Principal Identity Engineer - Cloud IAM / CIAM (Remote)
$170.9k - $227.9kFirst American
We are open to remote or hybrid candidates for this role. What You’ll Do Own the enterprise IAM strategy and target‑state architecture across Microsoft Entra, AWS, and Google Cloud (OCI a plus). Define secure, scalable identity patterns for workforce, partner, and customer access that align with security, risk, and compliance requirements. Design and operationalize a Zero Trust identity model with continuous verification, risk‑based access, and adaptive authentication. Reduce standing privilege through least privilege design, just‑in‑time (JIT) access, and standardized entitlement models. Hands‑on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments. Lead modernization efforts, including migration from hybrid Active Directory to Entra ID‑based authentication. Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms. Balance security, privacy, performance, and customer experience while enabling scalable enterprise integrations. Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence. Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness. Define and lead an enterprise IAM‑as‑Code program using Terraform and GitHub. Build reusable, versioned modules and establish PR‑based workflows with auditability, approvals, and security guardrails. Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, drift detection, and rollback strategies. Ensure reliable, auditable identity changes with operational monitoring and clear runbooks. Develop automation in Python, Bash, and JSON to scale identity operations and reduce manual risk. Support policy management, bulk changes, integrations, and identity‑related incident response and diagnostics. What You’ll Bring Deep hands‑on experience designing and operating identity platforms at scale in complex environments. Advanced expertise across Microsoft Entra ID, AWS IAM, and Google Cloud IAM, with OCI experience a plus. Proven ability to design cloud‑agnostic IAM models and implement them consistently across platforms. Strong background in IAM security architecture, governance, and risk‑based access controls. Hands‑on experience with least privilege design, JIT access, Zero Trust identity, and RBAC/ABAC models. Expert knowledge of OAuth 2.0, OpenID Connect, and SAML. Proven experience delivering enterprise‑scale SSO and MFA solutions. Demonstrated experience establishing IAM‑as‑Code using Terraform with GitHub‑based change control. Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design. Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs. (preferred) Ability to communicate complex identity concepts to both technical and non‑technical audiences. Strong influence, documentation, and execution skills at the principal or senior architect level. Relevant security or identity certifications such as CISSP or identity‑focused credentials. Bachelor’s degree or equivalent experience, with extensive background in enterprise security engineering. Pay Range $170,900.00 - $227,900.00 Annually Benefits Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and employee stock purchase plan. Legal Statement First American will consider for employment all qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act). First American intends to conduct a review of an applicant’s criminal history in connection with a conditional offer. First American reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to First American or its customers, administrating or facilitating financial transactions, and the ability to meet customer‑imposed criminal history requirements. California residents may learn more by viewing our Privacy Policy. County of Los Angeles Fair Chance Ordinance E‑Verify Participation Poster. #J-18808-Ljbffr
- ...Autodesk is seeking a Director of IAM Engineering to spearhead the company's identity management efforts. This role involves leading teams to develop secure... ...understanding of identity protocols like OAuth2 and SAML. A remote work option is available for candidates located...Remote work
$174k - $312.18k
...Autodesk Inc. seeks a leader to drive Identity and Access Management engineering. The role requires strong... ...expertise, overseeing teams responsible for IAM platforms and services. Location... ...options include San Francisco, CA, or remote within North America. This position...Remote work- Autodesk is seeking a Director, IAM Engineering to lead the strategy for Identity and Access Management across various platforms. This role will define engineering... ...a robust leadership background. This position is remote-friendly within North America and based in San...Remote workWork at office
- Ultimate.ai is seeking a Director of IAM Engineering to lead identity engineering strategies across workforce and non-human identities. This role partners... ...salary range, reflecting experience and location. Remote-friendly within North America, it also allows for some in...Remote jobWork at office
- ...Hiring: Security Engineer Contractor IAM & Cloud Identity (Remote | Europe | CEST) We are looking for a hands‑on Security Engineer specializing in IAM & Cloud Identity to help design, secure, and troubleshoot identity and access systems across AWS and SaaS platforms....Remote workContract workFor contractors
- ...company is seeking a Software Engineer for its Identity Infrastructure Engineering... ...critical systems across multiple cloud environments. Key responsibilities include developing IAM platform features, driving... ...allows for hybrid or remote work. #J-18808-Ljbffr OpenAIRemote job
$191.5k - $287.3k
...VA area. We are looking for a cloud engineer focused on managing... ...Responsibilities include automating identity administration, authentication... ...as code, CI/CD pipelines, and IAM protocols such as OAUTH, OIDC... ...work combining in‑person and remote. You are expected to spend at...Remote workWork at officeFlexible hours$191.5k - $287.3k
...and a proven enterprise cloud platform, Workday brings... ...are looking for a cloud engineer who has a focus on managing... .... You will be one of our IAM engineers working to automate identity administration, authentication... ...: in-person time and remote. Our approach enables our...Remote workWork at officeHome officeFlexible hours$158.53k - $235.4k
...Principal Engineer - Information Security Engineering Location: Longmont,... ...capabilities across enterprise IT, cloud, and operational technology... ...security outcomes across identity, network, cloud, endpoint,... ...controls for: Legacy systems Remote access Vendor connectivity Improve...Remote workFull timeTemporary workFlexible hours3 days per week- ...Principal Security Engineer The Principal Security Engineer... ...solutions to manage the identity lifecycle for a... ...customer-facing (CIAM) as appropriate.... ...Collaborate with IAM team to design... ...Directories, Cloud and on-prem based... ...Architect). Remote First Work Environment...Remote workPermanent employmentWork at office
- A leading cybersecurity company is seeking a Manager of Engineering for Identity and Access Management (IAM). This remote position involves leading a team of software engineers to develop secure and scalable identity solutions. The ideal candidate should have at least 5...Remote work
$225k - $270k
Job Title: Principal Engineer Location: Denver, CO preferred (Hybrid) | Open to remote with quarterly travel About FusionAuth... ...leading provider of customer identity and access management (CIAM) software headquartered... ...on‑premise, or dedicated cloud environments, with...Remote workTemporary workLocal areaFlexible hours- ...seeking a Mid-to-Senior level Software Engineer to support their Identity & Access Management team. The ideal... ...software development, particularly with IAM protocols such as SAML and OAuth.... ...Candidates can work either on-site or remotely, and must be eligible to work in the...Remote work
$152.4k - $251.6k
...Cancer Center (MSK) is seeking a Principal Cyber Security Engineer for Identity and Access Management (IAM). This role serves as a... ...background in SAML, OAuth, and cloud architectures. The position allows... ...for hybrid work—primarily remote with occasional visits to NYC....Remote work- First American is seeking a IAM Strategy Lead based in California, with options for remote or hybrid work. This role involves owning... ...IAM strategy and designing secure identity frameworks across Microsoft Entra, AWS, and Google Cloud. The ideal candidate will have deep...Remote work
- ...A leading financial institution is seeking a Principal Software Engineer specializing in CIAM and Fraud. This remote position plays a pivotal role in building secure... ...experience in software development, especially in identity and fraud technologies. Responsibilities...Remote work
- ...Senior Security Engineer - Cloud Identity Toronto, Canada; Vancouver, Canada... ...Identity and Access Management (IAM) and proven expertise in... ...specific credentials (e.g., CIAM/CAMS, CyberArk Certified, Okta... ...Monthly stipend to support our remote work model Annual "...Remote workWork experience placementWork at officeFlexible hours
- ...the Pleasanton, CA area to place a Principal Cloud Security Engineer for a high-visibility global security... ...deployment. This is a primarily remote engagement with periodic onsite... ...network infrastructure (SD-WAN, DNS, identity/IAM integrations) SASE and SSE frameworks...Remote workPermanent employmentContract work
$180k - $250k
...Principal Engineer Xsolla is seeking a Principal Engineer with deep expertise in Identity and Golang backend development to lead the evolution of our authentication and authorization... ...across services. Integrate modern IAM standards and protocols (OAuth2, OIDC, SCIM...Remote workFlexible hours- ...software solutions for AI, cloud, network, and... ...currently looking for a Principal Support Engineer (L3, Edge Cloud). Job... ...databases) Security (IAM, encryption, best... ...hours and hybrid or remote options, depending on... ...orientation, age, gender identity, gender expression, national...Remote workMonday to FridayFlexible hours
- ...Deltacubes is seeking an IAM / CIAM Consultant with extensive experience to design and support CIAM solutions remotely. The ideal candidate will have over 7 years of experience... ...are hands-on experience in API security, identity federation, and a strong troubleshooting...Remote work
$152.4k - $251.6k
...Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves... ...~ Advanced experience with cloud identity architectures in Azure... ...~ Location:Hybrid: 99% remote with flexibility to come to NYC...Remote workLive inMonday to Friday- ...is the first AI-native identity security platform that... ...a Director of Security Engineering to lead and scale our security... ...architecture across cloud infrastructure,... ...Experience at an identity, IAM, or security vendor Background... ..., San Francisco, or remote. Comprehensive benefits...Remote workFlexible hours
$152.4k - $251.6k
.... Exciting Opportunity at MSK: Principal Cyber Security Engineer – Identity Access Management (IAM) At MSK, this role serves as a... ...Risk Advanced experience with cloud identity architectures in Azure... ...- Friday Location: Hybrid: 99% remote with flexibility to come to NYC...Remote workLive inMonday to Friday- ...DevOps Engineer - Cloud Identity & Access Management Engineer This position is within the Tolling... ...responsibility for Identity & Access Management (IAM), focusing on the ongoing development... ...* Please be informed that our remote working possibility is only available...Remote workWork experience placement
- ...Our partner is looking for a Director, Engineering – Identity based in the United States. This is... ...tightly connected. The environment is remote-first, high-growth, and deeply focused... ...OpenID Connect, SAML, JWT, MFA, and related IAM concepts ~ Proven experience managing...Remote jobFull timeHome office
$270k - $300k
...will lead strategic identity security... ...internal identity and CIAM matters across a range... ...range of on-premises, cloud-hosted, and third-... ...technical engineer who can execute at... ...as the engineering principal on implementing secure... ...Location: Remote -Houston, TX If...Remote workDaily paidLocal area- MAXAR TECHNOLOGIES, INC. is seeking an experienced Identity and Access Management (IAM) Engineer for a remote role. This position involves leading the in-sourcing of IAM services and the design of governance aligned with cybersecurity frameworks. The ideal candidate has...Remote job
- ...Principal Backend Engineer - Identity & Security Infrastructure Engineering | Bengaluru, India | Remote Atlassians can choose where they work – whether... ...technical vision for how our cloud platform establishes and... ...clusters. ~ Cloud IAM expertise (AWS IAM / GCP...Remote workWork at officeLocal area
- ...Description: ~10+ years of experience in Identity and Access Management or related fields. ~ Strong knowledge of IAM principles, technologies, and best practices.... ...: ~ Certified Identity and Access Manager (CIAM) Job Responsibilities: IAM...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Identity Engineer - Cloud IAM / CIAM (Remote). Be the first to apply!
- principal cloud engineer California, MO
- data center chief engineer California, MO
- hotel chief engineer California, MO
- principal developer California, MO
- senior civil engineer project manager California, MO
- general engineer California, MO
- senior principal engineer California, MO
- chief engineer California, MO
- principal infrastructure engineer California, MO
- director data engineering California, MO


