Identity Security Engineer

Cary, NC, US • Posted 20 hours ago • Updated 8 hours ago
Full Time
On-site
USD $111,000.00 - 116,000.00 per year
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Onboarding
  • Lifecycle Management
  • Security Controls
  • Identity Management
  • SaaS
  • Servers
  • Database
  • Access Control
  • Orchestration
  • Root Cause Analysis
  • Collaboration
  • Security Operations
  • Management
  • CyberArk
  • JIT
  • RBAC
  • Microsoft
  • PIM
  • Multi-factor Authentication
  • Directory Services
  • SSO
  • Authentication
  • Authorization
  • SAML
  • OAuth
  • OIDC
  • LDAP
  • Active Directory
  • Cloud Computing
  • Windows PowerShell
  • Python
  • Workflow
  • Customer Focus
  • Cyber Security
  • Information Technology
  • Computer Science
  • Screening
  • Artificial Intelligence
  • Recruiting
  • Taxes
  • Insurance
  • Law
  • Communication
  • Gmail
  • Routing
  • Management Consulting
  • Life Sciences
  • SAP BASIS
  • Military

Summary

Description:
Hybrid in Cary, NC

Our client seeks an Identity Security Engineer to strengthen identity security and reduce privileged access risk across cloud, on-premises, and hybrid environments. You will engineer and support IAM and PAM solutions, advance Zero Trust through Zero Standing Privilege and Just-In-Time access, and partner with cross-functional teams to enable secure access to enterprise systems, data, and cloud resources.

This is a full-time, permanent opportunity, offering a competitive salary and comprehensive benefits package. Qualified applicants must be willing and able to work on a w2 basis.

Salary: $111,000 - $116,000/ yr. w2 plus 10% bonus

Responsibilities:
  • Design, implement, and support enterprise IAM and PAM solutions across cloud, on-premises, and hybrid environments.
  • Engineer privileged access capabilities including credential vaulting, password rotation, session management, privileged account onboarding, break-glass access, and account lifecycle management.
  • Advance ZSP, JIT access, least privilege, privileged access reduction, and RBAC initiatives.
  • Implement and support Microsoft Entra ID capabilities including Conditional Access, PIM, MFA, Identity Protection, passwordless authentication, and access security controls.
  • Design and support application access management, SSO, federation, and modern authentication integrations using SAML, OAuth 2.0, OIDC, LDAP, and directory services.
  • Secure privileged users, administrative accounts, service accounts, application identities, machine identities, agentic identities, and other non-human identities.
  • Partner with infrastructure, cloud, application, and platform teams to onboard systems, applications, servers, databases, endpoints, and cloud resources into PAM and identity security platforms.
  • Develop and maintain privileged access standards, administrative access models, engineering runbooks, operational procedures, and Zero Trust access control patterns.
  • Automate identity and privileged access processes using PowerShell, Python, REST APIs, workflow orchestration, and platform integrations.
  • Troubleshoot IAM and PAM platform issues, perform root cause analysis, and implement corrective actions to improve reliability and operational stability.
  • Collaborate with Security Operations to investigate identity-related incidents, privileged access risks, control gaps, and suspicious activity involving high-risk identities.
  • Communicate identity security risks, technical recommendations, and remediation plans to cross-functional teams, senior management, and business stakeholders.
  • Other duties as assigned.

Experience Requirements:
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field, or equivalent combination of education and experience.
  • 3+ years of experience designing, implementing, and supporting IAM, PAM, and identity security solutions in large enterprise environments.
  • 2+ years of hands-on administration with CyberArk Privilege Cloud, CyberArk PAM, Delinea, BeyondTrust, or comparable PAM platforms.
  • Demonstrated ability to own and improve ZSP, JIT access, least privilege, RBAC, break-glass access, and privileged access reduction capabilities.
  • Strong working knowledge of Microsoft Entra ID, Conditional Access, PIM, MFA, Identity Protection, directory services, and modern authentication controls.
  • Understanding of SSO, federation, authentication, and authorization technologies such as SAML, OAuth 2.0, OIDC, LDAP, Active Directory, and cloud identity platforms.
  • Capability to deliver automation or integration using PowerShell, Python, REST APIs, or workflow automation is preferred.
  • Proven ability to assess identity security risks, identify control gaps, recommend remediation, and communicate with technical and non-technical stakeholders.
  • Strong judgment, ownership, urgency, customer focus, integrity, and ability to prioritize in a fast-paced environment.
  • Approximately 5% travel may be required.

Education Requirements:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related field, or equivalent experience.

Recruitment Transparency Notice



Eliassen Group values transparency in our recruitment practices. Please be advised that Eliassen Group utilizes artificial intelligence (AI) tools as part of its initial application screening and hiring process. You may receive email and SMS notifications from the Eliassen Virtual Recruiting Team (, ) inviting you to complete a brief voice screening as part of your application process. These tools assist our hiring teams in different ways, including but not limited to, assistance in reviewing application materials to help identify candidates whose qualifications most closely match the requirements of the position. All AI-assisted evaluations and responses are reviewed by human recruiters before any hiring decisions are made. The use of AI in our process is intended to support fairness, efficiency, and consistency, and Eliassen Group takes measures to prevent bias or discrimination in connection with its hiring practices. By proceeding, you acknowledge, agree, and consent to Eliassen Group's use of these tools, including AI tools, as part of the application and hiring process.

Skills, experience, and other compensable factors will be considered when determining pay rate. The pay range provided in this posting reflects a W2 hourly rate; other employment options may be available that may result in pay outside of the provided range.

W2 employees of Eliassen Group who are regularly scheduled to work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), dental, vision, pre-tax accounts, other voluntary benefits including life and disability insurance, 401(k) with match, and sick time if required by law in the worked-in state/locality.
If anyone reaches out to you about an open position connected with Eliassen Group, please ensure that you are working directly with us by confirming the following:


When you work with Eliassen Group, all email communication will come from an Eliassen.com address, never Gmail, Yahoo, etc.

Eliassen Group will never ask you for personal information (home address, bank account, or check routing number) until you have worked with someone clearly associated with Eliassen Group.

If you have any indication of fraudulent activity, please contact .

About Eliassen Group:

Eliassen Group is a strategic consulting firm that helps organizations reach further and achieve more through our technology, business advisory, and life sciences solutions. For nearly 40 years, we have combined exceptional people, deep domain expertise, and intelligent capabilities to expand our clients' capacity and accelerate meaningful outcomes. We are driven by a purpose to positively impact the lives of our employees, clients, consultants, and the communities we serve.

Eliassen is committed to building a diverse and inclusive team from a variety of backgrounds, perspectives, and skills. We are an Equal Opportunity and Affirmative Action Employer and all employment decisions are based on merit, performance, and business needs. Eliassen does not discriminate on the basis of race, color, gender identity or expression, sexual preference or orientation, sex (including pregnancy, childbirth, and related medical conditions), marital status, creed, religion, physical or mental disability, genetic information, military or veteran status, age, ancestry, national origin, citizenship status, prohibited criminal record inquiries of applicants and employees, or any other category protected by federal, state, or local laws.

Don't miss out on our referral program! If we hire a candidate that you refer us to then you can be eligible for a $1,000 referral check!
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: cxelisen
  • Position Id: a1WUQ000001vA3h2AE
  • Posted 20 hours ago

Company Info

About Eliassen Group

Eliassen Group is a leading strategic consulting company that provides business and IT services for our clients as they seek to transform and execute strategies that will drive exceptional outcomes. Leveraging over 30 years of success, we focus on professional services, talent solutions, and life sciences. Eliassen Group offers local community presence and deep networks. We are committed to positively impacting the lives of our employees, clients, consultants, and the communities in which we operate.

Eliassen Group is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Cary, North Carolina

•

Today

Full-time

USD 130,000.00 - 135,000.00 per year

Charlotte, North Carolina

•

Today

Contract

Charlotte, North Carolina

•

Today

Contract

Search all similar jobs