Identity & Access Management (IAM) Engineer - Enterprise Technology Infrastructure
Hines
Overview
When you join Hines, you will embark on a career journey fueled by vision and guided by leaders who set the standards of our industry. Our legacy is rooted in innovation and excellence, earning us a spot on Fast Company’s esteemed annual list of the World’s Most Innovative Companies, as well as recognition as one of U.S. News & World Report’s Best Companies to Work For in 2024. Discover endless opportunities to grow and make your mark at Hines.
Responsibilities
As a Identity & Access Management (IAM) Engineer – Enterprise Technology Infrastructure with Hines, you will support, modernize, and continuously improve our enterprise identity and access infrastructure of the firm. This role will focus on Entra ID (Azure AD) and Active Directory, with additional responsibility supporting enterprise messaging platforms including Microsoft 365 (Exchange Online and Hybrid) and secure email gateways.The ideal candidate brings a strong AI-first mindset, proactively leveraging AI tools and automation to enhance operational efficiency, strengthen security posture, and elevate the end-user experience. This role is not just about maintaining identity systems—it’s about rethinking how identity and access are managed through intelligent tooling, automation, and continuous optimization. Responsibilities include, but are not limited to:
Identity & Access Management
- Administer and optimize Entra ID (Azure AD) and on-premises Active Directory
- Design and implement identity solutions including:
- Configure and manage Single Sign-On (SSO) integrations in Entra ID for SaaS and enterprise applications (SAML, OIDC, OAuth)
- Administer and maintain Enterprise Applications in Entra ID, including application onboarding, access assignment, and lifecycle management
- Troubleshoot SSO, federation, and application authentication issues across internal and third-party platforms
- Partner with application owners to design and implement secure, scalable authentication and authorization models
- Multi-Factor Authentication (MFA)
- Conditional Access policies
- Identity Protection and risk-based access controls
- Manage and enforce Privileged Identity Management (PIM), including role activation, just-in-time access, and privileged access governance
- Manage identity lifecycle processes (joiner, mover, leaver)
- Implement and enforce least privilege access and role-based access control (RBAC)
- Troubleshoot complex authentication, federation, and directory-related issues
- Support directory synchronization and hybrid identity configurations
Security & Compliance
- Apply Zero Trust principles across identity and access controls
- Monitor, investigate, and respond to identity-related threats and anomalies
- Support access reviews, certifications, and identity governance initiatives
- Partner with security and compliance teams on audit readiness, risk mitigation, and policy enforcement
Messaging & Email Infrastructure (Supporting Responsibility)
- Support Microsoft 365 (Exchange Online) environments and core messaging functionality
- Assist with troubleshooting mail flow issues and email-related incidents
- Maintain awareness of email security controls and authentication standards (SPF, DKIM, DMARC)
AI-First Operations & Automation
- Apply an AI-first approach to problem solving, leveraging tools such as Microsoft Copilot and AI-assisted scripting to accelerate analysis and resolution
- Design and implement automation solutions to reduce manual effort and improve reliability (PowerShell, workflows, orchestration tools)
- Use AI to enhance troubleshooting, anomaly detection, and root cause analysis
- Identify and lead opportunities to embed AI across identity, messaging, and security operations
- Stay current on emerging AI capabilities within Microsoft 365, Azure, and enterprise IT ecosystems and translate them into practical use cases
Documentation, Diagramming & Knowledge Management
- Create and maintain clear, structured technical documentation for systems, processes, and configurations
- Develop architecture and process diagrams using tools such as Microsoft Visio (or similar) to illustrate identity flows, access models, and integrations
- Ensure documentation reflects current-state and future-state designs to support scalability and knowledge transfer
- Contribute to internal knowledge bases and operational runbooks
Collaboration & Continuous Improvement
- Work cross-functionally with security, infrastructure, and application teams
- Proactively identify opportunities for system optimization, automation, and risk reduction
- Continuously improve identity security posture and user access experience
- Participate in on-call support rotation as needed
Qualifications
Minimum Requirements include:
- Bachelor's degree from an accredited institution
-
Five or more years of experience in Identity & Access Management and enterprise IT environments
-
Strong expertise in:
-
Entra ID (Azure AD)
-
Active Directory (on-premises)
-
Hands-on experience with Conditional Access, MFA, SSO, and RBAC
-
Experience supporting Microsoft 365 / Exchange environments
-
Familiarity with email security solutions (e.g., Cisco IronPort or similar)
-
Strong PowerShell scripting skills for automation
-
Solid understanding of identity security principles (Zero Trust, least privilege)
-
Proven ability to troubleshoot complex identity and access issues
-
-
Experience with identity governance and access review processes
-
Hands-on experience with Privileged Identity Management (PIM) and privileged access strategies
-
Familiarity with Microsoft security and compliance tools
-
Experience implementing or supporting AI tools in IT operations
-
Hands-on experience with Microsoft Copilot or similar AI platforms
-
Knowledge of email authentication and security best practices
-
Relevant certifications (Microsoft 365, Azure, Security, etc.)
Closing
At Hines, we strive for excellence as a leading global real estate investment manager, driven by our by our belief that real estate is fundamentally about people. Our diverse portfolio spans $93.2 billion¹ of assets across such property types as living, office, retail, mixed-use, logistics and life science projects – all designed to enhance value, connection and inspiration. Our strategic approach integrates local expertise with global knowledge, taking calculated risks aligned with our convictions to exceed expectations and tailor solutions to our clients' needs.
While our projects are renowned for enhancing cities and pioneering sustainable practices, we recognize that the true driving force behind Hines' success is our 5,000 dedicated employees in 30 countries who draw on our 65-year history to build the world forward. This is why we prioritize investing in our people, offering comprehensive training, competitive compensation, robust benefits and generous vacation packages. By centering our focus on the growth and wellbeing of our team, we cultivate an inclusive environment where everyone, including our clients, can thrive.
Hines is proud to be named to Fast Company’s prestigious annual list of the World’s Most Innovative Companies for 2024. ¹Includes both the global Hines organization and RIA AUM as of December 31, 2023.
We are an equal opportunity employer and support workforce diversity.
No calls or emails from third parties at this time please.
$140k - $160k
...Senior Infrastructure Engineer - IAM & Automation Polsinelli does... ...Infrastructure Experience Manager. This role can be... ...experience in Identity and Access Management platforms... ...and related technology platforms to enforce... ...app registrations, enterprise applications, service...SuggestedFull timeTemporary workPart timeRemote work- ...Senior IAM EngineerRemote - United StatesJR013170 At Ensono, our... ...how our world runs. As an expert technology adviser and managed service provider with cross-... ...platform. This role ensures that identity governance processes—including access requests, certifications, and...SuggestedFull timeTemporary workRemote workWork from homeFlexible hours
- ...criticality operational technology systems and... ...and engineering firms in the world... ...the world's infrastructure, and you'll play... ...ongoing managed services and operational... ...secure remote access solutions (VPN... ...of the Purdue Enterprise Reference... ...gender, gender identity, gender...SuggestedContract workRemote work
$80k - $90k
...Cybersecurity Engineer Join Aprio's Information Technology team and you will... ...the firm — identity, network segmentation... ...vulnerability management. The... ...and requires access to export-controlled... ...security, IAM, monitoring).... ...PowerShell, Bash); infrastructure-as-code...SuggestedPermanent employmentFull timeRemote workFlexible hours$20k
Systems Engineer at Impact Networking, LLC... ...national managed services provider... ...solutions architecture, technology deployment, and... ...focus to bring enterprise-level resources... ...around systems infrastructure and desktop computing... ...Certified: Identity and Access Administrator Associate...SuggestedWork experience placementRemote work- ...Secure access underpins everything Macquarie does... ...role in the operational management and continuous enhancement of Macquarie's enterprise authentication platforms... ...owners and technology partners to onboard internal... ...supporting enterprise identity platforms, including directory...Temporary workWork from homeFlexible hours
- ...Project Engineer - Career Start - Houston... ...Suffolk is a national enterprise that builds,... ...core construction management services and complementary... ..., and technology start-up investment... ...provides employees with access to a wide variety... ...veteran, gender identity, age or any other...Rotational programFull timeContract workTemporary workFor contractorsWork experience placementFor subcontractorWork at office
- ...The DevTestOps engineer handles daily requests... ..., granting tool access, and customizing... ...investigate infrastructure issues, manage VMs, explore new... ...: Google Enterprise Tools, Azure DevOps... ...orientation, gender identity, national origin... ...TSX: CLS) is a technology leader dedicated...Temporary workWork at officeLocal areaRemote workWorldwideShift work
- ...era-defining space infrastructure and delivering technology-driven solutions... ...President of System Engineering & Integration who... ...engineering, risk management, and large‑scale... ...and maintain the enterprise systems engineering... ...orientation, gender identity, gender expression...Permanent employmentWork at officeWeekend workAfternoon shift
- ...waterworks, energy and infrastructure management and is dedicated to... ...has an in-house engineering services department... ...construction methods and BIM technology. As a subsidiary of... ..., Webber has access to a global network... ...orientation, gender identity and expression, covered...InternshipLocal areaWorldwide
- ...resiliency of the world's infrastructure, increased access to energy,... ...Manufacturing and Technology markets. Our services... ...project’s electrical engineering aspects are met. "... ...project and construction management in identifying and... ..., gender identity and expression, age...Part timeFor contractorsWork experience placementWork at officeLocal areaRemote workRelocation
$99k - $232k
...through advanced technologies and strategies.... ...strengths, and managing performance to deliver... ...of critical infrastructure sectors.... ...Science, Electrical Engineering, Industrial Engineering... ..., and gender identity); age;... ...responsibilities such as accessing sensitive company...Full timeH1b$79.66k - $133.12k
...development, supply chain management, public health,... .... We create technology to support their... ...and software engineers to ensure functionality... ...validation of accessibility, internationalization... ...supporting enterprise‑scale or other developer... ..., gender identity, national origin,...$102k - $148k
...world runs. As an expert technology adviser and managed service provider with... ...The Senior Storage Engineer function ensures the stability... ...for storage infrastructure support at the enterprise level ~ Contributes... ...sexual orientation, gender identity, national origin,...Full timeTemporary workWork experience placementRemote workWork from homeFlexible hours$77.5k - $140.9k
...CyberSecurity SIEM Engineer (Senior SDC)... ...culture and technology to become the... ...Vulnerability Management (TVM) team you... ...safeguarding their enterprises. You will be... ...you will have access to the most... ...SIEM technical infrastructure and... ...orientation, gender identity/expression, pregnancy...Work experience placementSummer holidayFlexible hours- ...Solaris Energy Infrastructure Solaris... ...as well as the management of raw materials... ...Senior Systems Engineer provides hands... ..., conditional access, MFA, data governance... ...Manage enterprise backup platforms... ...compliance, identity controls, and... ...Conduct periodic technology stack reviews...
$80k - $180k
...Water Treatment Process Engineer to join our Water... ...sustainable water management and infrastructure. Our team focuses on... ...emphasis on integrating technology, sustainability, and... ...development, access to internal and external... ...orientation, gender identity, national origin, disability...Full timeRemote work$90k
...Systems Engineer – Client Services (On-Site) ECI... ...leading global provider of managed services,... ...freeing clients from technology concerns and enabling... ...issues, physical and cloud infrastructure, and project related tasks... ...File Restores, Remote Access incidents (Citrix and...Work at officeRemote workWorldwideFlexible hours$140k
...Senior Electrical Engineer Job Locations... ...THE COMPANY KCI Technologies, Inc. is a 100% employee... ...cutting-edge technologies, management practices and... ...orientation, gender identity, national origin, disability... ...energy and power delivery infrastructure. Experience...Full time- ...market. Recognized as a technology leader, Sanmina... ...Senior level manufacturing engineer supporting New Product... ...Interface with R&D, program management and other cross-... ...Project, Database software/Access, Excel, and Word... ...Veteran/Disability/Sexual Orientation/Gender IdentityHourly payContract work
- ...Job Description Project Manager – Civil Engineer Location: Houston, TX... ...revolutionize collaborative infrastructure design. This partnership allows us to access a wealth of diverse expertise... ...team leverages cutting-edge technology and expertise to pave the way...Contract workLocal area
- ...Description Civil Project Engineer Location: Houston,... ...and delivery of key infrastructure and capital... ...partnership allows us to access a wealth of diverse expertise... ...stormwater management solutions, our engineers... ...leverages cutting-edge technology and expertise to pave...Local area
- ...revolutionizing rocket engine propulsion. With... ...rocket engine technology since Apollo,... ...and scaling the enterprise infrastructure that powers our... ...environments, identity services, and core... ...configuration management using Ansible... ...position involves access to technology that...Permanent employmentFlexible hours
$133.3k - $304.5k
...Markets, Wealth and Asset Management, Insurance, and Real... ...Delivery and Growth Engine because this team... ...marketplace. Join our Tax Technology and Transformation... ...practices, infrastructure as code, developer effectiveness... ...orientation, gender identity/expression, pregnancy...Summer holidayFlexible hoursShift work- ...Computer Science, Computer Engineering, or equivalent... ...experience in Identity & Access Management, including 7+ years... ...Access Management (IAM), Single Sign-On (SSO... ...systems in a complex enterprise environment?... ...across Kirkland & Ellis' technology landscape. This senior...Worldwide
- ...maintain in source control for change management. Create and Maintain a Dynamic Inventory... ...administer, monitor and maintain JAMS Enterprise Scheduler and System Center... ...requirements. Develop integrations between infrastructure systems for data analysis and...
- ...build era-defining space infrastructure that drives exploration and... ...bold and dynamic Electrical Engineering Manager who is fueled by high... ...understand our world, science/technology, and life itself, for the... ...sexual orientation, gender identity, gender expression, age,...Permanent employmentContract workWork at officeFlexible hoursWeekend workAfternoon shift
- Senior Python Data Engineer This opportunity is with... ...data, analytics, and technology to support critical... ...internal applications, and enterprise databases. Create... ...clean, reliable, and accessible data across the... ...will help shape the infrastructure that powers critical...Full timeWork at office
- ...Security Operations Engineer will play a... ...network infrastructure. This position... ...security management. Implement... ...Zscaler Internet Access (ZIA) and... ...Manage complex enterprise networks, including... ...Cisco Identity Services Engine... ...Switching, and WAN technologies is essential....
- ...systems? Our Traffic/Technology Team is at the... ...solutions for traffic management, signal systems, and... ...communities. As a Senior Engineer, you will play a key... ...future of transportation infrastructure. Your passion for... ...orientation, gender identity, gender, disability,...Full timeWork at officeLocal areaRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity & Access Management (IAM) Engineer - Enterprise Technology Infrastructure. Be the first to apply!
- security infrastructure engineer Houston, TX
- principal infrastructure engineer Houston, TX
- lead infrastructure engineer Houston, TX
- remote infrastructure engineer Houston, TX
- infrastructure developer Houston, TX
- senior infrastructure engineer Houston, TX
- entry level infrastructure engineer Houston, TX
- infrastructure automation engineer Houston, TX
- infrastructure engineer Houston, TX
- data infrastructure engineer Houston, TX



