Senior Security Analyst - Customer Identity & Access Management

D. R. Horton

Arlington (TX)

On-site

USD 120,000 - 160,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, Dental and Vision
Employee Stock Purchase Plan
Life & Disability Insurance
Vacation, Sick, Personal Time
Company Holidays and Benefits

Job summary

D.R. Horton is seeking a Senior Security Analyst focused on Customer Identity & Access Management (CIAM) to secure, administer, and advance enterprise identity platforms for customers and applications.

The role requires deep technical CIAM knowledge, experience with Ping Identity and AD, and leadership in security operations to protect authentication flows and access controls across enterprise systems.

Qualifications

  • 7+ years of IT/Cybersecurity experience focused on IAM.
  • Experience leading CIAM projects and investigations.
  • Strong knowledge of authentication protocols such as LDAP, Kerberos, SAML, OAuth, OIDC.
  • Experience with Ping Identity and AD is highly preferred.

Responsibilities

  • Design and manage CIAM solutions for external users and applications.
  • Administer Ping Identity platforms including MFA, federation, SSO, and OAuth/OIDC.
  • Deploy enterprise MFA for customer-facing apps and services.
  • Secure the customer identity lifecycle from registration to de-provisioning.
  • Lead security initiatives and mentor Security Analysts and Administrators.
  • Participate in a 1-week on-call rotation for security operations.

Skills

CIAM Expertise
Ping Identity
Active Directory
Privileged Access Management
Vulnerability Management
Network Security
Email Security
SAML/OIDC/OAuth
LDAP/Kerberos
Strong Communication

Education

Bachelor's degree in IT/CS/Cybersecurity

Tools

Ping Identity
Microsoft Active Directory
Quest Active Roles
Microsoft Entra ID (Azure AD)

Job description

Job Description - Senior Security Analyst - Customer Identity & Access Management (2604765)

Job Description

Senior Security Analyst - Customer Identity & Access Management - 2604765

Description

D.R. Horton, Inc., the largest homebuilder in the U.S., was founded in 1978 and is a publicly traded company on the New York Stock Exchange. It is engaged in the construction and sale of high quality homes designed principally for the entry-level and first time move-up markets. The Company also provides mortgage financing and title services for homebuyers through its mortgage and title subsidiaries. Please visit our website at www.drhorton.com for more information.


D.R. Horton, Inc. is currently looking for aSenior Security Analyst. The Senior Security Analyst – Customer Identity & Access Management (CIAM) is a senior-level cybersecurity role responsible for securing, administering, and advancing the organization’s customer-facing identity, authentication, and access platforms. This position serves as a subject matter expert for CIAM technologies supporting external users, applications, and digital services, while also contributing to broader security operations including but not limited to vulnerability management, network security, email security, and privileged access management (PAM).

This role requires deep technical expertise in large-scale identity systems, strong operational ownership, and the ability to lead complex security initiatives and investigations independently. The Senior Security Analyst will work closely with application teams, IT Operations, Infrastructure, Network, and Risk teams to ensure secure, scalable, and compliant customer identity solutions and will participate in an established on-call rotation.

Essential Duties and Responsibilities

include the following. Other duties may be assigned.

Customer Identity & Access Management (CIAM) – Primary Focus
  • Design, implement, manage, and secure Customer Identity and Access Management (CIAM) solutions supporting external users, customers, and digital applications.
  • Administer and support Ping Identity platforms, including customer authentication services, federation, SSO, OAuth/OIDC flows, and secure access integrations.
    • Ping Directory – on premise
    • Ping Federate – on premise
    • Ping One MFA – cloud based
  • Design, deploy, and support enterprise Multi-Factor Authentication (MFA) solutions for customer-facing applications and services.
  • Secure the customer identity lifecycle, including registration, authentication, authorization, account recovery, and de-provisioning.
  • Investigate, respond to, and remediate customer identity-related security incidents, fraud activities, authentication abuse, and anomalous access behavior.
Active Directory & Directory Services
  • Provide security-focused administration and support for Microsoft Active Directory as part of the organization’s overall identity and access strategy.
  • Manage and secure Active Directory objects, authentication mechanisms, service accounts, group-based access, and privileged identities.
  • Support directory services security, including account lifecycle management, access reviews, privilege enforcement, and authentication troubleshooting.
  • Partner with Infrastructure and Operations teams on Active Directory hardening, access control standards, and identity security best practices.
  • Participate in investigations involving directory services, including credential compromise, privilege misuse, and identity-driven attack activity.
Privileged Access Management (PAM)
  • Administer and oversee privileged access controls across CIAM platforms, Active Directory, service accounts, and administrative roles.
  • Enforce least-privilege access and role-based access controls for enterprise identity systems.
  • Monitor privileged activity, logging, and alerting, and support forensic analysis and incident response.
  • Provide access control reporting and audit evidence when required.
Vulnerability Management
  • Support enterprise vulnerability management activities across identity platforms, directory services, authentication infrastructure, and supporting systems.
  • Analyze vulnerabilities impacting identity and access controls and coordinate remediation with Application, Infrastructure, and Security teams.
Network & Email Security Support
  • Support identity-related network security integrations, including authentication dependencies for VPNs, secure access, and protected service endpoints.
  • Assist with investigations related to credential abuse, phishing, account compromise, and identity-driven network or email threats.
  • Collaborate with Network and Messaging teams to strengthen identity-based access controls and security protections.
Security Operations & Leadership
  • Serve as a senior escalation point for complex CIAM, Active Directory, and authentication-related security issues.
  • Lead security initiatives related to CIAM, directory services, and access management platforms.
  • Mentor and provide technical guidance to Security Analysts and Security Administrators.
  • Develop and maintain technical standards, documentation, and operational procedures.
  • Participate in a 1-week on-call rotation to support security operations.
Qualifications
Education and/or Experience
Required Experience & Qualifications
  • 7+ years of experience in Information Technology and Cybersecurity, with a significant focus on Identity and Access Management.
  • College degree in Information Technology, Computer Science, Cybersecurity, or a related field, OR equivalent technical training and professional experience supporting enterprise IT environments.
  • Demonstrated enterprise experience with:
    • Ping Identity
    • Microsoft Active Directory
    • Quest Active Roles
    • Microsoft Entra ID (Azure AD)
    • Enterprise Multi-Factor Authentication (MFA) solutions
  • Strong experience with Privileged Access Management (PAM) concepts and controls.
  • Solid working knowledge of vulnerability management, network security, and email security.
  • Deep understanding of authentication and identity protocols, including LDAP, Kerberos, SAML, OAuth, and OpenID Connect.
  • Proven ability to troubleshoot complex security issues and lead investigations end-to-end.
  • Strong written and verbal communication skills.
Preferred Qualifications
  • Industry certifications such as CISSP, CISM, Microsoft security certifications, or other relevant cybersecurity certifications are a plus.
  • Ping Identity certifications (CIAM-focused) highly desirable and considered optimal.
  • Experience supporting external authentication platforms at scale with high availability and security requirements.
  • Experience in large-scale, hybrid cloud and on-premises enterprise environments.
Professional Expectations
  • Conducts all work in a professional, ethical, and security-focused manner.
  • Demonstrates strong ownership, accountability, and reliability.
  • Acts as a trusted CIAM subject matter expert and mentor within the security organization.
Work Schedule & Conditions
  • Onsite position requiring 5 days per week in the office
  • Participation in a 1-week on-call rotation
  • Occasional after-hours work for incident response, maintenance, or project cutovers

Come joina winning team with a Fortune 500 company! We are growing fast and arelooking for enthusiastic attitudes and team players to join our success. We offer an excellent benefits package including:

Medical, Dental and Vision

Employee Stock Purchase Plan

Life & Disability Insurance

Vacation, Sick, Personal Time and Company Holidays

Multiple Voluntary and Company provided Benefits

Build YOUR future with D.R. Horton, America’s Builder.

#WeBuildPeopleToo

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Security Analyst
Senior Security Analyst

D. R. Horton • Arlington (TX)

On-site
USD 110,000 - 170,000
Medical/Dental/Vision
Stock Purchase Plan
Life/Disability Insurance
+2
Senior Security Analyst
Senior Security Analyst

D.R. Horton • Arlington (TX)

On-site
USD 110,000 - 140,000
Medical, Dental and Vision
401(k)
Employee Stock Purchase Plan
+4
Senior CIAM Security Analyst: Identity & Access Expert
Senior CIAM Security Analyst: Identity & Access Expert

D. R. Horton • Arlington (TX)

On-site
USD 120,000 - 160,000
Medical, Dental and Vision
Employee Stock Purchase Plan
Life & Disability Insurance
+2
Senior Staff Software Engineer, IDM Engineering
Senior Staff Software Engineer, IDM Engineering

Ping Identity Corporation • United States

On-site
USD 151,000 - 185,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior IAM Engineer
Senior IAM Engineer

Rivago Infotech Inc • California (MO)

Hybrid
USD 140,000 - 190,000
Senior Technical Support Engineer
Senior Technical Support Engineer

Ping Identity • Northern (KY)

Hybrid
USD 70,000 - 87,000
Senior Technical Support Engineer
Senior Technical Support Engineer

Ping Identity • United States

Remote
USD 70,000 - 87,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Senior Staff Software Engineer, IDM Engineering
Senior Staff Software Engineer, IDM Engineering

Ping Identity • United States

Remote
USD 151,000 - 185,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Manager, Cyber Security
Manager, Cyber Security

Ping Identity • Denver (CO)

Hybrid
GBP 90,000 - 130,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3
Staff Software Engineer, IDM Engineering
Staff Software Engineer, IDM Engineering

Ping Identity • United States

Remote
USD 132,000 - 165,000
Generous PTO & Holiday Schedule
Parental Leave
Progressive Healthcare Options
+3