Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Identity Access Management Engineer

$158k - $279k

Roku, Building C

About role Roku is seeking a senior-level Identity Engineer to enhance its Zero‑Trust architecture, drive standardization initiatives, and optimize its Microsoft‑centric identity platform for a geographically distributed workforce. The ideal candidate has hands‑on experience in identity and access management (IAM) and securing cloud environments within the Microsoft ecosystem, with deep expertise in Azure Entra ID. Equally important is a strong automation mindset—designing, scripting, and building repeatable workflows. The role also requires the ability to communicate complex technical concepts clearly to both technical and non‑technical audiences. For New York Only – the estimated annual salary for this position is between $158,000 and $279,000. Compensation packages are based on factors unique to each candidate, including but not limited to skill set, certifications, and specific geographical location. This role is eligible for health insurance, equity awards, life insurance, disability benefits, parental leave, wellness benefits, and paid time off. What you’ll be doing Lead enterprise‑wide IAM standardization, including identity lifecycle, access governance, and policy enforcement across global regions. Drive automation across IAM to streamline administration and deliver a smoother user experience. Support enterprise applications onboarding into Azure Entra ID, including SSO, Conditional Access, and role‑based access control (RBAC). Enhance privileged access management and implement scalable monitoring, alerting, and auditability solutions to support a secure, geographically distributed workforce. Collaborate with IT, Networking, and Security teams to troubleshoot identity‑related issues and support global infrastructure initiatives. Advance Zero Trust Identity Fabric principles like continuous verification, least‑privilege access, and identity‑aware policy enforcement across users, devices, workloads, and non‑human identities. Build identity automation with a DevOps mindset, writing scripts, developing pipelines, and engineering tooling from scratch rather than just configuring them. We’re excited if you have 8+ years of hands‑on experience with identity and access management and automating cloud technologies, particularly within the Microsoft ecosystem. Strong analytical skills and attention to detail, with the ability to troubleshoot complex infrastructure and identity‑related issues. Excellent communication skills, with the ability to clearly explain technical concepts to both technical and non‑technical stakeholders. Deep experience with Microsoft Entra ID, including Conditional Access, Identity Governance, and Privileged Identity Management. Familiarity with Microsoft 365 services: Exchange Online, Defender, Purview, Sentinel, Intune, and related platforms. Automation and scripting skills using PowerShell, Azure CLI, and Microsoft Graph API; working knowledge of Azure services such as Function Apps and Logic Apps. Experience in onboarding and managing enterprise applications in Azure Entra ID. Advanced knowledge of Azure Single Sign‑On (SSO) login methods, including OAuth2, OpenID Connect, and SAML, and their integration with enterprise applications. Knowledge of privileged access tools (Azure PIM, CyberArk, etc.), secrets management (HashiCorp or Azure Key Vault), and workload identity patterns SPIFEE & SPIRE. Familiarity with NHI governance concepts for service accounts and AI agents, and exposure to OPA / Rego or similar policy‑as‑code frameworks. Good to have familiarity with Microsoft Purview for DLP and data classification. Strong understanding of multi‑factor authentication and FIDO2. Familiarity with IT security frameworks and compliance standards. Knowledge of logging, monitoring, and alerting practices for identity and access events. Basic understanding of email security and DNS. Experience with backup and recovery strategies for identity‑related services. Understanding of Zero Trust Architecture principles. Familiarity with Jira and Confluence. B.S. in Computer Science, Information Technology, Engineering, or equivalent experience. Our Hybrid Work Approach Roku fosters an inclusive and collaborative environment where teams work in the office Monday through Thursday. Fridays are flexible for remote work except for employees whose roles are required to be in the office five days a week or employees who are in offices with a five‑day in‑office policy. Benefits Roku is committed to offering a diverse range of benefits as part of our compensation package to support our employees and their families. Our comprehensive benefits include global access to mental health and financial wellness support and resources. Local benefits include statutory and voluntary benefits which may include healthcare (medical, dental, and vision), life, accident, disability, commuter, and retirement options (401(k)/pension). Employees can take time off work for vacation and other personal reasons to balance their evolving work‑and‑life needs. Please note that not every benefit is available in all locations or for every role. For details specific to your location, consult with your recruiter. Accommodations Roku welcomes applicants of all backgrounds and provides reasonable accommodations and adjustments in accordance with applicable law. If you require reasonable accommodation at any point in the hiring process, please direct your inquiries to View email address on click.appcast.io. EEO Statement / Privacy Notice By providing your information, you acknowledge that you want Roku to contact you about job roles, that you have read Roku’s Applicant Privacy Notice, and understand that Roku will use your information as described in that notice. If you do not wish to receive any communications from Roku regarding this role or similar roles in the future, you may unsubscribe at any time by emailing View email address on click.appcast.io. #J-18808-Ljbffr

Vacancy posted 18 hours ago
Similar jobs that could be interesting for youBased on the Senior Identity Access Management Engineer in New York, NY vacancy
  • $160k - $240k

     ...A global financial services company in New York is seeking a Senior Software Engineer for its Identity & Privileged Access Management team. The ideal candidate will design scalable identity and access control services and engineer automation for managing credentials across... 
    Senior

    Bloomberg

    New York, NY
    1 day ago
  •  ...A top-tier hedge fund is seeking a Senior IAM Engineer to lead the design and implementation of identity access management systems. This onsite role in New York offers a chance to influence critical security infrastructures and work with cutting-edge technologies. Ideal... 
    Senior

    Estreetsecurity

    New York, NY
    1 day ago
  •  ...A technology company in the United States is seeking a SailPoint Subject Matter Expert to implement identity and access management solutions. The role involves developing integrations, ensuring compliance with security standards, and creating technical documentation.... 
    Senior

    Interactive Process Technology LLC

    New York, NY
    4 days ago
  •  ...MaziCTools is seeking a Senior Identity & Access Management (IAM) Security Engineer to implement security principles and support the United CIAM platform. This senior-level position collaborates with development teams and ensures integration of secure identity solutions... 
    Senior

    MaziCTools

    New York, NY
    4 days ago
  •  ...Hobbsnews is seeking a Principal Technical Analyst – Customer Identity and Access Management to design and implement scalable CIAM solutions in Georgia, USA. This role is vital for ensuring secure digital customer experiences by controlling authentication and authorization... 
    Senior

    Hobbsnews

    New York, NY
    4 days ago
  •  ...Senior Developer – Identity & Access Management (IAM) We are seeking an experienced Senior IAM Developer to design, build, and automate identity solutions...  ...-on developer with genuine coding instincts who can engineer scalable identity capabilities, build automation for... 
    Senior

    IS3 Solutions

    Jersey City, NJ
    3 days ago
  •  ...Senior Identity and Access Management Opening for a Senior Identity and Access Management Professional in the NY/NJ area. The successful candidate should have a strong track record of delivering IAM and Entitlements solutions from inception to deployment in the Production... 
    Senior
    Permanent employment
    Full time
    H1b

    SonSoft

    Jersey City, NJ
    3 days ago
  • $63.91 - $108.82 per hour

     ...Description Senior Security Engineer (IS – Identity & Access Management) is a role located in Enterprise Security & Infrastructure. We are seeking a highly motivated Senior Security Engineer with a strong passion for Identity and Access Management (IAM) to join our Enterprise... 
    Senior
    Remote work
    Weekend work

    Providence Health Plan Group

    New York, NY
    3 days ago
  • $124k - $177k

     ...Identity & Access Management Developer Location Designation: Hybrid - 3 days per quarter As part of Technology, you'll have the...  ...The Identity & Access Management (IAM) Developer is a senior, hands-on engineering role responsible for designing, developing, and supporting... 
    Senior

    New York Life

    New York, NY
    1 day ago
  •  ...having a team of great operators, engineers, and marketers working for...  ...depends on secure, reliable access to the right tools at the...  ...building the next generation of our identity and access platform, and we...  ...over login, session management, permissions, roles, service-... 
    Senior
    Work at office
    Local area
    Remote work

    Owner

    New York, NY
    2 days ago
  •  ...A global cybersecurity company is seeking a Senior Software Development Engineer in Test (SDET) to join their Privileged Access Management team. This role focuses on designing and maintaining automation frameworks for security-sensitive workflows and collaborating closely... 
    Senior
    Remote work

    Keeper Security

    New York, NY
    4 days ago
  • $160k - $240k

     ...Senior Software Engineer - Identity & Privileged Access Management Location: New York Business Area: Engineering and CTO Ref #: 10047610 Description & Requirements Our Team: Bloomberg’s Platform Security organization is responsible for securing the infrastructure, systems... 
    Senior
    Temporary work
    For contractors
    Work experience placement
    Remote work

    Bloomberg

    New York, NY
    17 hours ago
  • $148.7k - $240.53k

     ...About the role: We are looking for a product manager to join the team building out enterprise-grade identity and access management (IAM) product, integrations, and...  ..., bridging between our customers and our engineering team. You'll translate the IAM needs of enterprise... 
    Senior
    Temporary work
    Remote work

    Palo Alto Networks

    New York, NY
    3 days ago
  •  ...A leading technology solutions provider is seeking an InfoSec Engineer IV to define and support identity and access management solutions. This remote role requires expertise in Ping Identity technologies and substantial experience in IT security. The ideal candidate will... 
    Senior
    Remote work

    Apex Systems

    Brooklyn, NY
    2 days ago
  • $153k - $186k

     ...You’ll Work With We are seeking a Senior IAM Consultant with deep expertise in Identity Governance & Administration (IGA)...  .... Develop and implement access certification campaigns, role-based...  ...leadership on identity lifecycle management, provisioning/deprovisioning, and... 
    Senior
    Temporary work
    Local area

    Slalom

    New York, NY
    2 days ago
  •  ...are looking for a Principal Technical Analyst – Customer Identity and Access Management to lead the design, implementation, and optimization of...  ...digital platforms. Partners with business, product, and engineering teams to deliver user‑centric identity solutions aligned... 
    Work experience placement

    Hobbsnews

    New York, NY
    4 days ago
  •  ...A leading telehealth solutions provider in the United States seeks a Staff IAM Engineer to lead their Identity & Access Management program. This position involves mentoring a team, designing IAM solutions, and ensuring compliance with healthcare regulations like HIPAA.... 
    Senior

    OpenLoop Health, Inc.

    New York, NY
    4 days ago
  •  ...top-tier hedge fund is seeking a highly skilled Senior IAM Engineer to strategically shape the future of its identity and access management infrastructure. This permanent position , based onsite in New York, NY , offers a high-impact engineering role at the crucial intersection... 
    Senior
    Permanent employment

    Estreetsecurity

    New York, NY
    17 hours ago
  •  ...application • Collaborate with the Cloud Engineering, Cloud Security, and Identity Teams on the administration and engineering of Role-Based Access Controls and processes • Help design...  ...deployment activities, configuration management, supporting systems and business... 
    Senior

    Yochana

    Jersey City, NJ
    3 days ago
  •  ...Job Overview The Principal Security Engineer, you will be the principal technical leader...  ...will architect scalable solutions to manage the identity lifecycle for a diverse user base (Employees...  ...-facing (CIAM) as appropriate. Secure Access & Authentication: Architect secure,... 
    Permanent employment
    Work at office
    Remote work

    Cambium Learning Group

    New York, NY
    3 days ago
  • $152.4k - $251.6k

     ...our mission at MSK and around the globe. Exciting Opportunity at MSK: Principal Cyber Security Engineer - Identity Access Management (IAM) At MSK, this role serves as a senior technical authority for Identity and Access Management, shaping secure, scalable identity... 
    Live in
    Remote work
    Monday to Friday

    ISACA

    New York, NY
    1 day ago
  • $152.4k - $251.6k

     ...our mission at MSK and around the globe. Exciting Opportunity at MSK: Principal Cyber Security Engineer – Identity Access Management (IAM) At MSK, this role serves as a senior technical authority for Identity and Access Management, shaping secure, scalable identity... 
    Live in
    Remote work
    Monday to Friday

    Memorial Sloan Kettering

    New York, NY
    1 day ago
  •  ...Learning Group is seeking a Principal Security Engineer who will architect scalable solutions for managing user identity across our platforms. You will define standards...  ...experience in IT/Security with a focus on Identity and Access Management. This opportunity supports a remote-... 
    Remote work

    Cambium Learning Group

    New York, NY
    3 days ago
  • $124.8k - $156k

     ...& Innovations group as a Senior Agentic Systems Engineer to build Artificial Intelligence...  ...agent delegation, session management, and streaming interfaces...  ..., and tenant‑aware data access Deploy and operate...  ...religion, gender, gender identity or expression, sexual orientation... 
    Senior
    Immediate start
    Remote work
    Worldwide

    Natera

    New York, NY
    4 days ago
  • DESCRIPTION We are looking for a talented Principal Technical Engineer - Identity & Access Management to join our team specializing in Systems/Information Technology in Atlanta, GA. In this role, you will make an impact in the following ways: Drive Strategic Cybersecurity... 
    For contractors
    Work experience placement
    Relocation package

    Cummins Inc.

    New York, NY
    4 days ago
  • $190.4k - $238k

     ...AI-powered data security and management. Aided by an extensive ecosystem...  ...technically strong Sr. Sales Engineer to support SLED sales...  ...immutable storage, encryption, and access controls. Familiarity with...  ...ancestry, age, disability, gender identity or expression, marital status... 
    Senior
    Hourly pay
    Full time
    Work at office
    2 days per week
    3 days per week

    Cerebras

    New York, NY
    1 day ago
  •  ...experiences, and have the flexibility and access to constantly find new areas of...  .... KPMG is currently seeking a Senior Associate, SailPoint Identity Governance Engineer to join our Advisory Services...  ...(for example: Oracle Identity Manager, SailPoint Identity (IIQ)) to SailPoint... 
    Senior
    H1b
    Local area

    KPMG

    New York, NY
    2 days ago
  • $118k - $175.23k

     ...motivated, and goal-oriented Senior Electrical Engineer to join our Northeast...  ...communications, SCADA interfaces, CCTV, access control) Coordinate...  ..., design, and construction management; including active...  .../Sexual Orientation/Gender Identity/National Origin/Disability... 
    Senior
    For contractors
    For subcontractor
    Work at office
    Local area
    Flexible hours

    WSP

    New York, NY
    1 day ago
  • $85k - $130k

     ...Role Matters: This is a senior-level position based...  ...approaches to energy management, positioning SWA as leaders...  ...bachelor’s degree in engineering field or related...  ...including pregnancy, gender identity, and sexual...  ...sustainable, energy-efficient, accessible, healthy, and... 
    Senior
    Full time
    H1b
    Local area
    Visa sponsorship
    Work visa
    Flexible hours
    Night shift
    3 days per week

    Steven Winter Associates

    New York, NY
    11 days ago
  •  ...while also performing asset management for software and hardware.IT...  ...responsible for end user compute engineering, virtualization, and real-...  ...(HSA)* 401k savings plan* Access to wages before pay day with...  ...sexual orientation, gender identity/expression, pregnancy, veteran... 
    Senior
    Temporary work
    Work experience placement
    Local area
    Immediate start
    Flexible hours
    Night shift

    Cardinal Health

    Brooklyn, NY
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Identity Access Management Engineer. Be the first to apply!