IAM Security Analyst
Listed on 2026-01-15
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Position Title: IAM Security Analyst
Location: Austin, TX
About the DepartmentSecurity at Cloudflare is a diverse, focused team committed to helping secure both Cloudflare and its customers. The Enterprise Identity & Access Management team is a core pillar of our cybersecurity organization, securing our environment and enabling workforce productivity.
What the Role EntailsAs an Identity and Access Management (IAM) Security Analyst you will play a key role in efficiently managing user identities and access across the enterprise. You will be responsible for implementing technologies and designing processes to ensure users have authorized access to resources and systems.
Responsibilities- Establish and execute access governance programs and policies
- Define and enforce access control policies, including role-based access control (RBAC), attribute‑based access control (ABAC), and policy‑based access controls (PBAC)
- Ensure access adheres to the principle of least privilege and segregation of duties (SoD)
- Develop and execute an access certification program and scale it across all systems
- Design, implement, and manage Identity Access & Governance policies and procedures
- Define and enforce privileged access management (PAM) policies to secure sensitive systems and data
- Manage user onboarding, off‑boarding, and role changes, ensuring adherence to security policies and compliance requirements
- Collaborate with cross‑functional teams, including IT, security, and compliance, to ensure IAM aligns with business goals
- Communicate IAM‑related updates and recommendations to stakeholders
- Maintain comprehensive documentation of IAM policies, processes, and configurations
- Generate reports and metrics related to IAM activities and security posture
- Stay current with industry best practices, regulations, and compliance standards related to IAM, such as FedRAMP, SOX, GDPR, PCI, and NIST
- Provide operational support of IAM systems, including an on‑call rotation that may include after‑hours calls
- In‑depth understanding of access governance
- Experience with Identity Governance & Administration (IGA) solutions
- Performing policy enforcement, role management, and access certifications
- Experience implementing privileged access management (PAM)
- Experience developing IAM security standards and policies
- Preferred background in scripting and/or application development to automate identity and access management processes
Cloudflare empowers users worldwide by protecting and accelerating any Internet application online without adding hardware, installing software, or changing code. Our mission is to protect the free and open Internet. Our signature programs—Project Galileo, the Athenian Project, and the public DNS resolver 1.1.1.1—demonstrate our commitment to security, privacy, and innovation for all Internet users.
Export Control NoticeThis position may require access to information protected under U.S. export control laws, including the U.S. Export Administration Regulations. Any offer of employment may be conditioned on your authorization to receive software or technology controlled under these laws without sponsorship for an export license.
Equal Opportunity Employer StatementCloudflare is proud to be an equal opportunity employer. We are committed to providing equal employment opportunity for all people and place great value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to race, color, religion, sex, gender identity, sexual orientation, national origin, or any other basis protected by law. We are an AA/Veterans/Disabled Employer.
DisabilityAccommodations
Cloudflare provides reasonable accommodations to qualified individuals with disabilities. If you require a reasonable accommodation to apply for a job, please contact us at or at 101 Townsend St. San Francisco, CA 94107.
PI
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).