Security Engineer, IAM
$130k - $170kSoftbank Investment Advisers
Security Engineer, IAM
Boston, MA, US
Identity is foundational to securing modern cloud-native platforms, SaaS ecosystems, and enterprise systems. We are seeking an IAM Security Engineer to support the design, implementation, and continuous improvement of identity and access management controls across workforce identity, SaaS platforms, and production cloud environments.
In this role, you will work closely with Security, IT, and Engineering teams to implement secure authentication and authorization patterns that protect critical systems and data.
Responsibilities
- Implement authentication and authorization controls across SaaS platforms, cloud infrastructure, and internal applications
- Configure and maintain SSO, MFA, conditional access policies, and federation integrations
- Assist with the evolution of single sign-on (SSO), multi-factor authentication (MFA), conditional access, and zero trust access models
- Assist in design and enforce role-based and attribute-based access control models (RBAC/ABAC) across cloud and SaaS systems
- Validate identity provider integrations, including application onboarding and SCIM provisioning
- Partner with Engineering to secure application authentication flows, API access, service-to-service authentication, and token management
- Harden and optimize identity provider configurations, including lifecycle management, federation, and SCIM provisioning
- Support AWS IAM security, including policy implementation, role configuration, cross-account access management, and identity federation
- Implement privileged access and identity lifecycle controls, including provisioning, deprovisioning, access reviews, entitlement governance, least privilege enforcement, and just-in-time access mechanisms
- Secure APIs, service accounts, and non-human identities used in automation and CI/CD workflows
- Implement and improve identity monitoring and detection capabilities, including anomaly detection, session risk analysis, and identity threat response
- Partner with GRC to support identity-related audits, evidence collection, and control validation across frameworks such as ISO 27001, SOC 2, PCI DSS, and GDPR
- Contribute to incident response efforts involving identity compromise, credential abuse, or unauthorized access events
Qualifications
- 3+ years of experience in IAM engineering or identity architecture
- Hands-on experience with enterprise identity providers such as Okta, Azure AD, or similar enterprise IAM platforms
- Strong understanding of modern authentication and authorization protocols, including SAML, OAuth 2.0, OIDC, SCIM, and JWT
- Experience designing and implementing RBAC and/or ABAC models in cloud-native environments
- Strong knowledge of AWS IAM, cross-account access models, and cloud identity federation
- Experience securing APIs, service accounts, machine identities, and CI/CD authentication workflows
- Experience with privileged access management concepts and least privilege enforcement
- Experience automating IAM tasks using scripting or infrastructure-as-code tools (i.e., Python, Terraform, or similar infrastructure-as-code tooling)
- Familiarity with identity threat detection and response methodologies
- Bachelor's degree in Computer Science, Cybersecurity, or related field; relevant certifications (i.e., CISSP, CISM, GIAC, AWS Security Specialty, Okta Certified Professional) or equivalent practical experience will also be considered
This role is based in the WHOOP office located in Boston, MA. The successful candidate must be prepared to relocate if necessary to work out of the Boston, MA office.
Interested in the role, but don't meet every qualification? We encourage you to still apply! At WHOOP, we believe there is much more to a candidate than what is written on paper, and we value character as much as experience. As we continue to build a diverse and inclusive environment, we encourage anyone who is interested in this role to apply.
WHOOP is an Equal Opportunity Employer and participates in E-verify to determine employment eligibility
The WHOOP compensation philosophy is designed to attract, motivate, and retain exceptional talent by offering competitive base salaries, meaningful equity, and consistent pay practices that reflect our mission and core values.
At WHOOP, we view total compensation as the combination of base salary, equity, and benefits, with equity serving as a key differentiator that aligns our employees with the long-term success of the company and allows every member of our corporate team to own part of WHOOP and share in the company's long-term growth and success.
The U.S. base salary range for this full-time position is $130,000 - $170,000. Salary ranges are determined by role, level, and location. Within each range, individual pay is based on factors such as job-related skills, experience, performance, and relevant education or training.
In addition to the base salary, the successful candidate will also receive benefits and a generous equity package.
These ranges may be modified in the future to reflect evolving market conditions and organizational needs. While most offers will typically fall toward the starting point of the range, total compensation will depend on the candidate's specific qualifications, expertise, and alignment with the role's requirements.
$130k - $170k
...WHOOP IAM Security Engineer At WHOOP, we're on a mission to unlock human performance and healthspan. Our wearable technology provides personalized insights that help millions of members better understand their bodies and make smarter decisions about training, recovery...SuggestedFull timeWork at officeRelocation- ...Identity And Access Management Engineer – Officer Location: Boston and Quincy, MA and Austin, TX, Atlanta Georgia, Princeton... .... This role will have a broad range of responsibilities of IAM and CIAM security design and resiliency changes with aggressive execution timelines...Suggested
- Honeywell International, Inc. is looking for a Cyber Security Architect/Engineer II - Active Directory/IAM to work remotely. This role focuses on managing Privilege Identity applications and monitoring SIEM services while enhancing user experience. A successful candidate...SuggestedRemote job
$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate... ...permissions and configuration issues within components like IAM and S3. Performing an in-depth security review of new Zoom...SuggestedWork at officeRemote work$130k - $170k
...on our mission to prevent heart attacks and strokes! You are a security engineer who likes being close to the technology, partnering with the... ...equivalent experience. Hands‑on AWS security experience across IAM, VPC, GuardDuty, Security Hub, CloudTrail and KMS, with comfort...SuggestedWork at officeRemote workFlexible hours$125k - $175k
WHOOP in Boston, MA is seeking a Platform Engineer II to build scalable and secure cloud infrastructure. The role involves working with AWS, maintaining IAM systems, and ensuring security practices are embedded in developmental processes. The ideal candidate should have...$148.5k - $237.6k
...matters at a company where you matter. Your Impact As a Senior Security Operations Engineer, you'll play a key role in ensuring the reliability,... ...execution support for user identity and access management (IAM) initiatives. Your work will have a direct impact on uptime...Work experience placementWork at officeRemote work$110k - $150k
...and Washington, D.C. We’re growing quickly and looking for a Security Engineer with governance, risk and compliance (GRC) proficiency who will... ...and SaaS environments (AWS, Azure, GCP) Implement and manage IAM solutions (SSO, MFA, RBAC, least privilege) Support...Full time$113.4k - $252k
...driving the containment and remediation of security threats across our multi‑cloud... ...root‑cause analysis. Automation & SOAR Engineering: Use Tines to build and design workflows... ...using Cyberhaven DLP. Identify gaps in IAM and vulnerability management and advocate...Local area$175.2k - $262.8k
...how we empower creators to own their own destiny. As a Lead Security Engineer on the Enterprise Security team, you'll play a central role in... ...the design and operations of identity and access management (IAM) across corporate SaaS platforms, including Just-in-Time Access...$104k - $156k
...Posting Type Remote/Hybrid Job Overview As an Advanced Security Engineer focused on Endpoint Security, you will design, build, and operate security controls that protect Relativity's employee endpoints and the enterprise systems they access. You will help...Remote work$114.48k - $130k
..., GA.*** Voya is seeking a Senior IT Security Specialist to strengthen our SaaS Security... ..., Application Security, and Platform Engineering teams to identify, assess, and remediate... ...Code (PaC) . ~ Solid understanding of IAM, identity federation, least‑privilege access...Part timeWork experience placementWork at officeRemote workFlexible hoursShift work- ...Job ID: 10426788 | Amazon Web Services, Inc. - A97 Employer: Amazon Web Services, Inc. | Position: Security Engineer II - AMZ27256.1 | Location: Boston, MA Multiple Positions Available Responsibilities Provide frontline support for all information security related issues...Relocation package
$159.3k - $202.4k
...Description Employer: Amazon Web Services, Inc. Position: Security Engineer II - AMZ27256.1 Location: Boston, MA Multiple Positions Available: Provide frontline support for all information security related issues, such as penetration testing, network and...Relocation package$130k - $160k
...A well-known, highly respected organization is looking for a sharp Endpoint Security Engineer to join their infrastructure team. This is a high-impact role sitting at the intersection of endpoint security, OS engineering, and incident response. What you'll own:...- ...Reporting to the manager of the IT Networking & Security team, this position is part of the IT Infrastructure group. The IT Security Engineer has responsibility for the design and implementation of security technology and policies that protect the Client's data and systems...
$152.41k - $179.3k
...foster collaboration, connection, and alignment. Attendance is expected and fully supported. Coinbase Corporate Security (CorpSec) is seeking a Security Engineer to design, implement, and automate security solutions that protect corporate infrastructure, user devices,...Local area- ...PREFERRED QUALIFICATIONS ~5+ years of experience in Identity and Access Management (IAM) with a focus on Microsoft Entra ID (Azure AD), Active Directory, and SSO integration. ~ Experience with SSO technologies including SAML, OAuth, and OpenID Connect....
$117.2k - $178.7k
...Information Security Engineer Under the direction of the Senior Manager of Information Security Engineering and Architecture, the Information... ...edge (SSE), DNS security, identity and access management (IAM/PAM), DLP, CASB, and SIEM platforms ~ Strong working knowledge...Weekend work$110k - $315k
...Overview We are seeking a highly skilled and motivated Senior Cloud Security Engineer to join our cybersecurity team, with a focus on guiding cloud... ...tools/concepts such as SCP, KMS, GuardDuty, SecurityHub, IAM with conditions, VPCE and VPCE policies, Macie, and Inspector....Local areaWorldwide- CNAPP Cloud Security Engineer (Remote) - Northeast region GuidePoint Security provides trusted cybersecurity expertise, solutions and services... ...practices Cloud Entitlements - Excessive Permissions and various IAM best practices Secrets - unprotected secrets on VMs,...Remote jobFlexible hours
$62.4k - $78k
DraftKings is seeking a Security Technology Engineer to drive the protection and scalability of our global operations. You will manage electronic security platforms and lead system upgrades while ensuring compliance and optimization. The ideal candidate has over 5 years...- IT SECURITY ENGINEER , Information Systems and Technology (IS&T), will be a subject matter expert and final escalation point for cybersecurity events, applying analytical expertise and technical knowledge of networks and systems to protect the Institute's digital infrastructure...Full timeWork experience placementRemote work
$107k - $135k
CarGurus LLC in Boston is looking for a Security Engineer II to strengthen their Threat Detection and Response Team. This hands-on role involves identifying and mitigating cybersecurity threats while building effective detection platforms using the latest technology. The...$130.8k - $209.4k
Moderna is seeking a Senior IAM Engineer in Cambridge, Massachusetts to enhance its identity governance capabilities. This role combines technical leadership and hands-on engineering in identity management across the enterprise. The ideal candidate will have a Bachelor...- Pylon is seeking a candidate to help build B2B post-sales support features, particularly focusing on security. The role includes responsibilities such as leading security reviews and engaging in both pre- and post-sales conversations. The ideal candidate should have experience...
$130.8k - $209.4k
Moderna Therapeutics in Cambridge is seeking a Senior IAM Engineer to enhance identity governance capabilities. You will manage design, implementation, and continuous improvement across the enterprise systems. Ideal candidates have over 8 years in IT or cybersecurity and...- BioSpace is seeking a Senior IAM Engineer to enhance its identity governance capabilities. This role emphasizes technical leadership and... ...with multiple teams (IAM, Cybersecurity, Compliance) to deliver secure, scalable identity solutions. A Bachelor's degree and...
$130.8k - $209.4k
The Role Moderna is seeking a Senior IAM Engineer with expertise in Identity Governance & Administration (IGA) to help design, build, and... ...environment. You will play a key role in establishing scalable and secure identity governance processes and integrating them across...Permanent employmentWork from home$135k - $194k
...organization plays a central role in operating, securing, and scaling these environments for... .... Role Summary The Principal Security Engineer provides technical leadership across the... ...expertise across multiple security domains (IAM, network security, cloud security, data...Full timeTemporary workWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer, IAM. Be the first to apply!
- senior application security engineer Boston, MA
- IT security engineer Boston, MA
- cloud security engineer Boston, MA
- network security engineer Boston, MA
- sr security engineer Boston, MA
- senior security operations engineer Boston, MA
- security infrastructure engineer Boston, MA
- sr information security engineer Boston, MA
- product security engineer Boston, MA
- information technology security engineer Boston, MA


