Senior Security Engineer, IAM
$130k - $195kRelativity
Posting Type
Remote
Job Overview
The Senior IAM Engineer is a technically authoritative leader who sets the direction for the enterprise IAM function and anchors identity as the primary control plane in a defense-in-depth program. This engineer owns the architecture, strategy, and operational maturity of AI-enabled identity technologies across the workforce, customer, and non-human (machine and agent) identity domains. Partnering with the Manager of Enterprise Security and leading cross-functional teams, the role reduces Relativity's identity attack surface, sets the standards others build against, mentors engineers, and elevates the organization's ability to detect and respond to identity-based threats.Job Description and Requirements
Role Responsibilites:
Continuous Adaptive Trust & Identity Architecture
Design identity architecture spanning workforce, machine, and workload identity, mapping layered controls to relevant frameworks as a core tier of defense-in-depth.
Design and advance continuous adaptive trust capabilities (continuous access evaluation (CAE), risk-based and phishing-resistant authentication, and signal-driven session revocation) as the maturation of the enterprise Zero Trust architecture.
Engineer and optimize ZTNA, least-privilege micro-segmentation, MFA/FIDO2, and JIT access across access paths.
Design and optimize SSO, federation, and authentication standards (SAML, OAuth 2.0, OIDC, SCIM, Kerberos, LDAP) across SaaS and multi-cloud environments.
Define and tune hardening standards using CIS Benchmarks/DISA STIGs with automated compliance validation.
Identity Lifecycle, Governance & PAM
Design and optimize identity lifecycle automation (joiner/mover/leaver) integrating HR systems, directories, and downstream applications.
Engineer identity governance and administration (IGA) capabilities: access reviews, certification campaigns, and segregation-of-duties enforcement.
Lead implementation and optimization of privileged access management (PAM) including credential vaulting, JIT elevation, and session monitoring.
Design governance for non-human identities (service accounts, workloads, secrets) with automated drift detection and policy-as-code enforcement.
Detection, Response & Threat Context
Lead integration of identity telemetry into the detection stack (SIEM/SOAR, UEBA) to detect credential abuse, privilege escalation, and lateral movement, reducing MTTD and MTTR.
Develop identity-focused IR playbooks covering account takeover, credential compromise, federation abuse, and session hijacking.
Apply threat intelligence context to prioritize identity exposure remediation and lead identity-focused purple team engagements.
AI DevSecOps & Collaboration
Design identity controls embedded in AI-augmented CI/CD pipelines (secret scanning, IaC identity policy, workload identity) with AI-generated fix recommendations surfaced in PR workflows.
Define and track identity KPIs: privileged access coverage, certification completion, authentication anomaly rates, and entitlement drift.
Partner with GRC on identity controls aligned to SOX, SOC 2, ISO 27001, HIPAA, GDPR, and CCPA, and support audits, certifications, e-discovery, and forensic integrity requirements.
Provide technical guidance and mentorship to Advanced and Engineer-level identity engineers.
Minimum qualifications:
Bachelor's in Computer Science, Information Security, or equivalent experience.
8+ years of hands-on experience in enterprise IAM or security engineering, with deep specialization in identity, authentication, and access domains, or a Master's degree in Cybersecurity or a relevant field with 6+ years of experience.
Expert, hands-on experience architecting and operating identity platforms across IdP/SSO (Okta, Entra ID/Azure AD, Ping), IGA (SailPoint, Saviynt), and PAM (CyberArk, BeyondTrust), with advanced knowledge of authentication and federation protocols (SAML, OIDC, OAuth 2.0, SCIM, LDAP, Kerberos).
Demonstrated experience leading identity threat detection, complex access investigations, and detection-engineering efforts, including designing automation for access enforcement and observability.
Working command of industry-standard security benchmarks and frameworks (MITRE, NIST 800-63, Zero Trust) and the ability to translate them into technical controls.
Proficiency in at least one scripting/automation language (Python, Bash, or PowerShell) applied to containerized services, CLI-based commands, and identity-specific use cases (API-driven provisioning, policy-as-code).
Proven ability to mentor engineers and communicate technical strategy and findings clearly to engineering peers, leadership, and non-technical stakeholders.
Preferred qualifications:
Experience securing SaaS, cloud-native, or globally distributed regulated environments.
Cloud IAM experience across AWS, Azure, or GCP, and securing non-human/workload identities at scale.
Experience with AI-augmented security and governance for AI-assisted and agentic identity workflows (UEBA, ML-based access-risk scoring, agentic identity).
Experience embedding identity and access controls (secrets management, workload identity, policy-as-code) into CI/CD pipelines and infrastructure-as-code environments.
Familiarity with legal technology, e-discovery, litigation holds, and digital forensics chain-of-custody requirements.
Experience leading compliance and audit engagements (SOX, SOC 2, ISO 27001, FedRAMP, HIPAA, GDPR, CCPA) from an identity and access control perspective.
Certifications such as CISSP, CISM, GCIH, GCFA, CCSP, AWS Security Specialty, SC-300, or AZ-500.
Relativity is a diverse workplace with different skills and life experiences—and we love and celebrate those differences. We believe that employees are happiest when they're empowered to be their full, authentic selves, regardless how you identify.
Benefit Highlights:
Comprehensive health, dental, and vision plans
Parental leave for primary and secondary caregivers
Flexible work arrangements
Two, week-long company breaks per year
Additional time off
Long-term incentive program
Training investment program
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.
Relativity is committed to competitive, fair, and equitable compensation practices.
This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.
The expected salary range for this role is between following values:
$130 000 and $195 000The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position.
Required Skills:
Access Management, Application Security, Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Information, Security Information and Event Management (SIEM), Security Operations, Vulnerability Management$2,500 per month
The Red Team - SrSecurity Engineer is responsible for enterprise information security systems and infrastructure platforms for WellSky. The scope of this job includes... ...experience in AWS, Azure, or GCP, including IAM abuse paths, misconfiguration exploitation, and cloud...SeniorFull timeWork experience placement- ...within your community About the Role We are seeking a Senior Cloud Security Engineer to drive the implementation and continuous improvement of... ...with CSPM/CNAPP platforms. ~ Strong understanding of: IAM and privilege escalation risks, cloud networking and...Senior
$119k - $169.4k
...Chicago, IL office. Role Overview The Network Security Team is seeking a Sr. Network and Firewall Security Engineer to secure and operate connectivity across global... ...the ability to communicate effectively with senior leadership—translating deep technical issues, risks...SeniorFull timeWork at officeImmediate startNight shift- Insight Global is seeking a Senior Business Analyst for hybrid work in Overland Park, KS, on a 12-month contract. You will lead IT security initiatives across the full SDLC, focusing on IAM, data security, and data loss prevention. You will gather requirements from technical...SeniorContract work
- ...Jconnect INC . Below is the requirement with my client. Please let me know if you are available for this role. Title: IAM Specialist / Cyber Security Analyst Location : Wichita, KS Duration: Fulltime JOB DESCRIPTION : Must Have...SuggestedFull timeImmediate startRelocation
- Security im Modern Workplace ist weit mehr als das Aktivieren einzelner Features. Sie entscheidet darüber, ob digitale Zusammenarbeit skalierbar... ...-Stakeholdern Sehr gutes Verständnis von Microsoft Entra ID (IAM, Conditional Access, Privileged Access) sowie der Microsoft...SeniorWork at officeRemote work
$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate... ...permissions and configuration issues within components like IAM and S3. Performing an in-depth security review of new Zoom...Work at officeRemote work- ...Description Foresite is seeking a highly motivated and passionate Security Engineer with a specialized focus on Google Security Operations (... ...for security Google Cloud Identity and Access Management (IAM) Google Cloud Armor ~ Certifications: Possess one or more...Temporary work
$119.6k - $215.4k
...customers? Is Network and Infrastructure Security your passion? Join our Enterprise... ...is a core part of the pre-sales solution engineering group. We collaborate across our global... ...helping to close the sale. As a Pre-Sales Senior Enterprise Security Architect, you will...SeniorWork experience placementWork at office- ...financial services organization to build an innovative AI-driven security capability that transforms how application vulnerabilities are... ...model behavior. ~ Strong software architecture and engineering experience. Preferred Qualifications ~ Application security...Senior
- A leading organization in cybersecurity is seeking a skilled Vulnerability Assessment Analyst and Penetration Tester 3 in Overland Park, Kansas. You will support technical vulnerability assessments and coordinate penetration testing activities. The ideal candidate will ...SeniorRemote job
$105.4k - $207.8k
...Deloitte’s Cyber practice as a Cyber SecOps Senior Consultant and help clients navigate an... ...landscape through scalable, resilient security operations solutions. In this hands-on... ...focused on Google SecOps, threat detection engineering, and automation. You will work with...SeniorLocal areaVisa sponsorship$106.3k - $234.6k
...products that meet the needs of our customers who are tackling some of the world’s biggest challenges. As a Principal Hardware Security Engineer you will be involved in ensuring that the compute hardware that is used in the Oracle Cloud Infrastructure meets the security...Temporary workFlexible hours$160.2k - $246.3k
...Remote - United States Full time JR-202613817 Job Description The Role : We're looking for a seasoned Security Software Engineer to join our IAM team (Identity Access Management) to help develop, architect and advance our suite of applications and services....Full timeFor contractorsLocal areaRemote workWork from homeRelocation packageFlexible hours- BTC - Business Technology Consulting AG sucht Berater im Security-Modern-Workplace-Umfeld. Sie führen Readiness-Checks durch, priorisieren Risiken und entwickeln Roadmaps zur Härtung von Identitäten, Endpunkten und Collaboration-Workloads. Sie beraten zur Ziel- und Referenzarchitektur...SeniorRemote job
- ...Security Engineer TENEX is an AI-native, automation-first, built-for-scale Managed Detection and Response (MDR) provider. We are a force multiplier for defenders, helping organizations enhance their cybersecurity posture through advanced threat detection, rapid response...
$40k
...mission-critical programs across national security, defense, and public service delivery.... ...national scale. The Junior Security Engineer supports 24x7 enterprise cybersecurity operations... ...activities. The role works under senior guidance to execute defined cyber...Contract workRemote work$195k
...derivatives, foreign exchange, digital assets, and securities. The organisation operates critical infrastructure across... ...across on-prem and hybrid environments Act as a senior escalation point, mentor junior engineers and help drive operational best practices...Full time- ...environment. We are seeking a Senior Information Security Analyst with deep experience in both... ...integrations. • Partner with IT and Engineering teams to remediate vulnerabilities, harden... ...of incident response, SIEM, EDR, IAM, and vulnerability management. •...SeniorFull timeTemporary workFlexible hours
- ...Electrical Engineering Services Worley is a global company of energy, chemicals and resources experts headquartered in Australia. We partner with our customers to deliver projects and create value across the life of their assets. We specialize in consulting, engineering...SeniorLocal area
- QTS Data Centers is seeking a Manager, Enterprise Identity and Data Protection to lead the IAM and DLP portfolio within QTS Technology Engineering & Operations. You will translate executive strategy into actionable roadmaps, manage budgets and vendor relationships, and...Senior
- ...Summary We are seeking a highly skilled and proactive Senior Cybersecurity Analyst to join our Security Operations Center (SOC) team. The ideal candidate... ...cross-functional teams (e.g., IT, Customer Success, Engineering) to promote and improve AI-driven security initiatives...SeniorFull timeWork experience placementRelocationNight shiftDay shift
- ...Cybersecurity, Computer Science, Information Technology, Engineering, Information Security, or related discipline , or equivalent relevant professional... ...controls. Experience with network, endpoint, IAM, vulnerability, cloud, and application security. Experience...
- ...a motivated IT Administrator to safeguard our IT infrastructure and customer environments. You'll design, implement, and optimize security controls while ensuring reliable operations across cloud and on-premises systems. The role emphasizes Google Workspace/GCP, identity...
- Overview We are seeking a full-time Cyber Security Vulnerability Analyst 2 at Garmin's U.S. headquarters in the Greater Kansas City area. In this role, you will be responsible for operating independently to configure and perform vulnerability scanning and assessments to...Full timeWork experience placement
$222k - $304.5k
...a Prisma AIRS business unit aligned Domain Consultant for AI Security, you provide technical expertise and guidance in securing customers... ...the customer, partnering directly with Product Management and Engineering to channel real-world field feedback into future releases of...SeniorFull timeRemote workVisa sponsorshipWork visa- Garmin International in the Kansas City area seeks a full-time Cyber Security Vulnerability Analyst 2 to operate independently configuring and performing vulnerability scans and assessments to identify and remediate risk across networks, systems, and applications. You...Full time
- An established industry player is seeking a Senior Database Engineer to lead cloud migration efforts and ensure robust database security. In this role, you will oversee the migration of databases to cloud platforms, implement security measures, and develop disaster recovery...Senior
- Webco Manufacturing is seeking a Senior MIG Welder/Fabricator to join our precision sheet metal team in Alto, GA. In this role, you... ...you will help mentor other welders and collaborate closely with engineering and production to deliver high-quality products on schedule.Senior
- ..., compliance-driven environments - Familiarity with network security concepts, including firewalls, access control, and traffic monitoring... ...any), external market and internal value analysis including seniority and merit systems, as well as internal pay alignment. Annual...Minimum wageContract workTemporary workWork experience placementRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Engineer, IAM. Be the first to apply!
- information technology security engineer Kansas
- senior cloud security engineer Kansas
- security software engineer Kansas
- security infrastructure engineer Kansas
- security engineer Kansas
- cloud security engineer Kansas
- network security engineer Kansas
- aws cloud security engineer Kansas
- endpoint security engineer Kansas
- IT security engineer Kansas





