Principal Identity Engineer - Cloud IAM / CIAM (Remote)
$170.9k - $227.9kFirst American Group
- Remote job
We are open to remote or hybrid candidates for this role. What You’ll Do Own the enterprise IAM strategy and target‑state architecture across Microsoft Entra, AWS, and Google Cloud (OCI a plus). Define secure, scalable identity patterns for workforce, partner, and customer access that align with security, risk, and compliance requirements. Design and operationalize a Zero Trust identity model with continuous verification, risk‑based access, and adaptive authentication. Reduce standing privilege through least privilege design, just‑in‑time (JIT) access, and standardized entitlement models. Hands‑on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments. Lead modernization efforts, including migration from hybrid Active Directory to Entra ID‑based authentication. Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms. Balance security, privacy, performance, and customer experience while enabling scalable enterprise integrations. Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence. Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness. Define and lead an enterprise IAM‑as‑Code program using Terraform and GitHub. Build reusable, versioned modules and establish PR‑based workflows with auditability, approvals, and security guardrails. Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, drift detection, and rollback strategies. Ensure reliable, auditable identity changes with operational monitoring and clear runbooks. Develop automation in Python, Bash, and JSON to scale identity operations and reduce manual risk. Support policy management, bulk changes, integrations, and identity‑related incident response and diagnostics. What You’ll Bring Deep hands‑on experience designing and operating identity platforms at scale in complex environments. Advanced expertise across Microsoft Entra ID, AWS IAM, and Google Cloud IAM, with OCI experience a plus. Proven ability to design cloud‑agnostic IAM models and implement them consistently across platforms. Strong background in IAM security architecture, governance, and risk‑based access controls. Hands‑on experience with least privilege design, JIT access, Zero Trust identity, and RBAC/ABAC models. Expert knowledge of OAuth 2.0, OpenID Connect, and SAML. Proven experience delivering enterprise‑scale SSO and MFA solutions. Demonstrated experience establishing IAM‑as‑Code using Terraform with GitHub‑based change control. Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design. Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs. (preferred) Ability to communicate complex identity concepts to both technical and non‑technical audiences. Strong influence, documentation, and execution skills at the principal or senior architect level. Relevant security or identity certifications such as CISSP or identity‑focused credentials. Bachelor’s degree or equivalent experience, with extensive background in enterprise security engineering. Pay Range $170,900.00 - $227,900.00 Annually Benefits Based on eligibility, First American offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and employee stock purchase plan. Legal Statement First American will consider for employment all qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act). First American intends to conduct a review of an applicant’s criminal history in connection with a conditional offer. First American reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to First American or its customers, administrating or facilitating financial transactions, and the ability to meet customer‑imposed criminal history requirements. California residents may learn more by viewing our Privacy Policy. County of Los Angeles Fair Chance Ordinance E‑Verify Participation Poster. #J-18808-Ljbffr First American
$174k - $312.18k
...Autodesk Inc. seeks a leader to drive Identity and Access Management engineering. The role requires strong... ...expertise, overseeing teams responsible for IAM platforms and services. Location options include San Francisco, CA, or remote within North America. This position...Remote work- ...Autodesk is seeking a Director of IAM Engineering to spearhead the company's identity management efforts. This role involves leading teams to develop secure... ...understanding of identity protocols like OAuth2 and SAML. A remote work option is available for candidates located...Remote work
- ...Autodesk is seeking a Director, IAM Engineering to lead the strategy for Identity and Access Management across various platforms. This role will define engineering... ...a robust leadership background. This position is remote-friendly within North America and based in San...Remote workWork at office
- ...Hiring: Security Engineer Contractor IAM & Cloud Identity (Remote | Europe | CEST) We are looking for a hands‑on Security Engineer specializing in IAM & Cloud Identity to help design, secure, and troubleshoot identity and access systems across AWS and SaaS platforms....Remote workContract workFor contractors
- ...company is seeking a Software Engineer for its Identity Infrastructure Engineering... ...critical systems across multiple cloud environments. Key responsibilities include developing IAM platform features, driving... ...allows for hybrid or remote work. #J-18808-Ljbffr OpenAIRemote job
- ...Principal Security Engineer The Principal Security Engineer... ...solutions to manage the identity lifecycle for a... ...customer-facing (CIAM) as appropriate.... ...Collaborate with IAM team to design... ...Directories, Cloud and on-prem based... ...Architect). Remote First Work Environment...Remote workPermanent employmentWork at office
- ...Cambium Learning Group is seeking a Principal Security Engineer who will architect scalable solutions for managing user identity across our platforms. You will define standards... ...Access Management. This opportunity supports a remote-first approach, allowing you to balance...Remote work
- ...A leading financial institution is seeking a Principal Software Engineer specializing in CIAM and Fraud. This remote position plays a pivotal role in building secure... ...experience in software development, especially in identity and fraud technologies. Responsibilities...Remote work
- First American is seeking a IAM Strategy Lead based in California, with options for remote or hybrid work. This role involves owning... ...IAM strategy and designing secure identity frameworks across Microsoft Entra, AWS, and Google Cloud. The ideal candidate will have deep...Remote work
$180k - $250k
...Principal Engineer Xsolla is seeking a Principal Engineer with deep expertise in Identity and Golang backend development to lead the evolution of our authentication and authorization... ...across services. Integrate modern IAM standards and protocols (OAuth2, OIDC, SCIM...Remote workFlexible hours- ...seeking a Mid-to-Senior level Software Engineer to support their Identity & Access Management team. The ideal... ...software development, particularly with IAM protocols such as SAML and OAuth.... ...Candidates can work either on-site or remotely, and must be eligible to work in the...Remote job
$152.4k - $251.6k
...Cancer Center (MSK) is seeking a Principal Cyber Security Engineer for Identity and Access Management (IAM). This role serves as a... ...background in SAML, OAuth, and cloud architectures. The position allows... ...for hybrid work—primarily remote with occasional visits to NYC....Remote job- ...the Pleasanton, CA area to place a Principal Cloud Security Engineer for a high-visibility global security... ...deployment. This is a primarily remote engagement with periodic onsite... ...network infrastructure (SD-WAN, DNS, identity/IAM integrations) SASE and SSE frameworks...Remote workPermanent employmentContract work
- ...software solutions for AI, cloud, network, and... ...currently looking for a Principal Support Engineer (L3, Edge Cloud). Job... ...databases) Security (IAM, encryption, best... ...hours and hybrid or remote options, depending on... ...orientation, age, gender identity, gender expression, national...Remote workMonday to FridayFlexible hours
$75 - $90 per hour
...organization to hire a Principal Security Engineer focused on Identity and Access Management as... ...identity systems that support a cloud-native, distributed... ...goes beyond traditional IAM. The focus is on evolving... ...with a hybrid schedule, but remote candidates will be...Remote workHourly payContract workWork at officeLocal areaShift work$152.4k - $251.6k
...Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves... ...~ Advanced experience with cloud identity architectures in Azure... ...~ Location:Hybrid: 99% remote with flexibility to come to NYC...Remote workLive inMonday to Friday$152.4k - $251.6k
...Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves as a... ...Risk Advanced experience with cloud identity architectures in Azure... ...Friday Location: Hybrid: 99% remote with flexibility to come to NYC...Remote workLive inMonday to Friday- Catapult Federal Services is looking for an IAM Operations Specialist to support identity lifecycle management and ensure secure access to systems. This remote role requires a strong understanding of identity management, hands-on experience with Active Directory, and the...Remote job
- ...is the first AI-native identity security platform that... ...a Director of Security Engineering to lead and scale our security... ...architecture across cloud infrastructure,... ...Experience at an identity, IAM, or security vendor Background... ..., San Francisco, or remote. Comprehensive benefits...Remote workFlexible hours
$270k - $300k
...will lead strategic identity security... ...internal identity and CIAM matters across a range... ...range of on-premises, cloud-hosted, and third-... ...technical engineer who can execute at... ...as the engineering principal on implementing secure... ...Location: Remote -Houston, TX If...Remote workDaily paidLocal area$212k - $286k
...Staff Software Engineer, Cloud Identity United States - Remote Opportunity About Us Temporal is an open source programming model that can simplify... ...platform teams to ship secure-by-default patterns, define IAM lifecycle and audit strategies, and shape the...Remote workFull timeTemporary workPart timeWork from homeHome office- MAXAR TECHNOLOGIES, INC. is seeking an experienced Identity and Access Management (IAM) Engineer for a remote role. This position involves leading the in-sourcing of IAM services and the design of governance aligned with cybersecurity frameworks. The ideal candidate has...Remote job
$137.6k - $189.2k
...experienced and passionate Software Engineering Manager to lead our Identity and Access Management (IAM) team. This critical role... ...manipulation).Experience with cloud identity platforms (e.g., AWS IAM... ...throughout the work day.Environment – remote, work-from-home 100% of the...Remote workWork from homeNight shift- ...Description: ~10+ years of experience in Identity and Access Management or related fields. ~ Strong knowledge of IAM principles, technologies, and best practices.... ...: ~ Certified Identity and Access Manager (CIAM) Job Responsibilities: IAM...Remote work
- A financial institution is seeking a Principal Software Engineer specializing in customer identity and fraud technology. This remote role involves setting technical direction and ensuring secure, resilient, and fraud-aware digital banking experiences. The ideal candidate...Remote work
$118k - $196k
...Do : We are seeking a highly skilled and experienced Identity & Cloud Engineer with extensive expertise in multiple cloud environments, including... ...enhance cloud security. Identity and Access Management (IAM) Design and manage IAM policies and roles to ensure...Remote workTemporary workWork experience placementInternshipWork at officeLocal areaFlexible hours$174k - $312.18k
...Overview Autodesk's Enterprise Identity Services team is looking for a Director, IAM Engineering to lead the strategy and... ...requirements . This role is remote-friendly within North America.... ...non-human identities across cloud, CI CD, platform, and runtime environments...Remote workPermanent employmentFor contractorsWork at office- ModMed is seeking a Senior Software Engineer to architect, design, and implement identity solutions. This role will focus on the security and scalability of our... ...collaboratively with cross-functional teams to integrate IAM services seamlessly across our products. The ideal...Remote work2 days per week
$144.2k - $288.4k
...We are looking for a GCP Principal Engineer to lead our Cloud Engineering team, owning the... ...posture on GCP — Workload Identity Federation, Binary Authorization, Secret Manager, IAM least-privilege design, and... ...Automation: Terraform (modules, remote state, OPA), Cloud Build,...Remote workHourly payFull timeTemporary work$159k - $272k
...Principal of Cloud Infrastructure & Engineering Apply ( locations Owings Mills, MD Baltimore... ...use your knowledge of IAM and security systems to... ...Colorado, Washington and remote workers$175,000.00 - $299... ...sexual orientation, gender identity or expression,...Remote workFull timeLocal area3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal Identity Engineer - Cloud IAM / CIAM (Remote). Be the first to apply!
- principal infrastructure engineer California, MO
- civil engineer project manager California, MO
- principal data engineer California, MO
- chief engineer California, MO
- principal developer California, MO
- director data engineering California, MO
- general engineer California, MO
- senior chief engineer California, MO
- principal network engineer California, MO
- data center chief engineer California, MO

