IAM Security Specialist

Long Grove, IL, US • Posted 9 hours ago • Updated 9 hours ago
Contract Independent
On-site
USD $120,000.00 - 145,000.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • IT Infrastructure
  • Access Control
  • Cloud Computing
  • Business Systems
  • SLA
  • Orchestration
  • Internal Auditing
  • Multi-factor Authentication
  • Leadership
  • Workflow
  • ServiceNow
  • JIRA
  • SIEM
  • Scripting
  • Hardening
  • Cyber Security
  • Regulatory Compliance
  • Risk Assessment
  • Negotiations
  • Data Security
  • Supervision
  • Collaboration
  • Problem Solving
  • Conflict Resolution
  • Information Security
  • Security Operations
  • Risk Management
  • Authentication
  • Authorization
  • RBAC
  • Active Directory
  • SailPoint
  • CyberArk
  • Microsoft Azure
  • SaaS
  • Documentation
  • Dashboard
  • Management
  • Insurance
  • Financial Services
  • Health Care
  • Auditing
  • Sarbanes-Oxley
  • Gramm-Leach-Bliley Act
  • Windows PowerShell
  • Python
  • Reporting
  • Security+
  • SSCP
  • CISSP
  • Microsoft
  • Amazon Web Services
  • Analytical Skill
  • Stakeholder Management
  • Communication
  • Privacy
  • Marketing

Summary

Location: Long Grove, IL Salary: $120,000.00 USD Annually - $145,000.00 USD Annually Description:
Company: Fortune 500

Position: IAM Security Specialist

Location: Hybrid remote Dallas, Jacksonville or Chicago

Direct hire/permanent position


Benefits: Top-tier healthcare, 401k, comprehensive benefit package

Manages and matures our identity security posture-executes continuously monitoring and remediating identity risk and access exposure across IAM/IGA/PAM-reducing breach likelihood and audit/compliance risk. The Identity Security Posture Management (ISPM) Specialist is responsible for improving the organization's identity security posture by continuously identifying, prioritizing, and driving remediation of identity-related exposures across the enterprise. This role partners with Account Operations, IGA, PAM, Cybersecurity Operations, IT infrastructure, and application owners to reduce identity attack paths, strengthen privileged access controls, and produce measurable risk reduction aligned to regulatory and audit expectations

Responsibilities:

Identity posture monitoring & exposure management

Operate and mature the Identity Security Posture Management capability (ISPM) to discover identity exposures across Identity Providers (e.g., Entra ID/AD), SaaS applications, cloud environments, and critical business systems.

Identify and track identity security issues such as excessive privileges, dormant accounts, misconfigured admin roles, weak authentication enforcement, privilege escalation paths, and risky third-party access.

Maintain an Identity Exposure Register with severity, business impact, owner, remediation plan, and due dates; enforce SLA-based remediation for critical findings.

Risk prioritization & remediation orchestration

Triage and prioritize findings using risk-based methods (e.g., likelihood/impact, exploitability, business criticality).

Coordinate remediation with system owners: role redesign, least privilege enforcement, MFA coverage improvements, privileged role controls, conditional access, and entitlement clean-up.

Drive reduction of inappropriate combinations and segmentation-of-duties issues where relevant.

Controls, audit, and compliance enablement

Provide evidence to support identity-related controls (e.g., privileged access governance, MFA enforcement, access review/UAR posture, joiner-mover-leaver quality, service account governance).

Produce audit-ready reporting and artifacts for internal audit and external auditors (SOX/ITGITC reliance, regulator exams).

Ensure posture findings are connected to policy/standard requirements and tracked through governance workflows.

Telemetry, metrics, and executive reporting

Build and maintain ISPM dashboards and KRIs (e.g., privileged role sprawl, stale privileged accounts, MFA coverage, high-risk entitlements, remediation cycle time).

Present posture trends and remediation progress to Identity Security & Governance leadership and stakeholders (CISO org, IT, app owners).

Integration & automation

Partner with engineering teams to integrate ISPM insights with ticketing/workflow tools (e.g., Axonius, ServiceNow/Jira), SIEM/SOAR, IGA (e.g., SailPoint), and PAM (e.g., CyberArk).

Automate repeatable posture checks where possible (APIs, scripts, scheduled reports), and document repeatable playbooks/runbooks.

Collaboration & stakeholder enablement

Act as a trusted advisor to application and infrastructure teams on identity security best practices (least privilege, role design, privileged access, authentication hardening).

Contribute to identity governance operating procedures, playbooks, and standard updates.

Job Requirements

Bachelor's degree or an equivalent mix of education and experience in Information Cyber Security, Risk Management and Governance Risk and Compliance.

7+ years of relevant experience in third-party cyber and data risk management and conducting third-party cyber and data risk assessments.

Experience with reviewing and negotiating cyber and data security contract language.

Expert knowledge of cyber and data security and risk disciplines and practices.

Advanced knowledge of technology controls, security, and risk issues.

Strong eye for detail and ability to successfully manage and conduct third-party cyber and data assessments, gather evidence, and coordinate risk remediation responses.

A team player with strong collaboration skills and the ability to work with minimal supervision.

Ability to leverage strong verbal, written communication skills to collaborate with cross-functional teams.

Strong analytical and problem-solving skills capable of managing projects that drive business objectives.

Demonstrated ability to participate in complex, comprehensive or large projects and initiatives.

Ability to serve as a lead expert resource in technology controls and information security for project teams, the business, organization, and outside vendors.

5+ years in identity security, IAM/IGA, security operations, or security risk management with hands-on exposure to identity platforms.

Working knowledge of identity concepts: authentication, authorization, RBAC/ABAC, privileged access, service accounts, identity lifecycle, entitlement models, and access reviews.

Experience interpreting identity-related findings and coordinating remediation with technical and business stakeholders.

Familiarity with at least two of the following areas: Entra ID/Azure AD, Active Directory, SailPoint (or equivalent IGA), CyberArk (or equivalent PAM), AWS/Azure identity constructs, common SaaS admin models.

Strong documentation and reporting skills (evidence packs, dashboards, executive-ready summaries).

Preferred Qualifications

Experience with ISPM/identity exposure tooling (identity threat detection, entitlement risk, posture management, attack path analysis).

Experience in regulated industries (insurance, financial services, healthcare) and audit support (SOX/IT NYDFS, GLBA).Practical automation skills (PowerShell, Python, KQL, APIs) to streamline posture checks and reporting.

Certifications (nice to have): Security+, SSCP, CISSP (or associate), GIAC IAM-related, Microsoft/AWS security certifications.

Key Competencies

Risk-based prioritization; analytical thinking; stakeholder management

Strong written communication; evidence discipline

Operational rigor (tracking, SLAs, follow-through)

Ability to translate technical identity findings into business risk

By providing your phone number, you consent to: (1) receive automated text messages and calls from the Judge Group, Inc. and its affiliates (collectively "Judge") to such phone number regarding job opportunities, your job application, and for other related purposes. Message & data rates apply and message frequency may vary. Consistent with Judge's Privacy Policy, information obtained from your consent will not be shared with third parties for marketing/promotional purposes. Reply STOP to opt out of receiving telephone calls and text messages from Judge and HELP for help.
Contact:
This job and many more are available through The Judge Group. Please apply with us today!
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxjudgpa
  • Position Id: 1149442
  • Posted 9 hours ago

Company Info

About Judge Group, Inc.

The Judge Group, is a leading professional services firm specializing in talent, technology, and learning solutions. We consult, staff, train, and solve. Through our work we make people and organizations better.

Our services are successfully delivered through a network of more than 30 offices across the United States, Canada, and India. The Judge Group is proud to partner with the best and brightest companies in business today, including over 60 of the Fortune 100. We serve organizations in financial services, healthcare, life sciences, insurance, government (including aerospace and defense), manufacturing, and technology and telecommunications.

About_Company_OneAbout_Company_Two
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Chicago, Illinois

Today

Contract

Compensation information provided in the description

Chicago, Illinois

Today

Contract

Compensation information provided in the description

Buffalo, New York

Today

Contract

Compensation information provided in the description

Charlotte, North Carolina

Today

Contract

USD 64.00 - 69.00 per hour

Search all similar jobs