IAM Governance Engineer
Cogent Info
IAM Governance Engineer
At Cogent Infotech, we believe in creating opportunities that empower individuals and transform organizations. With over 20 years of excellence in consulting and talent solutions, we're proud to build inclusive workplaces and deliver innovative, people-first solutions to clients across the public and private sectors. We value integrity, empathy, and continuous learning, and we welcome you to bring your authentic self as we grow together.
The IAM (Identity & Access Management) Governance Engineer will serve as the bridge between IT operations and cybersecurity, moving beyond simple account creation to architect a secure, automated, and compliant identity ecosystem. This position will be responsible for implementing next-generation Identity Governance (IGA) and lead our transition to a continuous compliance model, leveraging automation, machine learning, and automated UI interactions to secure every application, even those without standard APIs. The IAM Governance Engineer will be the subject matter expert responsible for ensuring that the right individuals have access to the right resources at the right time and validating that access through rigorous governance.
Responsibilities:
- Serve as the primary owner of our Identity Governance and Administration (IGA) platform.
- Ensure the system provides 100% visibility into user access across the enterprise, ingesting data accurately from HRIS, Active Directory, and ERPs.
- Utilize machine learning (ML) and peer-group analysis to ensure dynamic group management. Design policies that adapt to business changes and reduce "role explosion."
- Orchestrate monthly and quarterly access certification campaigns. Reduce "reviewer fatigue" by implementing intelligent risk scoring, allowing managers to focus only on high-risk or anomalous access.
- Configure automated workflows to ensure that when access is revoked during a review, the change is immediately executed in the target application or ITSM tool without manual intervention.
- Develop strategies to ingest identity data from "unmanageable" or legacy applications that lack native APIs and bring these isolated systems into the central governance framework using automated UI interactions.
- Establish monitoring to detect unauthorized permission changes ("access drift") made directly in applications outside of formal approval processes—and trigger automated remediation.
- Lead the technical design for enterprise IAM solutions, ensuring all authentication methods adhere to modern standards (SAML 2.0, OIDC, OAuth).
- Enforce a strict "Identity First" policy for new software. Ensure all SaaS and on-premises applications are integrated into the SSO and IGA platforms before go-live.
- Map and govern granular permissions within cloud infrastructure (AWS/Azure/GCP) to ensure resources are not over-privileged.
- Manage the enterprise Multi-Factor Authentication (MFA) platform to enforce zerotrust access. Serve as the owner of the Public Key Infrastructure (PKI), managing internal Certificate Authorities (CAs) and the lifecycle of digital certificates.
- Manage and support the health of Active Directory (on-prem) and Microsoft Entra ID (Azure AD), ensuring high availability and secure replication.
- Ensure the "Joiner, Mover, Leaver" (JML) processes are optimized and automated to allow immediate access for new hires (Onboarding) and real-time revocation for terminations (Offboarding).
- Utilize PowerShell and API integrations to automate bulk tasks, reporting, and complex attribute syncing between systems.
- Work closely with the Security Operations Center to integrate IAM logs with the SIEM. Proactively tune alerts for identity-based threats such as impossible travel or credential theft.
- Oversee the PAM solution to secure and rotate credentials for high-value administrative accounts.
- Design and enforce strict policies for non-employee identities (contractors, vendors).
- Ensure external access is time-bound, sponsored by an internal manager, and subject to frequent review cycles.
Qualifications: Minimum:
- Bachelor's degree or an equivalent amount of experience.
- 5-7+ years of hands-on experience in Identity and Access Management or Systems Engineering.
- Proven experience administering modern IGA platforms (e.g., SailPoint, Saviynt, or similar SaaS-based governance tools).
- Integration Expertise: Experience connecting "disconnected" or legacy applications to identity platforms using JSON, CSV parsing, or automated UI interaction techniques.
- Deep expertise in Active Directory (Group Policy, DNS, Forest/Domain architecture) and Microsoft Entra ID/Azure AD.
- Strong proficiency in PowerShell or Python for automation and data manipulation.
- Experience managing PKI (Public Key Infrastructure) and Certificate Authorities.
- Experience working directly with auditors to prove compliance and explain "who has access to what and why."
- Ability to mentor junior administrators and ServiceDesk staff, raising the technical proficiency of the team.
- Strong analytical and problem-solving skills with the ability to make sound decisions under pressure.
- Strong ability to explain complex security risks to non-technical business stakeholders.
Preferred:
- Bachelor's degree in computer science, Information Systems, or equivalent experience.
- Experience with Cloud Infrastructure Entitlement Management (CIEM) concepts.
- Certifications: Microsoft Identity and Access Administrator Associate (SC-300).
Cogent Infotech is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment where everyone feels welcome and valued. We encourage applications from individuals of all backgrounds, identities, abilities, and experiences. If you're excited about this role but don't meet every requirement, we still encourage you to apply.
Join Us
At Cogent Infotech, your ideas matter. Join a purpose-driven organization that celebrates diversity, encourages collaboration, and invests in your future.
- ...Job Title Identity Governance Consultant About Us Perfict Global is a leading IT consulting services provider focused on providing... ...• Minimum of at least 10+ years of experience in IAM; 7+ years of experience in SailPoint and 5+ years of experience...Suggested
$130k - $178k
loanDepot is seeking a Senior Identity & Access Management Engineer to create solutions around Cyber Risk needs, focusing on the SailPoint... ...issues. The ideal candidate will have a minimum of 7 years IAM experience, coupled with a Bachelor’s Degree. The position offers...Suggested$130k - $178k
Position Summary As an Senior Identity & Access Management Engineer, you will be engineering solutions around Enterprise and Cloud Cyber... ...SailPoint with core systems like Workday and Azure AD. The Sr. IAM Engineer must have expertise in implementing SailPoint and possess...Suggested- ...a skilled Identity and Access Management Engineer, Lead to join our Information Security Department... ..., implementation, and management of IAM solutions, focusing on security and... ...lifecycle management, provisioning, and access governance concepts. Security and Compliance...Suggested
- Koch is looking for an Engineering Leader for Identity and Access Management (IAM) based in Plano, TX. The ideal candidate will lead a team of Identity Engineers responsible for secure identity capabilities across the enterprise. In this role, you will focus on building...Suggested
- Optimum in Plano, Texas is seeking a Manager of Identity Engineering responsible for evolving and scaling IAM and PAM platforms. This senior leadership role... ...leadership, with a strong understanding of access governance concepts. A Bachelor's degree in Computer Science or...
- ...Operationalization, and Remediation Programs. Work Required Lead engineering support for the Varonis SaaS rollout across enterprise... ...and infrastructure teams to ensure alignment with enterprise governance and standards. Overview The Varonis...For contractors
- Yoh Services LLC in McKinney, Texas is seeking a CIAM/IAM Engineer with extensive hands-on experience in Customer Identity and Access Management... ...and possess expertise in access management and identity governance. This hybrid position includes comprehensive benefits such as...
- ...internal automation capabilities across Identity & Access Management (IAM) and NRD-related platforms. We are seeking Software Developers... ...environments and deployment platforms Collaborate with engineers and developers to deliver required automation and tooling Create...Local area
$93.5k - $156.45k
PepsiCo is looking for a PKI Engineer based in Plano, TX. This hands-on role encompasses end-to-end ownership of enterprise PKI platforms, managing operational support, and driving PKI design and engineering initiatives. Candidates should possess a Bachelor's degree in...- ...Architect You have spent your career building security controls that scale, designing governance frameworks that actually get adopted, and translating complex risk into engineering requirements that teams can act on. This role was built for that kind of engineer. As...Immediate start
- ...suite of products enables planning, reporting, analytics and data governance on a single platform. We leverage your existing data platform... ...worldwide. Lumel Technologies, Inc. is seeking Software Engineer - Microsoft Power BI SDK (multiple positions) in Plano, TX to...Full timeWorldwide
$65 per hour
...client, a leading Consulting firm, is in need of an Amazon Connect Engineer for an initial 12 month contract onsite 5 days a week onsite in... ...Python within the customers AWS ecosystem, configuration of IAM, Lex, Lambda, KMS, S3, etc. Required Skills: At least...Hourly payContract work- ...Description: Significant experience in both Systems Engineering and Software development Proficient in at least one of the... ...manage Amazon Connect environments, including configuration of IAM, Lex, Lambda, KMS, S3, and Kinesis. Create and maintain CI...
$54 per hour
...Contract Period: 1 year Pay rate: $54/hr DOE Senior CloudOps Engineer with 6+ years of experience operating carrier-grade AWS and... ...infrastructure using Terraform and CloudFormation for VPCs, routing, IAM, and service deployments Implemented end-to-end observability...Contract work$86.8k - $165.2k
...and services for commercial, military and government customers worldwide. It comprises three... ...Participate in projects that require IAM team involvement Oversee production releases... ...a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 5 years...Contract workTemporary workWork experience placementWork at officeRemote workWorldwideFlexible hours$86.8k - $165.2k
...support of Active Directory support and governance tools Develop documentation, workflow... ...Participate in projects that require IAM team involvement Oversee production releases... ...a degree in Science, Technology, Engineering or Mathematics (STEM) and minimum 5 years...Temporary workWork experience placementFlexible hours$54 per hour
...AWS CloudOps Engineer Contract Company Description Working Location: Plano, TX Contract Period: 1 year Pay rate: $54/hr DOE... ...using Terraform and CloudFormation for VPCs, routing, IAM, and service deployments Implemented end-to-end observability...Contract work- ...Sr. OpenShift Engineer The ideal Sr. OpenShift Engineer candidate for this role has to be a true engineer. They have the experience to... ...or Green Card holders only. Desired Skills & Experience: ~ IAM and security policy, RBAC experience; IT Security....
- ...Sr. AWS Engineer Plano, Texas, United States About the Job Job Overview: We are seeking a very senior, highly tenured AWS... ...Strong background in: AWS services (EC2, Lambda, S3, VPC, IAM, CloudWatch, RDS, ECS/EKS, etc.) Migration tooling & frameworks...
- ...Ping Federate Engineer Plano, TX Job Description Software engineer is responsible for development of highly scalable and... ...Tertiary Skill Required Skills Must have strong IAM skillset with Ping Federate, Ping Access and Siteminder, App Security...
$111.53k - $146.74k
...Summary: The Active Directory & Identity Engineer will serve as the bridge between IT... ...for implementing next-generation Identity Governance (IGA) and lead our transition to a continuous... ...Lead the technical design for enterprise IAM solutions, ensuring all authentication...For contractorsImmediate start- Location: RJA Clinic: 2nd FLR BLK 700 Must be registered in DEXA either from ARRT or ISCD. Shift is Monday through Friday, 7a-330p Primary Purpose Responsible for performing routine to complex quality images in at least two different modalities on a routinely...Monday to FridayShift work
- ...consistent excellence, Optimum is for you! Job Summary The IAM & PAM Engineer will be responsible for ensuring that Optimum's Identity &... ...Identity and Access Management (IAM) Identity Access and Governance management - Preferably skills with SailPoint, Okta, and a...Work at officeLocal area
- ...environment. Privileged Access Management (PAM) Engineer Plano, TX Who we’re looking for We are... ...collaborate closely with Operations, Governance, and Engineering teams to ensure the... ...optimization of Identity and Access Management (IAM) services. You’ll drive innovation,...Work at officeRemote work
- ...Job Role: System Engineer Work Location: Plano, TX Job description: • Working as System Engineer, your passion for technology and... ...security groups • Knowledge of access key management and Azure AD/IAM policy provisioning • Azure or AWS Cloud Architect or Cloud...Work experience placement
- Location: Moody Outpatient Center Primary Purpose Responsible for performing routine to complex quality images in at least two different modalities in the Breast Center on a routinely scheduled basis. Minimum Specifications Education: ~ Must be a graduate ...
- ...professional with strong experience in Identity and Access Management (IAM) solutions. The ideal candidate will have hands-on experience... ...cross-functional collaboration Experience in oversight/governance-type responsibilities Day-to-Day Responsibilities...Immediate start
- ...Cloud Security Engineer 12 month assignment - Dallas TX Responsibilities Develop and improve security policies, procedure, and standards... ...Strong understanding of cloud security architecture, including IAM, networking and data protection Experience with Python,...
- ...~ Desired 5 years (+) related work experience, in a technical, critical environment operation. ~ Required: Operating Engineer or other applicable licenses and Universal CFC's license. ~ Ability to understand and interpret various design and construction...Daily paidFull timeFor contractorsWork experience placementShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IAM Governance Engineer. Be the first to apply!




