368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$106k – $216k per year (Estimated)
Location
Remote (Pakistan, Saudi Arabia)
Seniority
Senior · 6+ years exp
Overview
Company
Impact
Profile match

The IAM Senior Engineer is responsible for designing, implementing, and maintaining enterprise IAM solutions that ensure secure and seamless access to systems and data. This role involves leading technical initiatives, automating identity lifecycle processes, integrating applications, and enforcing security policies across the organization. The engineer collaborates with security, infrastructure, and application teams to ensure IAM aligns with business needs and zero-trust security principles.

Responsibilities

1. IAM Architecture & Engineering

  • Design and implement IAM architectures, including:
    • Identity lifecycle management
    • Authentication and authorization models
    • Access governance and role-based access control (RBAC/ABAC)
    • Privileged access management (PAM)
  • Implement Zero-Trust aligned identity controls.
  • Develop system integrations using APIs, SSO, federation (SAML, OAuth, OIDC), and SCIM provisioning.

2. Identity Lifecycle & Automation

  • Automate joiner/mover/leaver (JML) workflows.
  • Build custom connectors, provisioning scripts, and automation pipelines using PowerShell, Windows Script
  • Optimize identity data flows between HR systems, directories, and applications.

3. Directory & Authentication Services

  • Manage enterprise identity directories (e.g., Active Directory, Entra ID, LDAP).
  • Implement MFA, passwordless authentication, and adaptive access policies.
  • Troubleshoot authentication issues across protocols: Kerberos, LDAP, SAML, OAuth 2.0, OIDC.

4. Access Governance & Compliance

  • Ensure adherence to access policies and regulatory requirements (ISO 27001, SOX, HIPAA, PCI, etc.).
  • Support access certifications/attestations.
  • Develop and maintain IAM standards, patterns, and playbooks.
  • Conduct periodic access reviews and risk analysis.

5. Privileged Access Management (PAM)

  • Administer PAM platforms (CyberArk, BeyondTrust, Delinea, etc.).
  • Implement vaulting, credential rotation, session monitoring, and just-in-time access.
  • Reduce standing privileges and legacy admin accounts.

6. Application Integration

  • Onboard applications for SSO and provisioning using SAML, OAuth, and SCIM
  • Work with developers and product teams to implement secure, modern identity patterns.

7. Incident Response & Troubleshooting

  • Investigate and resolve IAM-related security incidents.
  • Support SOC with identity-specific detection, alerts, and forensics.
  • Perform root-cause analysis for identity access failures.

Technical Skills

  • 6 to 8 years of experience in identity and access management (IAM) engineering.
  • Bachelor's degree in computer science, information security, or a related field.
  • Strong expertise in:
    • IAM platform(s): Okta, Azure AD/Entra ID, Ping, ForgeRock, SailPoint, etc.
    • Directory services (Active Directory, LDAP)
    • SSO/Federation (SAML, OIDC, OAuth)
    • SCIM provisioning
  • Experience designing and implementing enterprise IAM architectures, including identity lifecycle management, authentication and authorization models, access governance, and privileged access management.
  • Experience automating joiner/mover/leaver (JML) workflows and identity lifecycle processes.
  • Ability to build custom connectors, provisioning scripts, and automation pipelines using PowerShell and Windows scripting.
  • Experience with privileged access technologies, including administering PAM platforms such as CyberArk, BeyondTrust, or Delinea for vaulting, credential rotation, session monitoring, and just-in-time access.
  • Familiarity with Zero Trust principles.
  • Understanding of cloud platforms: Azure, AWS, or GCP.
  • Experience implementing MFA, passwordless authentication, and conditional/adaptive access policies.
  • Experience troubleshooting authentication issues across Kerberos, LDAP, SAML, OAuth 2.0, and OIDC.
  • Experience supporting access governance processes such as access reviews and access certifications/attestations.
  • Experience working in environments aligned with ISO 27001; experience with SOX, HIPAA, or PCI is a plus.

Soft Skills

  • Strong problem-solving and analytical mindset.
  • Ability to communicate with both technical and non-technical stakeholders.
  • Experience leading technical projects and delivering enterprise-grade solutions.
  • Experience partnering with SOC, security, infrastructure, and application teams to deliver IAM integrations and resolve incidents.
  • Experience investigating and resolving IAM-related security incidents and performing root-cause analysis.
  • Eligibility to work in Saudi Arabia.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
In your city
$71k – $120k per year (Estimated) • Equity • Remote/Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • Kraków
DevOps
AWS
Azure
CI/CD
GCP
Apply
$143k – $258k per year (Estimated) • Remote/Hybrid • Full-Time • 12+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
JavaScript
Python
TypeScript
Python
pySpark
AI/ML
Prompt Engineering
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
Jenkins
GitHub
GitLab
Analytics
ETL/ELT
Apply
$163k – $434k per year • Remote/Hybrid • Full-Time • 12+ years exp • Associate's Degree • Chicago • Milwaukee • Dallas • Columbus • Kirkland
JavaScript
Python
TypeScript
Python
pySpark
AI/ML
Prompt Engineering
Spark
DevOps
AWS
Azure
CI/CD
GCP
Git
Jenkins
GitHub
GitLab
Analytics
ETL/ELT
Apply
SAP BASIS 11 hours ago
In office • Full-Time • Bachelor's Degree • Jakarta • Semarang
Databases
SAP HANA
DevOps
AWS
Azure
GCP
Incident Management
Apply
Principal Engineer 11 hours ago
$27k – $71k per year (Estimated) • Equity • In office • Full-Time • 10+ years exp • Bachelor's Degree • Bengaluru
Groovy
JavaScript
Python
Java
Java
Gradle
Spring Boot
Databases
DynamoDB
ElasticSearch
MySQL
Redis
Frontend
React.js
Redux
Mobile
JUnit
DevOps
AWS
AWS Lambda
CI/CD
Docker
Git
Jenkins
Amazon ECS
Amazon Kinesis
Amazon S3
API Gateway
Design
AutoCAD
Fusion 360
Management
Jira
QA
JMeter
Apply
Junior Oracle DBA 8 days ago
In office • Full-Time • 1+ year exp • Bachelor's Degree • Lahore
SQL
Databases
Oracle
Apply
In office • Full-Time • 1+ year exp • Bachelor's Degree • Lahore
SQL
Databases
Oracle
Apply
In office • Contractor • 1+ year exp • Bachelor's Degree • Lahore
Apply
In office • Contractor • 2+ years exp • Bachelor's Degree • Karachi
Apply
In office • Contractor • 1+ year exp • Bachelor's Degree • Islamabad
DevOps
Incident Management
SLI/SLO/SLA
Management
Jira
ServiceNow
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.