Senior IAM Engineer
Listed on 2026-01-12
-
IT/Tech
Cybersecurity, Systems Engineer
Base pay range
$65.00/hr - $80.00/hr
Responsibilities- Design, architect, and deploy enterprise-grade Cyber Ark Privileged Access Management (PAM) solutions that align with organizational security and compliance objectives
- Lead the technical design and implementation of broader Identity and Access Management (IAM) solutions across the enterprise, ensuring scalability, automation, and alignment with business and security requirements
- Develop and maintain automation scripts (e.g., Power Shell, Python, REST APIs) to enhance provisioning, access control, and system monitoring processes
- Implement secure configurations, patch management, and least privilege models across Cyber Ark components and integrated systems
- Perform security baseline and hardening in line with industry (NIST, CIS) benchmarks
- Collaborate with Security Operations to monitor privileged accounts for anomalies or abuse, participate in incident investigations, and contribute to response for security events
- Lead integrations between Cyber Ark and enterprise identity, authentication solutions (e.g., Azure AD/Entra , Okta, AWS IAM)
- Ensure PAM and IAM controls meet regulatory and audit requirements (NIST, SOX, NYDFS).
- Maintain thorough documentation and evidence for audits
- Work closely with infrastructure, application, and audit teams to translate privileged access requirements into secure, scalable designs
- Provide technical mentorship, promote security best practices, and contribute to the evolution of enterprise IAM standards and security posture
- (Preferred) Cyber Ark Guardian, Cyber Ark Sentry, Cyber Ark Defender, CISSP, GIAC Certifications, or similar credentials
- 8+ years of proven experience implementing, configuring, and managing Cyber Ark Privilege Cloud and Identity Security Platform Shared Services (ISPSS) in enterprise environments
- Deep understanding of secure design, onboarding, policy configuration, and lifecycle management in cloud-native deployments
- Strong background in designing scalable and secure Cyber Ark Privilege Cloud architectures that integrate with hybrid identity environments (on-prem, AWS, Azure)
- Broad understanding of IAM principles including authentication, authorization, SSO, MFA, and directory services (Active Directory, Azure AD, Okta)
- Proficiency in scripting languages such as Power Shell, Python, or REST APIs to automate PAM operations, onboarding, and integrations across Cyber Ark and related systems
- Demonstrated success integrating Cyber Ark Privilege Cloud with enterprise platforms such as IDPs (Entra , Okta), ITSM (Jira Service Management, Service Now), and identity governance solutions (SailPoint)
- Knowledge of regulatory and security frameworks such as NIST, CIS, SOX, and NYDFS, with the ability to map PAM controls to compliance requirements
- Experience managing privileged access and secrets in AWS and Azure environments, leveraging Cyber Ark's cloud connectors and ISPSS services
- (Preferred) Proficiency integrating PAM solutions into CI/CD pipelines, cloud-native platforms, and Dev Ops workflows
- (Preferred) Familiarity with automating access reviews, integrating PAM telemetry into SIEM platforms (Insight
IDR, Sentinel), and driving ongoing security posture enhancements
The pay range is the lowest to highest compensation we reasonably in good faith believe we would pay at posting for this role. We may ultimately pay more or less than this range. Employee pay is based on factors like relevant education, qualifications, certifications, experience, skills, seniority, location, performance, union contract and business needs. This range may be modified in the future.
We offer comprehensive benefits including medical/dental/vision insurance, HSA, FSA, 401(k), and life, disability & ADD insurance to eligible employees. Salaried personnel receive paid time off. Hourly employees are not eligible for paid time off unless required by law. Hourly employees on a Service Contract Act project are eligible for paid sick leave.
Note:
Pay is not considered compensation until it is earned, vested and determinable. The amount and availability of any compensation remains in Kforce's sole discretion unless and until paid and may be modified in its discretion consistent with the law.
This job is not eligible for bonuses, incentives or commissions.
Kforce is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.
Seniority level:
Associate
Employment type:
Contract
Job function:
Engineering and Information Technology
Industry: Insurance
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).