IAM Architect - Staff Engineer

OneMain Financial • Baltimore (MD)

Presencial
USD 150.000 - 190.000
Information Security Engineer
Information Security Engineer

Motion Recruitment • Charlotte (NC)

Presencial
USD 110.000 - 150.000
IAM / Automation Lead
IAM / Automation Lead

Covetrus, Inc. • Northern (KY)

Presencial
USD 140.000 - 190.000
401k savings & company match
Paid time off
Paid holidays
+11