Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Systems Engineer Identity Access Management - Fully Remote

Full-time

NMDP

POSITION SUMMARY:

The Senior Systems Engineer provides senior technical leadership across two core areas: Identity & Access Management (IAM) and IT Productivity & Collaboration services. The position designs, implements, administers, and supports Identity Governance & Administration (IGA) and enterprise identity services (directory services, SSO/federation, MFA/conditional access alignment, and privileged access) using Okta, Active Directory, and Microsoft Entra. As a Senior Systems Engineer you will identity lifecycle processes (joiner/mover/leaver; provisioning and deprovisioning) and implement access models, policies, and governance that strengthen authentication/authorization, enable least-privilege access, and reduce identity-based risk. In addition, the position serves as technical owner for Microsoft 365 (Teams, SharePoint/OneDrive, Exchange Online) and key adjacent SaaS platforms, delivering secure and reliable operations through monitoring, incident/problem management and on-call participation, change/ITSM execution, and continuous improvement. The Senior role leads application onboarding and integrations, supports audits, access reviews, penetration testing and vulnerability remediation with evidence and corrective actions, delivers migrations and modernization efforts, manages vendor/licensing optimization and escalations, and maintains documentation, runbooks, and knowledge transfer to ensure sustainable support and a strong employee experience. Our team has a solid local presence so local, MN based candidates with easy access to our World Headquarters in downtown Minneapolis are preferred.

ACCOUNTABILITIES:

Engineering solutions, design, and administration: • Design, implement, and maintain IAM/IGA capabilities (directory services, SSO/federation, and privileged access) using Okta, Active Directory, and Microsoft Entra to deliver secure, reliable access. • Lead discovery and solution delivery for IAM initiatives (requirements, design, build, testing, and rollout); evaluate options and recommend best-fit approaches with internal teams and vendors. • Automate identity lifecycle (joiner/mover/leaver; provisioning/deprovisioning) and related administration using scripting and modern tooling to reduce manual effort and risk. • Define and enforce access governance (RBAC/ABAC), policies, workflows, and secure access patterns (SSO/MFA/conditional access alignment and least-privilege role design), including periodic access reviews. • Support security and compliance by remediating identity-related vulnerabilities and supporting audits, penetration tests, and access reviews with evidence, reporting, and corrective actions. • Onboard and integrate applications and platforms (SaaS and Microsoft 365) using standards-based connectors/integrations; partner with application owners to validate requirements, data flows, and security controls. • Own and administer Microsoft 365 and collaboration services (Teams, SharePoint/OneDrive, Exchange Online) and adjacent SaaS tools, including hybrid identity/access integrations and roadmap execution. • Operate and improve services through monitoring, dashboards/alerts, incident and problem management (RCA/post-incident reviews), and on-call participation; troubleshoot authentication/authorization/provisioning issues to restore service. • Plan, test, and deliver changes using NMDP change management and ITSM practices; validate outcomes and transition to steady-state support. • Create and maintain documentation and enablement (standards, runbooks, procedures, and knowledge articles); support tiered support and knowledge transfer with Service Desk/L2. • Support privileged access practices using approved vaulting and secrets management (e.g., Delinea Secret Server) for administrative accounts, service accounts, and automation credentials. • Partner with Procurement/Vendor Management on renewals, licensing optimization, and vendor escalations; identify cost-saving opportunities through usage analysis and right-sizing. • Evaluate and adopt new features and products (including collaboration AI capabilities) via pilots, guardrails, and measured rollouts. • Other duties as assigned.

REQUIRED QUALIFICATIONS:

Knowledge of: • IAM/IGA concepts and practices, including identity lifecycle (joiner/mover/leaver), provisioning/deprovisioning, and access recertification. • Identity standards and protocols (SAML, OAuth/OIDC, SCIM) and how they are used for SSO/federation and application integrations. • Okta, Active Directory, and Microsoft Entra ID administration and configuration concepts (tenant/directory structure, groups, app assignments, conditional access/access policies). • Privileged access management principles and controls (least privilege, role-based access, privileged roles/accounts, access request/approval workflows). • Security and compliance practices related to identity services, including logging/monitoring, vulnerability remediation, audit evidence collection, and access reviews. • Enterprise IT operations practices (incident/problem management, change control) and creating/supporting technical documentation such as procedures and runbooks. Ability to: • Demonstrate strong interpersonal and organizational skills, demonstrated success in working both independently and in a team environment.
  • Demonstrate above-average written and oral communication skills.
  • Demonstrate strong analytical and creative problem solving, and the ability
to manage multiple and rapidly changing priorities. • Work effectively both independently and collaboratively across technical and non-technical teams. • Communicate clearly in writing and verbally, including translating technical concepts for varied audiences. • Analyze complex issues, solve problems systematically, and manage multiple priorities in a fast-changing environment. • Hands-on experience with the relevant technologies and solutions for fulfilling the activities in the accountabilities section. Education and/or Experience: • Bachelor’s degree in computer science, Management Information Systems, Computer Science, Information Security or related field (or equivalent related experience and/or education). • Minimum of five or more years of experience in engineering and supporting solutions in a heterogeneous enterprise IT environment. PREFERRED QUALIFICATIONS: (Additional qualifications that may make a person even more effective in the role, but are not required for consideration) • Modern Workplace/Automation: Defines and completes project tasks, including scripting, related to workplace automation, leveraging Intune, SharePoint (including migrations), Viva, PowerApps, Power Automate, Microsoft Power Platform, etc. • Strong experience with Okta tenant configuration and core components (policies, claims, scopes, access policies) beyond day-to-day administration. • Experience partnering with application developers and using Okta APIs to automate integrations and workflows. • Experience with log management and reporting tools (e.g., Varonis, Okta reporting) for monitoring and investigation.

#LI-DNI

NMDP offers regular, full-time employees medical, dental, vision, life and disability, accident/critical illness/hospital, well-being, legal, identity theft and pet benefits. Retirement, paid time off/holidays, leave and incentive plans are also offered to eligible employees. Please reference this link for more information: NMDP Benefit Information [

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Senior Systems Engineer Identity Access Management - Fully Remote in Minneapolis, MN vacancy
  • $121k - $137k

    Berkley Technology Services is hiring a Sr Systems Engineer based in Chicago, IL, to manage Identity and Access Management (IAM) technologies. The position focuses on leading IAM projects, developing policies and procedures, and mentoring technical staff. With a salary... 
    Senior

    Berkley Technology Services

    Chicago, IL
    4 days ago
  •  ...Senior Principal TPM - Agentic Identity & Access Engineering | Seattle, United States | Remote Atlassian's Identity & Access platform is the...  ...join the Technical Program Management organization and partner...  ...thought leadership. Drive systemic improvements to how... 
    Remote work
    Senior
    Work at office
    Local area

    Atlassian

    United States
    2 days ago
  •  ...Senior Developer - Identity & Access Management (IAM) Role Overview We are seeking an experienced Senior IAM Developer to design, build,...  ...hands-on developer with genuine coding instincts who can engineer scalable identity capabilities, build automation for... 
    Remote work
    Senior

    IS3 Solutions

    United States
    4 days ago
  •  ...Senior Architect, Identity Access Management At F5, our mission is to power and protect every app—anywhere. Within the Infrastructure & Security organization...  ...recovery and business continuity plans. Ensure IAM systems comply with regulatory requirements (e.g., GDPR, HIPAA... 
    Remote work
    Senior
    Local area

    F5

    United States
    2 days ago
  •  ...Senior Midmarket Account Executive: Identity & Access Management Antigen Security is a rapidly growing Technology Services...  ...tailored to specific threats and systems, we help organizations enhance...  ...strategic accounts independently. Remote Work Experience: Proven ability... 
    Remote work
    Senior
    Work experience placement

    Antigen Security

    Royal Oak, MI
    14 hours ago
  •  ...Senior Engineer, Cybersecurity Identity Access Management (SailPoint) Location given : Washington DC Atlanta, New...  ...Notes : The team is currently remote, but that can change at any time...  ...Security Cloud (ISC) with other systems, applications, and services used... 
    Remote work
    Senior
    Work at office

    Vantage Point Consulting Inc.

    Washington DC
    2 days ago
  • $139.3k - $250.7k

     ...Senior Product Manager Do you enjoy building experiences...  ...users securely access and manage a cloud...  ...the complete identity and account management...  ...among engineering, architecture, operations...  ...advanced authorization systems (RBAC/ABAC), and...  ..., Cambridge, MA, 02142, US (Remote)... 
    Remote work
    Senior
    Work experience placement

    Akamai

    United States
    1 day ago
  •  ...Experience or functional knowledge with Identity Management technologies including (but not limited...  ...(Entra) and MEM (Intune) conditional access, configuration, app, and management profiles...  ...Experience with desktop operating systems and server environments Strong organizational... 
    Remote work
    Senior
    Flexible hours

    The Dignify Solutions LLC

    United States
    4 days ago
  • $90 - $95 per hour

     ...inclusive, adaptable, and forward-thinking organization, apply now. NTT DATA's Client is currently seeking a Senior Identity & Access Management (IAM) Architect- Remote to join our team in Phoenix, Arizona (US-AZ), United States (US). REMOTE Job Description: Job... 
    Remote work
    Senior
    Hourly pay
    Temporary work
    Flexible hours

    NTT Data Americas, Inc.

    United States
    10 days ago
  •  ...deeply about secure access at scale? Making...  ...the future of our identity and access strategy...  ...not a blocker. As a Senior Identity & Access Management Engineer, you’ll be a hands‑...  ...applications, and internal systems. You’ll own the...  ...(flexible, remote, or required in office... 
    Remote work
    Senior
    Contract work
    Work at office
    Flexible hours

    ServiceNow

    Austin, TX
    4 days ago
  •  ...is the AI-native system local business owners...  ...great operators, engineers, and marketers...  ...we work Owner is a remote-first, global company...  ...secure, reliable access to the right tools...  ...generation of our identity and access platform...  ...login, session management, permissions, roles... 
    Remote work
    Senior
    Work at office
    Local area

    Owner

    San Francisco, CA
    4 days ago
  •  ...Senior Security Consultant Turnkey is helping to make the...  ...provider of risk management, identity and access management and cyber security...  ...assurance, managed services, and system implementation. Whilst...  ...delivering and providing engineering/consulting services on SailPoint... 
    Remote work
    Senior
    Work experience placement

    Turnkey Consulting

    United States
    2 days ago
  • $148.7k - $240.53k

     ...you to join us! This role is remote, but distance is no barrier...  ...We are looking for a product manager to join the team building out enterprise-grade identity and access management (IAM) product, integrations...  ...our customers and our engineering team. You'll translate the... 
    Remote work
    Senior
    Temporary work

    Palo Alto Networks

    Austin, TX
    2 days ago
  •  ...global cybersecurity company is seeking a Senior Software Development Engineer in Test (SDET) to join their Privileged Access Management team. This role focuses on designing and maintaining...  .... The position offers flexibility for remote work and demands hands-on experience with... 
    Remote work
    Senior

    Keeper Security

    New York, NY
    3 days ago
  • $160k - $240k

     ...Senior Software Engineer - Identity & Privileged Access Management Location: New York Business Area: Engineering and CTO Ref #:...  ...for securing the infrastructure, systems, and data that power our global...  ...credential rotation, and secure remote access. Experience managing... 
    Remote work
    Senior
    Temporary work
    For contractors
    Work experience placement

    Bloomberg

    New York, NY
    4 days ago
  • $158k - $279k

     ...About role Roku is seeking a senior-level Identity Engineer to enhance its Zero‑Trust architecture,...  ...hands‑on experience in identity and access management (IAM) and securing cloud environments...  ...Thursday. Fridays are flexible for remote work except for employees whose... 
    Remote work
    Senior
    Work at office
    Local area
    Monday to Thursday
    Flexible hours

    Roku

    New York, NY
    4 days ago
  •  ...Lead IT Security Administrator for a fully remote position. The successful candidate...  ...handle the security administration of systems, manage user identities, and ensure adherence to security...  ...minimum of 1-2 years in identity and access management is required, along with ITIL... 
    Remote job
    Senior

    The Dignify Solutions, LLC

    New York, NY
    3 days ago
  • $87k - $148k

     ...premier global asset management organization with more...  ...sponsors. Role Summary The Senior Infrastructure...  ...Operational Analyst within the Identity Access Management (IAM) team...  ...), and authentication systems. Leveraging deep...  ...Colorado, Washington and remote workers. $95,500.00 –... 
    Remote work
    Senior
    Work experience placement
    Local area
    3 days per week

    T. Rowe Price

    Owings Mills, MD
    5 days ago
  •  ...Identity And Access Management Systems Engineer Sonoma Consulting is one of the fastest growing national IT Consulting and Executive Search company in the United States, which was founded in 2011 by Mark McGee, the President and CEO. Sonoma Consulting has two business... 
    Local area

    Sonoma Consulting

    Glenview, IL
    2 days ago
  •  ...Job Purpose The Senior Manager, Identity and Access Management (IDAM) is a key...  ...that safeguards critical systems, data, and applications....  ...will also oversee the IDAM Engineering team, driving the implementation...  .../ Travel Requirements Remote or office setting Up... 
    Remote work
    Senior
    For contractors
    Work at office

    Valvoline

    Lexington, KY
    3 days ago
  • Identity and Access Management Systems Engineer Halo Group is a premier provider of IT talent. We place technology experts within the teams of the world’s leading companies to help them build innovative businesses that keep them one step closer to their customers and one... 
    Permanent employment
    Full time

    Sonoma Consulting Inc.

    Glenview, IL
    1 day ago
  • A leading cybersecurity firm is seeking an Identity, Credential and Access Management Systems Engineer in Arlington, VA. The ideal candidate will have a TS/SCI clearance, a background in information technology, and experience with ForgeRock. Responsibilities include deploying... 
    Full time

    TDI (Tetrad Digital Integrity)

    Arlington, VA
    3 days ago
  • Identity, Credential and Access Management Systems Engineer Be among the first 25 applicants (4 weeks ago) Tetrad Digital Integrity...  ...of legacy systems, fully automate the continuous development...  ...Web Services, Ansible playbooks. Seniority Level Mid-Senior level Employment... 
    Full time
    Work at office
    Night shift

    TDI (Tetrad Digital Integrity)

    Arlington, VA
    3 days ago
  • $110k - $140k

     ...Solutions Consulting & Engineering (SC&E) Team and...  ...our world-class management consulting,...  ...Overview: The Senior Consultant, IAM is...  ...components within WWT's Identity and Access Management...  ...professional services firm, systems integrator, or...  .... #LI-MP2 #LI-REMOTE WWT will... 
    Remote work
    Senior
    Full time
    Shift work

    World Wide Technology

    United States
    7 days ago
  • $146k - $182k

     ...and recreational access. WHAT YOU WILL...  ...onX is seeking a Senior Backend Engineer with a passion for...  ...scalable platform Identity and Access Management (IAM) systems. Your focus will be...  ...of 5 or 13 weeks fully paid ~401k matching...  ...until filled. #LI-Remote At onX, we... 
    Remote work
    Senior
    Permanent employment
    Full time
    Part time
    Work at office
    Flexible hours

    ONX, Inc.

    Bozeman, MT
    1 day ago
  • $124.8k - $156k

     ...Innovations group as a Senior Agentic Systems Engineer to build Artificial...  ...delegation, session management, and streaming...  ...and tenant‑aware data access Deploy and operate containerized...  ...is preferred Remote – United States Pay...  ..., gender, gender identity or expression, sexual... 
    Remote work
    Senior
    Immediate start
    Worldwide

    Natera

    New York, NY
    3 days ago
  • $121k - $137k

    W. R. Berkley Corporation is seeking a Sr Systems Engineer in Wilmington, Delaware, to manage Identity and Access Management (IAM) systems. The role requires a proactive...  ...is hybrid, promoting a balance between remote and on-site responsibilities. #J-18808-Ljbffr W... 
    Remote work
    Senior

    W. R. Berkley Corporation

    Wilmington, DE
    4 days ago
  • $183k

     ...Job Description Job Description Position: Identity and Access Management Systems Engineer Location: Arlington, Virginia Category: Systems Engineering...  ...: Full Time Travel: 10% Shift: Day Remote: No Remote Clearance: Top Secret/SCI or higher... 
    Remote work
    Full time
    Shift work

    Cyrten

    Arlington, VA
    21 days ago
  •  ...Job Title: Saviynt IAM Staff Augmentation - Senior Identity & Access Management Engineer Available Locations: Scottsdale, AZ, Chicago, IL, San Francisco...  ...integration and testing using REST/SOAP, JSON, XML • System Integration & Identity Ecosystem • Integration of Saviynt... 
    Senior
    Long term contract
    Work from home
    Flexible hours

    Vytwo

    Prosper, TX
    1 day ago
  •  ...A technology company in the United States is seeking a SailPoint Subject Matter Expert to implement identity and access management solutions. The role involves developing integrations, ensuring compliance with security standards, and creating technical documentation.... 
    Senior

    Interactive Process Technology LLC

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Systems Engineer Identity Access Management - Fully Remote. Be the first to apply!