IAM Security Engineer

• Posted 2 hours ago • Updated 2 hours ago
Full Time
Part Time
Fitment

Dice Job Match Score™

🫥 Flibbertigibetting...

Job Details

Skills

  • Identity & Access Management (IAM)
  • Azure Active Directory
  • RBAC
  • Sentinel
  • SIEM

Summary

Role: IAM Security Engineer

Duration: 12+ months

Location: New York, NY or Pittsburgh, PA (4 days onsite required weekly from day one)

Interview: Video



Azure Native Tooling (Primary)

  • Identity & Access: Microsoft Entra ID (Azure AD), PIM, Conditional Access, Authentication Strengths, RBAC, Managed Identities
  • Threat Protection: Entra ID Protection, Microsoft Defender for Identity, Microsoft Defender XDR signals
  • SIEM/SOAR: Microsoft Sentinel (Log Analytics, Workbooks, Playbooks/Logic Apps)
  • Posture & Policy: Azure Policy, Azure Blueprints, Azure Automation
  • Secrets & Crypto: Azure Key Vault (FIPS 140-2), Key Vault HSM (as applicable)
  • Monitoring/Telemetry: Azure Monitor, Sign-In/Audit Logs, Diagnostic Settings, Activity Logs



Required Qualifications

  • 7+ years in security engineering/architecture, with 3+ years focused on IAM in Azure using native tooling.
  • Deep hands-on experience with Entra ID (Azure AD), RBAC, PIM, Conditional Access, Managed Identities, and Key Vault including policy design and enforcement at scale.
  • Practical knowledge of FedRAMP baselines (Moderate/High), NIST SP 800-53 control families, and audit/assessment processes; experience contributing to SSP/ConMon evidence.
  • Strong proficiency in Azure Policy/Blueprints and policy-as-code approaches; experience embedding controls into CI/CD.
  • Ability to design high-fidelity detections and automate incident response for identity threats using Sentinel and Logic Apps.
  • Excellent documentation and communication skills for control narratives, runbooks, access governance procedures, and executive status reporting.
  • Bachelor s degree in Information Security, Computer Science, Information Systems, or related field; equivalent experience considered.



Preferred Qualifications

  • Experience operating in Azure Government C High tenants and understanding telemetry/control nuances in those environments.
  • Background in Zero Trust principles, privileged identity strategy, and secure service-to-service authentication patterns.
  • Familiarity with Microsoft Purview and data access governance for sensitive workloads.
  • Scripting/automation skills (KQL, PowerShell, Bicep/Terraform basics) to manage identities, enforce policies, and generate evidence.
  • Certifications: AZ-500 (Azure Security Engineer Associate), SC-300 (Identity and Access Administrator), SC-200 (Security Operations Analyst), CISSP/CCSP, or equivalent.

Raj Kiran

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91091709
  • Position Id: TP 1281-1290-1774991898
  • Posted 2 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

New York, New York

Yesterday

Easy Apply

Contract

80 - 100

New York, New York

Today

Easy Apply

Full-time, Part-time, Third Party, Contract

New York, New York

Today

Easy Apply

Contract, Third Party

Depends on Experience

Jersey City, New Jersey

Today

Full-time

USD 133,000.00 - 185,000.00 per year

Search all similar jobs