Senior Identity & Access Management Engineer - Moveworks
Moveworks
Senior Identity & Access Management Engineer - Moveworks Engineering Washington, DC, United States Full-time Job Description The Role Do you care deeply about secure access at scale? Making sure the right people have the right access, exactly when they need it, without slowing teams down? Join Moveworks and help shape the future of our identity and access strategy. At Moveworks, we believe great security is an enabler, not a blocker. As a Senior Identity & Access Management Engineer, you’ll be a hands‑on technical developer, coding, designing, building, and scaling IAM solutions across cloud infrastructure, SaaS applications, and internal systems. You’ll own the development of IAM initiatives end‑to‑end, from untangling ambiguous access challenges to architecting secure, automated solutions and driving them into production. In this role, you’ll develop robust access models across AWS, Azure, Kubernetes, and beyond; reduce privilege sprawl through thoughtful role design; and build strong observability through logging, metrics, and reporting in our SIEM. You’ll modernize access reviews to deliver real security impact with minimal friction, continuously de‑risk IAM threats, and partner closely with teams to drive adoption of secure‑by‑default patterns. Your work will directly protect Moveworks’ most critical systems while enabling our engineers to move fast, safely, and confidently. What you get to do in this role: Be the technical developer to drive IAM application development: Code, design, and implement solutions with extensive knowledge in AWS, Azure, Teleport, and Terraform. Enabling robust and reliable solutions to keep our engineering teams active. Drive IAM projects end‑to‑end: Take ambiguous access problems, understand and have the ability to define requirements, architect solutions, and own the rollout/operationalization (not just the design). Develop with secure access models in mind: Continuously develop role design improvements and access assignment patterns across AWS, Kubernetes, SaaS apps, and internal systems to reduce unnecessary privileges, minimize manual grants, and create scalable “safe baseline” access that covers routine work without daily elevation. Develop on operationalising logging and metrics: Ensure access changes are observable in our Security Information and Event Management (SIEM) tool; build repeatable reporting that surfaces risky access and drift. Run and improve user access reviews (UAR): Develop, execute and design a UAR process & solution that meets compliance requirements while improving real security signal—minimizing approver burden through scoping, automation, and clear decision support. Develop technology to continuously de‑risk: Identify high‑risk permissions and misuse paths, propose appropriate controls and mitigations, drive adoption with partner teams, and develop solutions to continuously de‑risk. Operate with strong security judgment and high signal: Reliably distinguish meaningful IAM risk from noise, gather context efficiently, and elevate with crisp rationale and actionable mitigations. Document and standardize the paved road: Write lightweight procedures, runbooks, and automation so access decisions are consistent, scalable, and not dependent on tribal knowledge. Qualifications To be successful in this role you have: US Citizenship preferred (Some responsibilities in this role involve working with U.S. government customer environments subject to regulatory access requirements. Eligibility may be contingent on the ability to satisfy applicable export control or government contract obligations.) Experience: 5+ years of experience working in IAM, security engineering, or platform engineering with substantial IAM responsibilities in production environments. IAM Expertise: Strong grasp of IAM best practices and common failure modes (e.g., least privilege, privilege escalation paths, separation of duties, breakglass, auditability). Cloud Infrastructure IAM: Practical experience implementing and designing access control in AWS, Azure, GCP environments and partnering with teams who manage infrastructure at scale. Experience configuring IAM in Teleport, Terraform and Kubernetes environments is a plus. SSO Experience: Experience with Okta administration and patterns (e.g., groups, app assignments, lifecycle/provisioning), or equivalent experience with a similar SSO product. Threat‑aware thinking: Ability to spot dangerous permissions and misuse paths (including insider‑threat scenarios), assess risk, and identify suitable mitigations and controls. Automation‑first mindset: Comfortable using scripting languages and AI coding tools to build reliable automation, and able to read/validate what the code is doing. Protocol fluency: Working understanding of OAuth, OIDC, SAML, and SCIM, including when to use which, failure modes, and common pitfalls. Collaboration: Proven ability to build long‑lasting relationships with various technical teams, such as Engineering, Information Technology, Infrastructure, and DevOps teams. Educational Background: BS+ in computer science or a related field, or equivalent relevant experience. Additional Information We approach our distributed world of work with flexibility and trust. Work personas (flexible, remote, or required in office) are categories that are assigned to ServiceNow employees depending on the nature of their work and their assigned work location. Learn more here . To determine eligibility for a work persona, ServiceNow may confirm the distance between your primary residence and the closest ServiceNow office using a third‑party service. Equal Opportunity Employer ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law. In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements. Accommodations We strive to create an accessible and inclusive experience for all candidates. If you require a reasonable accommodation to complete any part of the application process, or are unable to use this online application and need an alternative method to apply, please contact View email address on click.appcast.io for assistance. Export Control Regulations For positions requiring access to controlled technology subject to export control regulations, including the U.S. Export Administration Regulations (EAR), ServiceNow may be required to obtain export control approval from government authorities for certain individuals. All employment is contingent upon ServiceNow obtaining any export license or other approval that may be required by relevant export control authorities. #J-18808-Ljbffr Moveworks
- ...Senior Engineer, Cybersecurity Identity Access Management (SailPoint) Location given : Washington DC Atlanta, New York, Charlotte, Boston Notes : The team is currently remote, but that can change at any time. Candidates must reside within a commutable distance...SeniorWork at officeRemote work
$105k - $215k
...GEICO is seeking an experienced Engineer to play a pivotal role in... ...infrastructure. The ideal Identity Governance Administration Engineer... ...description Our Senior Engineer is a key member of... ...~ Implement Identity and Access Management requirements, such as SOD, RBAC...SeniorHourly payWork experience placementLocal areaFlexible hoursShift work- Vt Arc is seeking a Senior to Staff level Identity, PKI and Access Engineer in Arlington, VA. This critical role focuses on implementing identity engineering... ...candidate will have deep expertise in identity management, PKI, and secrets management technologies, with a...Senior
- ...Job Description Job Description IgniteIT is seeking a Senior Identity Engineer to support and enhance enterprise identity and access management services across cloud and on-premises environments. This role will focus on identity lifecycle management, directory integrations...SeniorFull timeTemporary workFlexible hours
- Overview We are seeking an an Identity and Access Management Systems Engineer to be responsible for the upkeep, configuration, and reliable operation of computer systems in support of DISA's Compartmented Enterprise Services Office (CESO) NOC. The IdAM Systems Engineer...SuggestedFull timeWork at officeNight shift
- A leading technology consulting firm in Arlington, VA, seeks a SailPoint Engineer to join its identity management team. In this critical role, you'll support large-scale Identity and Access Management (IAM) projects, interface with stakeholders, and implement security...Remote job
$150k - $170k
Job Openings >> 1802 - Identity & Access Management Engineer - Onsite - Active Secret Required Title 1802 - Identity & Access Management Engineer - Onsite - Active Secret Required ID 1802 Location Arlington, VA Security Clearance Requirement Top Secret About Us Rollout...Temporary workLocal area$86.9k - $198k
...Candidates must be eligible to maintain a secret-level security clearance. Overview We are seeking an ICAM Engineer to support enterprise identity and access management initiatives within a secure, large‑scale environment. This role focuses on strengthening identity...Immediate start$146.58k - $229.6k
Geico is seeking a Senior Product Manager for their Identity and Access Management (IAM) platform in Bethesda, MD. This role requires 5+ years of product management experience, deep IAM protocol knowledge, and strong strategic thinking skills. Responsibilities include...Senior- A leading cybersecurity firm is seeking an Identity, Credential and Access Management Systems Engineer in Arlington, VA. The ideal candidate will have a TS/SCI clearance, a background in information technology, and experience with ForgeRock. Responsibilities include deploying...Full time
- Identity, Credential and Access Management Systems Engineer Be among the first 25 applicants (4 weeks ago) Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity... ..., Amazon Web Services, Ansible playbooks. Seniority Level Mid-Senior level Employment Type Full-time...Full timeWork at officeNight shift
- ...We are in search of a highly motivated candidate to join our talented Team. Job Title: Senior Identity, Credential, and Access Management (ICAM) Security Engineer Location: Washington, DC Responsibilities: Support the deployment and management of...SeniorWork at office
- ...About the role Seeking a highly skilled Senior Java Identity and Access Management Developer to join our client in Washington, DC. This on-site... ...OIM, OVD, and OID. Document technical designs, engineering approaches, and strategies. Provide knowledge transfer...Senior
$146.58k - $229.6k
...platforms to power the future of insurance. Identity and Access Management (IAM) is a critical component of our... ...obsessed and results-oriented Senior Product Manager. This role is perfect... ...weeds with customers, designers, and engineers as much as you enjoy building alignment...SeniorHourly payWork experience placementLocal areaFlexible hours- ...advanced technology company in Arlington is looking for a Privileged Access Manager Engineer with a focus on cybersecurity for federal clients. Ideal candidates will possess over 3 years of experience in identity governance, directory services, and Privileged Access...Senior
- ENS Solutions, LLC is seeking an Identity and Access Management specialist in Washington, DC. In this role, you will design, deploy, and manage IAM systems, ensuring compliance with security protocols. You will need at least 5 years of IAM experience and familiarity with...Senior
$100k - $215k
...Careers. Geico is seeking a Senior Engineer for the Cybersecurity Incident Management Team who brings deep technical... ...potential - in mind. You'll have access to industry leading training, certification... ..., sexual orientation, gender identity, marital status, familial status...SeniorHourly payWork experience placementWork at officeLocal areaRemote workFlexible hours$183k
...Job Description Job Description Position: Identity and Access Management Systems Engineer Location: Arlington, Virginia Category: Systems Engineering Schedule: Full Time Travel: 10% Shift: Day Remote: No Remote Clearance: Top Secret/SCI...Full timeRemote workShift work$146.2k - $228.4k
Noblis is seeking an experienced Systems Engineer to work in a dynamic mission-oriented environment within Bethesda, Maryland. The successful candidate will have expertise in Zero Trust Architecture (ZTA) and will design, implement, and support secure, resilient systems...Senior$125k - $150k
...expanded to include Systems Engineering, Program Management, In-Service Engineering,... ...are seeking an experienced Senior Cyber Security Engineer (... ..., and unauthorized access. They design and implement... ...sexual orientation, gender identity or expression, or any other...SeniorContract workTemporary workFor contractorsFor subcontractorWork at officeLocal areaRemote workFlexible hours- As a Systems Engineer supporting the Government, you will be a part of a team charged... ...IDAM technologies such as digital identities, Virtual Directory, PKI, Access Control, and more to ensure... ...Policies including Advanced group policy manager, DNS, PKI, Microsoft PowerShell,...SeniorTemporary workRelocation package
- Sr. Oracle Identity & Access Management Consultant We specialize in IT services, including staffing, consulting, software development, and training... ...and integration process Working with identity management engineers to implement solutions Developing detailed user...SeniorLocal area
$165.3k - $185k
...Description Cydecor is seeking a Senior Naval Engineer to provide design and... ...This role will support the management and execution of technical... ...disability, age, sex, gender identity & expression, veteran... ...limited in your ability to access job openings or apply for a...SeniorHourly payContract workTemporary workWork experience placementInterim role- Overview R&P is looking for a Senior Marine Engineer with expertise in shipboard... ..., Logistics, Program Management and Technical Services to government... ...sexual orientation, gender identity, national origin, age,... ...Plan to establish fair access to employment opportunities...SeniorFor contractorsWork experience placementWork at office
- ...Sr Solution Architect - Identity and Access Management (IAM) Denver, Colorado;Washington, District of... ...security innovation and architecture, engineering, solutions and capabilities... ...engineering, operations, developers, and senior leadership. Cross collaborates and...SeniorWork at officeShift workDay shift
- ...leading technology firm in Arlington, VA is actively seeking a Privileged Access Management Engineer. This role involves designing and implementing secure systems, collaborating with teams on identity management, and enhancing cybersecurity protocols for federal clients....
- A leading technology firm in Arlington, Virginia is seeking a Privileged Access Management Engineer to design secure systems for federal government Identity and Access initiatives. You'll collaborate with expert teams to innovate solutions against advanced cyber threats...Remote job
- A cybersecurity firm is seeking an Identity Provider Engineer in Virginia, specializing in identity and access management. Responsibilities include supporting IAM projects and managing user privileges. The ideal candidate will have experience with IAM tools and possess...
$86.8k - $198k
Identity Provider Engineer The Opportunity: You know that the user is the last frontier for cybersecurity. It’s where the perimeter is drawn... ...in the fight against cybercriminals. As an Identity and Access Management (IAM) specialist, you have the skills and experience to...Full timeContract workPart timeLocal areaRemote work$86.8k - $198k
Privileged Access Management Engineer page is loaded## Privileged Access Management Engineerlocations: Arlington, VAtime type: Full timeposted... ...design and build secure systems for a federal government Identity and Access We’re looking for a Radiant Logic (RL) engineer...Full timeContract workPart timeWork at officeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Identity & Access Management Engineer - Moveworks. Be the first to apply!
- senior development executive Washington DC
- senior technical manager Washington DC
- senior procurement specialist Washington DC
- senior communications specialist Washington DC
- senior manager data science Washington DC
- senior platform engineer Washington DC
- senior procurement Washington DC
- senior director product management Washington DC
- senior cost manager Washington DC
- senior compliance officer Washington DC


