Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Principal Identity Engineer - Cloud IAM / CIAM (Remote)

$170.9k - $227.9k

First American

We are open to remote or hybrid candidates for this role. What You’ll Do Own the enterprise IAM strategy and target‑state architecture across Microsoft Entra, AWS, and Google Cloud (OCI a plus). Define secure, scalable identity patterns for workforce, partner, and customer access that align with security, risk, and compliance requirements. Design and operationalize a Zero Trust identity model with continuous verification, risk‑based access, and adaptive authentication. Reduce standing privilege through least privilege design, just‑in‑time (JIT) access, and standardized entitlement models. Hands‑on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments. Lead modernization efforts, including migration from hybrid Active Directory to Entra ID‑based authentication. Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms. Balance security, privacy, performance, and customer experience while enabling scalable enterprise integrations. Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence. Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness. Define and lead an enterprise IAM‑as‑Code program using Terraform and GitHub. Build reusable, versioned modules and establish PR‑based workflows with auditability, approvals, and security guardrails. Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, drift detection, and rollback strategies. Ensure reliable, auditable identity changes with operational monitoring and clear runbooks. Develop automation in Python, Bash, and JSON to scale identity operations and reduce manual risk. Support policy management, bulk changes, integrations, and identity‑related incident response and diagnostics. What You’ll Bring Deep hands‑on experience designing and operating identity platforms at scale in complex environments. Advanced expertise across Microsoft Entra ID, AWS IAM, and Google Cloud IAM, with OCI experience a plus. Proven ability to design cloud‑agnostic IAM models and implement them consistently across platforms. Strong background in IAM security architecture, governance, and risk‑based access controls. Hands‑on experience with least privilege design, JIT access, Zero Trust identity, and RBAC/ABAC models. Expert knowledge of OAuth 2.0, OpenID Connect, and SAML. Proven experience delivering enterprise‑scale SSO and MFA solutions. Demonstrated experience establishing IAM‑as‑Code using Terraform with GitHub‑based change control. Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design. Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs. (preferred) Ability to communicate complex identity concepts to both technical and non‑technical audiences. Strong influence, documentation, and execution skills at the principal or senior architect level. Relevant security or identity certifications such as CISSP or identity‑focused credentials. Bachelor’s degree or equivalent experience, with extensive background in enterprise security engineering. Pay Range $170,900.00 - $227,900.00 Annually Benefits Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and employee stock purchase plan. Legal Statement First American will consider for employment all qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act). First American intends to conduct a review of an applicant’s criminal history in connection with a conditional offer. First American reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to First American or its customers, administrating or facilitating financial transactions, and the ability to meet customer‑imposed criminal history requirements. California residents may learn more by viewing our Privacy Policy. County of Los Angeles Fair Chance Ordinance E‑Verify Participation Poster. #J-18808-Ljbffr

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Principal Identity Engineer - Cloud IAM / CIAM (Remote) in California, MO vacancy
  •  ...Autodesk is seeking a Director of IAM Engineering to spearhead the company's identity management efforts. This role involves leading teams to develop secure...  ...understanding of identity protocols like OAuth2 and SAML. A remote work option is available for candidates located... 
    Remote work

    Autodesk

    Reston, VA
    3 days ago
  • $174k - $312.18k

     ...Autodesk Inc. seeks a leader to drive Identity and Access Management engineering. The role requires strong...  ...expertise, overseeing teams responsible for IAM platforms and services. Location...  ...options include San Francisco, CA, or remote within North America. This position... 
    Remote work

    Autodesk

    San Francisco, CA
    3 days ago
  • Autodesk is seeking a Director, IAM Engineering to lead the strategy for Identity and Access Management across various platforms. This role will define engineering...  ...a robust leadership background. This position is remote-friendly within North America and based in San... 
    Remote work
    Work at office

    Autodesk

    San Francisco, CA
    4 days ago
  • Ultimate.ai is seeking a Director of IAM Engineering to lead identity engineering strategies across workforce and non-human identities. This role partners...  ...salary range, reflecting experience and location. Remote-friendly within North America, it also allows for some in... 
    Remote job
    Work at office

    Ultimate.ai

    California, MO
    4 days ago
  •  ...Hiring: Security Engineer Contractor IAM & Cloud Identity (Remote | Europe | CEST) We are looking for a hands‑on Security Engineer specializing in IAM & Cloud Identity to help design, secure, and troubleshoot identity and access systems across AWS and SaaS platforms.... 
    Remote work
    Contract work
    For contractors

    IT Minds

    New Bremen, OH
    21 hours ago
  •  ...company is seeking a Software Engineer for its Identity Infrastructure Engineering...  ...critical systems across multiple cloud environments. Key responsibilities include developing IAM platform features, driving...  ...allows for hybrid or remote work. #J-18808-Ljbffr OpenAI
    Remote job

    OpenAI

    Los Angeles, CA
    3 days ago
  • $191.5k - $287.3k

     ...VA area. We are looking for a cloud engineer focused on managing...  ...Responsibilities include automating identity administration, authentication...  ...as code, CI/CD pipelines, and IAM protocols such as OAUTH, OIDC...  ...work combining in‑person and remote. You are expected to spend at... 
    Remote work
    Work at office
    Flexible hours

    Workday

    Reston, VA
    5 days ago
  • $191.5k - $287.3k

     ...and a proven enterprise cloud platform, Workday brings...  ...are looking for a cloud engineer who has a focus on managing...  .... You will be one of our IAM engineers working to automate identity administration, authentication...  ...: in-person time and remote. Our approach enables our... 
    Remote work
    Work at office
    Home office
    Flexible hours

    Dormont Manufacturing Company

    Reston, VA
    4 days ago
  • $158.53k - $235.4k

     ...Principal Engineer - Information Security Engineering Location: Longmont,...  ...capabilities across enterprise IT, cloud, and operational technology...  ...security outcomes across identity, network, cloud, endpoint,...  ...controls for: Legacy systems Remote access Vendor connectivity Improve... 
    Remote work
    Full time
    Temporary work
    Flexible hours
    3 days per week

    Seagate Technology

    Longmont, CO
    4 days ago
  •  ...Principal Security Engineer The Principal Security Engineer...  ...solutions to manage the identity lifecycle for a...  ...customer-facing (CIAM) as appropriate....  ...Collaborate with IAM team to design...  ...Directories, Cloud and on-prem based...  ...Architect). Remote First Work Environment... 
    Remote work
    Permanent employment
    Work at office

    Cambium Learning Group

    United States
    7 days ago
  • A leading cybersecurity company is seeking a Manager of Engineering for Identity and Access Management (IAM). This remote position involves leading a team of software engineers to develop secure and scalable identity solutions. The ideal candidate should have at least 5... 
    Remote work

    Bugcrowd

    New York, NY
    3 days ago
  • $225k - $270k

    Job Title: Principal Engineer Location: Denver, CO preferred (Hybrid) | Open to remote with quarterly travel About FusionAuth...  ...leading provider of customer identity and access management (CIAM) software headquartered...  ...on‑premise, or dedicated cloud environments, with... 
    Remote work
    Temporary work
    Local area
    Flexible hours

    FusionAuth

    Denver, CO
    3 days ago
  •  ...seeking a Mid-to-Senior level Software Engineer to support their Identity & Access Management team. The ideal...  ...software development, particularly with IAM protocols such as SAML and OAuth....  ...Candidates can work either on-site or remotely, and must be eligible to work in the... 
    Remote work

    Gravity IT Resources

    Midvale, UT
    5 days ago
  • $152.4k - $251.6k

     ...Cancer Center (MSK) is seeking a Principal Cyber Security Engineer for Identity and Access Management (IAM). This role serves as a...  ...background in SAML, OAuth, and cloud architectures. The position allows...  ...for hybrid work—primarily remote with occasional visits to NYC.... 
    Remote work

    Dormont Manufacturing Company

    New York, NY
    5 days ago
  • First American is seeking a IAM Strategy Lead based in California, with options for remote or hybrid work. This role involves owning...  ...IAM strategy and designing secure identity frameworks across Microsoft Entra, AWS, and Google Cloud. The ideal candidate will have deep... 
    Remote work

    First American

    California, MO
    1 day ago
  •  ...A leading financial institution is seeking a Principal Software Engineer specializing in CIAM and Fraud. This remote position plays a pivotal role in building secure...  ...experience in software development, especially in identity and fraud technologies. Responsibilities... 
    Remote work

    First Citizens Bank

    Houston, TX
    5 days ago
  •  ...Senior Security Engineer - Cloud Identity Toronto, Canada; Vancouver, Canada...  ...Identity and Access Management (IAM) and proven expertise in...  ...specific credentials (e.g., CIAM/CAMS, CyberArk Certified, Okta...  ...Monthly stipend to support our remote work model Annual "... 
    Remote work
    Work experience placement
    Work at office
    Flexible hours

    Marqueta Referrals

    United States
    1 day ago
  •  ...the Pleasanton, CA area to place a Principal Cloud Security Engineer for a high-visibility global security...  ...deployment. This is a primarily remote engagement with periodic onsite...  ...network infrastructure (SD-WAN, DNS, identity/IAM integrations) SASE and SSE frameworks... 
    Remote work
    Permanent employment
    Contract work

    CTI Staffing Inc

    Pleasanton, CA
    2 days ago
  • $180k - $250k

     ...Principal Engineer Xsolla is seeking a Principal Engineer with deep expertise in Identity and Golang backend development to lead the evolution of our authentication and authorization...  ...across services. Integrate modern IAM standards and protocols (OAuth2, OIDC, SCIM... 
    Remote work
    Flexible hours

    Xsolla

    United States
    2 days ago
  •  ...software solutions for AI, cloud, network, and...  ...currently looking for a Principal Support Engineer (L3, Edge Cloud). Job...  ...databases) Security (IAM, encryption, best...  ...hours and hybrid or remote options, depending on...  ...orientation, age, gender identity, gender expression, national... 
    Remote work
    Monday to Friday
    Flexible hours

    Gcore

    Poland, NY
    5 days ago
  •  ...Deltacubes is seeking an IAM / CIAM Consultant with extensive experience to design and support CIAM solutions remotely. The ideal candidate will have over 7 years of experience...  ...are hands-on experience in API security, identity federation, and a strong troubleshooting... 
    Remote work

    Deltacubes

    New York, NY
    21 hours ago
  • $152.4k - $251.6k

     ...Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves...  ...~ Advanced experience with cloud identity architectures in Azure...  ...~ Location:Hybrid: 99% remote with flexibility to come to NYC... 
    Remote work
    Live in
    Monday to Friday

    Memorial Sloan

    New York, NY
    4 days ago
  •  ...is the first AI-native identity security platform that...  ...a Director of Security Engineering to lead and scale our security...  ...architecture across cloud infrastructure,...  ...Experience at an identity, IAM, or security vendor Background...  ..., San Francisco, or remote. Comprehensive benefits... 
    Remote work
    Flexible hours

    Elea Ecuador

    Portland, OR
    4 days ago
  • $152.4k - $251.6k

     .... Exciting Opportunity at MSK: Principal Cyber Security Engineer – Identity Access Management (IAM) At MSK, this role serves as a...  ...Risk Advanced experience with cloud identity architectures in Azure...  ...- Friday Location: Hybrid: 99% remote with flexibility to come to NYC... 
    Remote work
    Live in
    Monday to Friday

    Memorial Sloan Kettering

    New York, NY
    4 days ago
  •  ...DevOps Engineer - Cloud Identity & Access Management Engineer This position is within the Tolling...  ...responsibility for Identity & Access Management (IAM), focusing on the ongoing development...  ...* Please be informed that our remote working possibility is only available... 
    Remote work
    Work experience placement

    Deutsche Telekom IT Solutions

    United States
    2 days ago
  •  ...Our partner is looking for a Director, Engineering – Identity based in the United States. This is...  ...tightly connected. The environment is remote-first, high-growth, and deeply focused...  ...OpenID Connect, SAML, JWT, MFA, and related IAM concepts ~ Proven experience managing... 
    Remote job
    Full time
    Home office

    jobgether

    United States
    6 days ago
  • $270k - $300k

     ...will lead strategic identity security...  ...internal identity and CIAM matters across a range...  ...range of on-premises, cloud-hosted, and third-...  ...technical engineer who can execute at...  ...as the engineering principal on implementing secure...  ...Location: Remote -Houston, TX If... 
    Remote work
    Daily paid
    Local area

    Jones Lang LaSalle IP, Inc.

    United States
    2 days ago
  • MAXAR TECHNOLOGIES, INC. is seeking an experienced Identity and Access Management (IAM) Engineer for a remote role. This position involves leading the in-sourcing of IAM services and the design of governance aligned with cybersecurity frameworks. The ideal candidate has... 
    Remote job

    MAXAR TECHNOLOGIES, INC.

    Palo Alto, CA
    5 days ago
  •  ...Principal Backend Engineer - Identity & Security Infrastructure Engineering | Bengaluru, India | Remote Atlassians can choose where they work – whether...  ...technical vision for how our cloud platform establishes and...  ...clusters. ~ Cloud IAM expertise (AWS IAM / GCP... 
    Remote work
    Work at office
    Local area

    Atlassian

    United States
    3 days ago
  •  ...Description: ~10+ years of experience in Identity and Access Management or related fields. ~ Strong knowledge of IAM principles, technologies, and best practices....  ...: ~ Certified Identity and Access Manager (CIAM) Job Responsibilities: IAM... 
    Remote work

    Fisec Global

    United States
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Principal Identity Engineer - Cloud IAM / CIAM (Remote). Be the first to apply!