13h ago
Senior Identity Management Engineer
Pittsburgh, Pennsylvania
$146k-$211.5k / year
full-timesenior Hybridtransportation
๐ Tech Stack
๐ผ About This Role
You'll implement and evolve Aurora's modern identity ecosystem built on Zero Trust principles, including Ping Directory and Conductor One deployment. You'll own the full IAM lifecycle, automating Joiner-Mover-Leaver processes and hardening compliance controls. This role is the primary 'labor' engine working closely with the IAM Architect.
๐ฏ What You'll Do
- Complete baseline environment configuration for Ping Directory and Conductor One across Dev and Prod tiers
- Integrate HRIS (Workday) with IGA platform to automate Joiner-Mover-Leaver processes
- Build and validate production-ready connectors for Okta, AWS, Google, Slack, and Squad
- Deploy 'Justify or Revoke' workflows and automated reporting for SOX/ISO audits
๐ Requirements
- 4+ years in Information Security with at least 2 years in IAM implementation in large enterprises
- Expert-level knowledge of Cloud Identity Provider (AWS IAM, Azure) and protocols (SAML, OAuth 2.0, OIDC, SCIM, LDAP)
- Deep understanding of Zero Trust principles and access models (RBAC, ABAC, PBAC)
- Ability to develop code in Python or Go
โจ Nice to Have
- Integration experience with Okta, Auth0, or Microsoft Entra ID
- Experience with Conductor One, SailPoint, or Saviynt IGA/PAM platforms
- Hands-on experience with Ping Directory or similar LDAP solutions
- Understanding of AWS cloud infrastructure, Kubernetes, Terraform, and ArgoCD
๐ Benefits & Perks
- ๐ฐ Annual bonus and equity compensation
- ๐๏ธ Hybrid work (in office 3 days/week)
- ๐งโ๐ป Modern tech stack (SPIRE, OPA, Ping Directory)
- ๐ฅ Comprehensive benefits package
๐จ Hiring Process
Estimated timeline: 2-4 weeks ยท AI estimate
- 1Recruiter Screenยท 30 min
- 2Technical Interviewยท 60 min
- 3Onsite/Team Interviewยท 120 min
0 0 0