13h ago

Senior Identity Management Engineer

Pittsburgh, Pennsylvania

$146k-$211.5k / year

full-timesenior Hybridtransportation

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll implement and evolve Aurora's modern identity ecosystem built on Zero Trust principles, including Ping Directory and Conductor One deployment. You'll own the full IAM lifecycle, automating Joiner-Mover-Leaver processes and hardening compliance controls. This role is the primary 'labor' engine working closely with the IAM Architect.

๐ŸŽฏ What You'll Do

  • Complete baseline environment configuration for Ping Directory and Conductor One across Dev and Prod tiers
  • Integrate HRIS (Workday) with IGA platform to automate Joiner-Mover-Leaver processes
  • Build and validate production-ready connectors for Okta, AWS, Google, Slack, and Squad
  • Deploy 'Justify or Revoke' workflows and automated reporting for SOX/ISO audits

๐Ÿ“‹ Requirements

  • 4+ years in Information Security with at least 2 years in IAM implementation in large enterprises
  • Expert-level knowledge of Cloud Identity Provider (AWS IAM, Azure) and protocols (SAML, OAuth 2.0, OIDC, SCIM, LDAP)
  • Deep understanding of Zero Trust principles and access models (RBAC, ABAC, PBAC)
  • Ability to develop code in Python or Go

โœจ Nice to Have

  • Integration experience with Okta, Auth0, or Microsoft Entra ID
  • Experience with Conductor One, SailPoint, or Saviynt IGA/PAM platforms
  • Hands-on experience with Ping Directory or similar LDAP solutions
  • Understanding of AWS cloud infrastructure, Kubernetes, Terraform, and ArgoCD

๐ŸŽ Benefits & Perks

  • ๐Ÿ’ฐ Annual bonus and equity compensation
  • ๐Ÿ–๏ธ Hybrid work (in office 3 days/week)
  • ๐Ÿง‘โ€๐Ÿ’ป Modern tech stack (SPIRE, OPA, Ping Directory)
  • ๐Ÿฅ Comprehensive benefits package

๐Ÿ“จ Hiring Process

Estimated timeline: 2-4 weeks ยท AI estimate

  1. 1Recruiter Screenยท 30 min
  2. 2Technical Interviewยท 60 min
  3. 3Onsite/Team Interviewยท 120 min
0 0 0