Kforce has a client in San Diego, CA that is looking for a Remote IT Identity Access Engineer. The Senior IT Identity Access Engineer will help build and develop the company's program. This position will interface with all business units to understand and document their access requirements and propose solutions. The successful candidate will also help to develop operational processes for identity lifecycle management.
Responsibilities:
Provides subject matter expertise in the design, development, testing, implementation, and integration of Identity and Access Management (IAM) systems and solutions
Identifies strategic opportunities for improvement of Identity Management based on industry trends, best practices, and business needs
Assists with the planning and execution of SOX user access certifications
Assists with building and developing systems and processes to enforce least privilege
Integrate IAM systems with in-house, third party, and SaaS applications
Ensure authorized access by investigating improper access, revoking access, reporting violations, monitoring information requests by new programming, and recommending improvements
Identify & monitor trends/avoidable access-related errors; work to develop solutions, improvements, & stop-gaps
Collaborate with the management team to formulate and execute action plans against identified opportunities
Executes controls around Identity lifecycle management
Partners with various application owners and business leaders to define lifecycle management
Guides and facilitates the successful and on-time completion of IAM major programs and projects
Facilitate the continuous adoption, training, communication, and education of IAM capabilities, functions, and standards
Partners with business stakeholders and system owners to educate and influence decisions to support the IAM program
Resolves IAM related technical issues
REQUIREMENTS:
Bachelor's degree directly related to the position or equivalent, required; Degree in Computer Science, IT, or Information Security preferred
Security industry certifications are a plus
5+ years of experience information security and/or identity management disciplines, including designing and architecting solutions based on client requirements
Experience with SSAE18 and SOX audit programs
Proficient in various identity management concepts, including RBAC/ABAC, provisioning, attestation, auditing and reporting
Demonstrated current work experience engineering, customizing, and integrating IAM solutions such as Azure Active Directory, Active Roles, Okta, CyberArk
Knowledge and experience with Active Directory, LDAP, SAML, WS-Federation, SCIM, OpenID, OAuth, AWS IAM
Adept at PowerShell & VB scripting, regular expressions, policy management, etc.; Additional experience in one or more scripting languages such as Python, Ansible, or JSON is a plus
Excellent analytical, evaluative, and problem-solving abilities
Exceptionally self-motivated, effective multi-tasking, and thrives in a small team environment
Excellent written and oral communication skills including the ability to articulate requirements to both technical and non-technical audiences
Excellent verbal and written communication skills
Highly organized and detail-oriented; ability to work in a fast-paced, metrics-driven environment
Proficiency in Microsoft Office Suite, Word, Excel, Wiki, collaborative cloud-based programs, and third-party software applications
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note: Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless
and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
By clicking "Apply Today" you agree to receive calls, AI-generated calls, text messages or emails from Kforce and its affiliates, and service providers. Note that if you choose to communicate with Kforce via text messaging the frequency may vary, and message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You will always have the right to cease communicating via text by using key words such as STOP.