Security Engineer - Identity, Access Management & Detection
AirLife
Job Description
Job Description
COMPANY DESCRIPTION
At AirLife, we are dedicated to improving the quality of every breath. Excellence with Every Breath is not just a tag line, but the way we work and take care of our customers. With a mindset to evolve, innovate, and grow, we are a premier manufacturer of the highest-quality and market-leading breathing consumables. This growth philosophy has positioned us to increase our global footprint and business reach, impacting even more people around the world. Our expanding family of the most trusted brands offers a product portfolio that spans the continuum of care from first responder to home care, with safety, patient comfort, and clinical performance in mind. Collective expertise allows us to provide quality products and experiences to our patients, customers, and our people. Our values of Customer first, Differentiate with our People, Bias for Action, Continuous Improvement and Accountability define who we are and how we work. Join us!
POSITION SUMMARY
The Security Engineer – Identity, Access Management & Detection is responsible for designing, implementing, and operating AirLife's identity and access management infrastructure while also contributing to the detection and response capabilities that protect the enterprise from evolving cyber threats. This role manages user identities, authentication mechanisms, access privileges, and privileged account controls across AirLife's global environment, while partnering with AirLife's managed detection and response provider (Arctic Wolf) to ensure that identity-based and broader cyber threats are effectively detected, investigated, and remediated. This dual-focus role is central to AirLife's Zero Trust maturity journey and its ability to maintain a secure, compliant, and resilient IT environment.
POSITION QUALIFICATIONS
Knowledge, Skills, & Abilities:
- Deep understanding of Identity and Access Management architecture, including IAM lifecycle management, Identity Governance and Administration (IGA), and Privileged Access Management (PAM).
- Hands-on experience with Microsoft Entra ID and on-premises Active Directory; PowerShell scripting experience required.
- Experience with Cisco Duo MFA, Microsoft Intune MDM, and the Microsoft Defender security suite.
- Practical knowledge of automated provisioning and deprovisioning, role-based access control (RBAC), Single Sign-On (SSO) configuration, LDAP, and federation standards.
- Working knowledge of security threat detection concepts, SIEM platform interaction, and security alert triage; experience collaborating with MDR/MSSP providers on alert tuning and incident escalation (Arctic Wolf experience preferred).
- Understanding of Zero Trust architecture principles and their application to identity-first security design.
- Experience with vulnerability management, endpoint protection agent management, and data loss prevention tooling.
- Knowledge of security compliance frameworks (NIST, ISO 27001, CIS Controls, GDPR) with practical experience applying them to IAM control design.
- Experience with backup and disaster recovery systems (Rubrik/Azure preferred).
- Strong root cause analysis and technical troubleshooting skills for complex identity and security issues.
- Ability to manage concurrent projects and tasks in a dynamic environment; Smartsheet experience preferred.
- Experience with KnowBe4 security awareness and phishing simulation administration preferred.
- Relevant IAM or cybersecurity certification preferred (Microsoft SC-300, CompTIA Security+, SSCP, or equivalent).
Level of Experience:
Minimum 2–4 years of IT experience with 1-2 years in a cybersecurity or IAM-focused role in an enterprise environment. Experience in a manufacturing, healthcare, or regulated environment preferred.
Level of Education:
Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent experience. IAM or security certification preferred.
Travel:
Up to 20% as required by the business.
ESSENTIAL DUTIES AND RESPONSIBILITIES
- Design, implement, and continuously improve AirLife's Identity and Access Management architecture, including full IAM lifecycle management, automated provisioning and deprovisioning workflows, and role-based access control frameworks aligned to least-privilege principles.
- Administer and optimize Microsoft Entra ID and on-premises Active Directory services, including group policy management, directory synchronization, hybrid identity configuration, and identity governance rule maintenance.
- Manage and continuously improve AirLife's Single Sign-On and Multi-Factor Authentication platforms (Cisco Duo, Entra ID), ensuring high availability, consistent user experience, and compliance with AirLife's authentication standards.
- Develop and maintain Privileged Access Management (PAM) and Privileged Identity Management (PIM) controls, enforcing least-privilege principles and time-bound access for administrative and privileged accounts across the environment.
- Conduct and coordinate periodic access reviews and certification campaigns to validate compliance with AirLife's access control policies, support segregation-of-duties requirements, and produce audit evidence for internal and external auditors.
- Partner with Arctic Wolf (MDR provider) as AirLife's primary IAM subject matter expert: ensure identity-based threat alerts are properly tuned, reviewed, and investigated; participate in security incident response activities; and contribute to alert triage and false positive reduction efforts.
- Monitor and triage security alerts from endpoint protection, SIEM, and identity platforms; collaborate with the managed security partner on threat detection rule refinement and response playbook execution.
- Manage endpoint protection agent configurations, patch compliance levels, and agent health across AirLife's device fleet in coordination with the Infrastructure team.
- Administer AirLife's data loss prevention capabilities and backup/disaster recovery systems (Rubrik/Azure), ensuring configurations align with data protection and recovery time objectives.
- Support KnowBe4 security awareness and phishing simulation administration in coordination with the Security GRC Engineer, contributing to campaign configuration and completion tracking.
- Develop and maintain comprehensive documentation of IAM architecture, configurations, access control standards, identity governance policies, and operational runbooks.
- Collaborate with the Infrastructure, Applications, and Security GRC teams to ensure security-by-design principles — particularly identity-first and Zero Trust concepts — are applied to new system implementations, integrations, and cloud migrations.
OTHER RESPONSIBILITIES
- Uphold and embody AirLife's values in all aspects of work.
- Demonstrate accuracy and thoroughness in daily work; look for ways to improve and promote quality & safety.
- Inspire the trust of others; treat people with respect and dignity and embrace the value of diversity.
- Use time efficiently; perform job accurately, thoroughly, and conserve Company resources to improve profits.
- Contribute to building and maintaining a positive team environment.
- Assure all policies and guidelines are implemented and followed.
QUALITY POLICY
At AirLife, Quality is our promise. It is our commitment to customer satisfaction and our dedication to product excellence in an evolving global healthcare market. This promise is kept through a continuously improving and effective Quality Management System and compliance to Regulatory Requirements.
DEIA STATEMENT
At AirLife, we are committed to building a diverse workforce and an inclusive workplace that reflects the communities and customers we serve. We believe our philosophy on Diversity, Equity, Inclusion, and Advancement (DEIA) encourages excellence and equips us to serve an evolving global marketplace.
Please note: The responsibilities outlined above are not exhaustive and may evolve over time. The role holder may be required to undertake additional duties as reasonably expected to meet the needs of the company.
Benefits
AirLife offers a comprehensive benefits package, including medical, dental, and vision coverage, 401(k), paid time off, paid holidays, bereavement leave, Employee Assistance Program resources, and medical leave benefits, subject to applicable eligibility requirements. Certain positions may also be eligible for bonus, commission, or other incentive compensation.
$90k - $110k
...in transforming the security industry. We integrate... ..., electronic access control, alarm monitoring... ...service technician, engineer, or project manager, you’ll discover rewarding... ..., CCTV, intrusion detection, and logical/... ...orientation, gender identity, national origin, genetic...SuggestedContract workFor contractorsWork at officeLocal area$118.7k - $243.7k
Position Summary As a Manager in AI Security Engineering, you will play a critical role in securing... ...security, including data protection, access control, model validation, and monitoring... ...of data protection, identity/access management, and secure architecture...Suggested- ...levels possible.Job Summary: The Security Incident Response Engineer is responsible for detecting, investigating, containing,... ...closely with Infrastructure, Cloud, Identity, Workplace Technology, Legal,... ...teams. Support major incident management activities and provide...SuggestedFull timeImmediate startFlexible hours
$82.6k - $162.8k
...Resilience Continuous Threat Exposure Management (CTEM) team. In this role,... ..., and remediating security exposures across complex technology... ...Work you'll do As a Security Engineer II on the Cyber Defense &... ..., sexual orientation, gender identity, national origin, age, disability...SuggestedLocal area- ...! POSITION SUMMARY The Security Engineer – Governance, Risk & Compliance... ...s information security risk management and compliance posture. This... ...providers to ensure managed detection capabilities align with... ...ITGC) compliance, including access control review coordination,...Suggested
- ...Principal Consultant (NW / DC / Security) DETAILS Location :... ...Solution Architect / Principal Engineer for a 6M+ Contract (w/ likely... ...Segmentation / Zero Trust / Identity Integration / Security Policy... ...Program Leadership / Multi-Project Management Leading Multiple Large-Scale...Hourly payContract workWork at officeLocal areaRemote work
- ...unit to support the department's cybersecurity, firewall, network security, and compliance initiatives. This is a highly complex... ...security technologies, assist with the deployment of Palo Alto Prisma Access and ION appliances for the Client's Secure Access Service Edge...Work at officeRemote work
- ...environments - Familiarity with network security concepts, including firewalls, access control, and traffic monitoring... ...or exposure to vulnerability management, compliance tracking, or IT... ...supporting alert triage, threat detection, and initial response actions across...Minimum wageContract workTemporary workWork experience placementRemote work
$167k - $223k
...facing team and product managers to develop a... .... The ATO Systems Security Engineering Technical Leader is expected... ...with intrusion detection, protection, and mitigation... ...drug coverage; access to a Health Coach from... ...orientation, gender identity or expression, age, disability...Permanent employmentFull timeContract workWork experience placementRelocation package$105.4k - $207.8k
...through scalable, resilient security operations solutions. In... ...focused on Google SecOps, threat detection engineering, and automation. You will... ...information and event management (SIEM) and security orchestration... ...sexual orientation, gender identity, national origin, age,...Local areaVisa sponsorship$120.75k - $191k
...position analyzes the information security environment, identifies the... ...Confers with team members, management, development personnel, risk... ..., including: updating access control tables; setting up user... ...Information Systems, Engineering, Information Security, or related...Work experience placement$105.4k - $207.8k
...powerful solutions and managed services that simplify... ...proactively manage to secure success. Recruiting... ...Endpoint, and extended detection and response solutions... ...monitoring, detection engineering, threat hunting, and incident... ...orientation, gender identity, national origin, age,...Local areaVisa sponsorship- ...overseeing the organization's Vulnerability Management Program from a risk, compliance, and... .... This position does not perform engineering work and instead, the analyst is responsible... ...with enterprise risk expectations and security governance standards. Responsibilities:...Full timeImmediate startFlexible hours
- ...Required Skills: ~6+ Years of Experience with Microsoft Office 365 SharePoint. ~6+ Years of Experience with security and data classification related to CDC, HIPAA, and CJIS. ~3+ Years of Experience in designing and implementing state-level Public Health system...Work at office
$82.6k - $162.8k
...Through solutions and managed services that simplify... ...Integrated Risk Management, Security Operations, Third-... ..., reports, roles, and access controlsSupporting... ...Systems, Cyber Security, Engineering, Information... ...reportingExperience supporting identity governance for human and...Local areaRemote workVisa sponsorship- ...within PA, MI, NJ, DE.The Senior Security Advisor (or CSA as we call it... ...to determine scope, proposal management, and follow through to... ...consulting advisor, architect, or engineer.Highly motivated self-starter... ...color, religion, sex, gender identity or expression, sexual...Full timeWork experience placementLocal areaRemote workWork from home
- ...clients. By combining advanced business and security practitioner knowledge, the Principal AI... ...colleagues to determine scope, proposal management, and follow through to... ...regard to race, color, religion, sex, gender identity or expression, sexual orientation, pregnancy...Full timeLocal areaRemote workWork from home
- ...Description Job Description PreSales Engineer Physical Security Overview: We’re looking for an... ...cloud-based and on-premise video, access control, and integrated security systems... ...propositions. • Design and present both cloud-managed and on-premise architecture based on...Local area
$131.25k - $201.25k
...technical leader of Product Security architecture for Dematic you... ...with technology leadership and engineering teams to both define and... ...sexual orientation, gender identity or expression, or any other... ...product development, product management, corporate security and compliance...Local area- ...procedures, and templates Ensure security architecture standards and... ...Computer Science, Computer Engineering, Electrical Engineering,... ...application development, network management, middleware, database... ...you can make complex ideas accessible to any audience Strong facilitation...
- ...Role: Cloud Security Engineer Location: Phoenix, Arizona (Hybrid) Duration: 12 Months Job Description... ...and at rest Secrets and key management Logging, monitoring, and... ...input/output handling, and knowledge store access. Produce findings report with risk...
$74 - $78 per hour
...Role Summary A senior-level AWS Cloud Security Engineer is responsible for designing, implementing... ...baseline controls. Configure and manage AWS-native security services including... ...(SCPs), and secure cross-account access controls. Manage encryption at rest...Hourly payRemote work- ...complex enterprise network environment across security, routing, switching, wireless, SD-WAN,... ...a hands-on NOC Lead or Senior Network Engineer who work in a Hybrid onsite/remote... ...authentication Juniper and/or Cisco access layer switching SD-WAN L3 routing,...Temporary workRemote workWork from homeNight shift3 days per week
$40.48 - $46.95 per hour
...Job Description Job Description Build. Secure. Defend. Innovate.At Union, technology powers everything we do. We're looking for... ...practices, including SIEM platforms, firewalls, vulnerability management, and incident responseExcellent troubleshooting, analytical, and...Hourly payFlexible hours- ...Specialist, located in New York, NY, with flexibility for partial remote work. In this role, you will assist in identifying and mitigating security vulnerabilities, support network monitoring activities, and collaborate with team members to implement effective security measures...Full timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer - Identity, Access Management & Detection. Be the first to apply!
- sr information security engineer Grand Rapids, MI
- senior application security engineer Grand Rapids, MI
- director of knowledge management Grand Rapids, MI
- regional director of revenue management Grand Rapids, MI
- workforce management specialist Grand Rapids, MI
- weight management Grand Rapids, MI
- pain management Grand Rapids, MI
- events management graduate Grand Rapids, MI
- quality management nurse Grand Rapids, MI
- leave management specialist Grand Rapids, MI


