Identity Security Posture Management (ISPM) Specialist
$89k - $148.1kKemper
Location(s)
Dallas, Texas, Jacksonville, Florida, P&C-Butterfield Road-Downers Grove-IL-AAC
Details
Kemper is one of the nation’s leading specialized insurers. Our success is a direct reflection of the talented and diverse people who make a positive difference in the lives of our customers every day. We believe a high-performing culture, valuable opportunities for personal development and professional challenge, and a healthy work-life balance can be highly motivating and productive. Kemper’s products and services are making a real difference to our customers, who have unique and evolving needs. By joining our team, you are helping to provide an experience to our stakeholders that delivers on our promises.
Manages and matures our identity security posture—executes continuously monitoring and remediating identity risk and access exposure across IAM/IGA/PAM—reducing breach likelihood and audit/compliance risk. The Identity Security Posture Management (ISPM) Specialist is responsible for improving the organization’s identity security posture by continuously identifying, prioritizing, and driving remediation of identity-related exposures across the enterprise. This role partners with Account Operations, IGA, PAM, Cybersecurity Operations, IT infrastructure, and application owners to reduce identity attack paths, strengthen privileged access controls, and produce measurable risk reduction aligned to regulatory and audit expectations
Responsibilities:
Identity posture monitoring & exposure management
Operate and mature the Identity Security Posture Management capability (ISPM) to discover identity exposures across Identity Providers (e.g., Entra ID/AD), SaaS applications, cloud environments, and critical business systems.
Identify and track identity security issues such as excessive privileges, dormant accounts, misconfigured admin roles, weak authentication enforcement, privilege escalation paths, and risky third-party access.
Maintain an Identity Exposure Register with severity, business impact, owner, remediation plan, and due dates; enforce SLA-based remediation for critical findings.
Risk prioritization & remediation orchestration
Triage and prioritize findings using risk-based methods (e.g., likelihood/impact, exploitability, business criticality).
Coordinate remediation with system owners: role redesign, least privilege enforcement, MFA coverage improvements, privileged role controls, conditional access, and entitlement clean-up.
Drive reduction of inappropriate combinations and segmentation-of-duties issues where relevant.
Controls, audit, and compliance enablement
Provide evidence to support identity-related controls (e.g., privileged access governance, MFA enforcement, access review/UAR posture, joiner-mover-leaver quality, service account governance).
Produce audit-ready reporting and artifacts for internal audit and external auditors (SOX/ITGC/GITC reliance, regulator exams).
Ensure posture findings are connected to policy/standard requirements and tracked through governance workflows.
Telemetry, metrics, and executive reporting
Build and maintain ISPM dashboards and KRIs (e.g., privileged role sprawl, stale privileged accounts, MFA coverage, high-risk entitlements, remediation cycle time).
Present posture trends and remediation progress to Identity Security & Governance leadership and stakeholders (CISO org, IT, app owners).
Integration & automation
Partner with engineering teams to integrate ISPM insights with ticketing/workflow tools (e.g., Axonius, ServiceNow/Jira), SIEM/SOAR, IGA (e.g., SailPoint), and PAM (e.g., CyberArk).
Automate repeatable posture checks where possible (APIs, scripts, scheduled reports), and document repeatable playbooks/runbooks.
Collaboration & stakeholder enablement
Act as a trusted advisor to application and infrastructure teams on identity security best practices (least privilege, role design, privileged access, authentication hardening).
Contribute to identity governance operating procedures, playbooks, and standard updates.
Job Requirements
Bachelor's degree or an equivalent mix of education and experience in Information Cyber Security, Risk Management and Governance Risk and Compliance.
7+ years of relevant experience in third-party cyber and data risk management and conducting third-party cyber and data risk assessments.
Experience with reviewing and negotiating cyber and data security contract language.
Expert knowledge of cyber and data security and risk disciplines and practices.
Advanced knowledge of technology controls, security, and risk issues.
Strong eye for detail and ability to successfully manage and conduct third-party cyber and data assessments, gather evidence, and coordinate risk remediation responses.
A team player with strong collaboration skills and the ability to work with minimal supervision.
Ability to leverage strong verbal, written communication skills to collaborate with cross-functional teams.
Strong analytical and problem-solving skills capable of managing projects that drive business objectives.
Demonstrated ability to participate in complex, comprehensive or large projects and initiatives.
Ability to serve as a lead expert resource in technology controls and information security for project teams, the business, organization, and outside vendors.
5+ years in identity security, IAM/IGA, security operations, or security risk management with hands-on exposure to identity platforms.
Working knowledge of identity concepts: authentication, authorization, RBAC/ABAC, privileged access, service accounts, identity lifecycle, entitlement models, and access reviews.
Experience interpreting identity-related findings and coordinating remediation with technical and business stakeholders.
Familiarity with at least two of the following areas: Entra ID/Azure AD, Active Directory, SailPoint (or equivalent IGA), CyberArk (or equivalent PAM), AWS/Azure identity constructs, common SaaS admin models.
Strong documentation and reporting skills (evidence packs, dashboards, executive-ready summaries).
Preferred Qualifications
Experience with ISPM/identity exposure tooling (identity threat detection, entitlement risk, posture management, attack path analysis).
Experience in regulated industries (insurance, financial services, healthcare) and audit support (SOX/ITGC, NYDFS, GLBA).Practical automation skills (PowerShell, Python, KQL, APIs) to streamline posture checks and reporting.
Certifications (nice to have): Security+, SSCP, CISSP (or associate), GIAC IAM-related, Microsoft/AWS security certifications.
Key Competencies
Risk-based prioritization; analytical thinking; stakeholder management
Strong written communication; evidence discipline
Operational rigor (tracking, SLAs, follow-through)
Ability to translate technical identity findings into business risk
This position is a hybrid role that sits in either our Downers Grove, IL, Dallas, TX or Jacksonville, FL office locations
The base range for this position is $89,000 to $148,100. When determining candidate offers, we consider experience, skills, education, certifications, and geographic location among other factors. This job is eligible for an annual discretionary bonus, equity, and Kemper benefits (Medical, Dental, Vision, PTO, 401k, etc.)
Kemper is proud to be an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, disability status or any other status protected by the laws or regulations in the locations where we operate. We are committed to supporting diversity and equality across our organization and we work diligently to maintain a workplace free from discrimination.
Kemper does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Kemper and Kemper will not be obligated to pay a placement fee.
Kemper will never request personal information, such as your social security number or banking information, via text or email. Additionally, Kemper does not use external messaging applications like WireApp or Skype to communicate with candidates. If you receive such a message, delete it.
#LI-AK
Kemper at a Glance
The Kemper family of companies is one of the nation’s leading specialized insurers. With approximately $12 billion in assets, Kemper is improving the world of insurance by providing affordable and easy-to-use personalized solutions to individuals, families and businesses through its Kemper Auto and Kemper Life brands. Kemper serves over 4.5 million policies, is represented by approximately 24,000 agents and brokers, and has approximately 7,300 associates dedicated to meeting the ever-changing needs of its customers.
*Alliance United Insurance Company is not rated.
We value diversity and strive to be an employer of choice. An Equal Opportunity Employer, M/F/D/V
Our employees enjoy great benefits:
• Qualify for your choice of health and dental plans within your first month.
• Save for your future with robust 401(k) match, Health Spending Accounts and various retirement plans.
• Learn and Grow with our Tuition Assistance Program, paid certifications and continuing education programs.
• Contribute to your community through United Way and volunteer programs.
• Balance your life with generous paid time off and business casual dress.
• Get employee discounts for shopping, dining and travel through Kemper Perks.
- A leading insurance company is seeking an Identity Security Posture Management Specialist in Dallas, TX. This role focuses on managing and maturing the identity security posture, monitoring risks, and collaborating with teams to ensure compliance with regulations. The ideal...Suggested
- ...Client: Infinite Computer Solutions Bill rate: $54 Pay rate: $45 Location: Dallas TX Recruitment Manager: Sidhartha Arepally Job Title: Security Consultant - Identity & Access Management Services Required skills: ISVG, ISVA, ISDI, OKTA, Scripting The practitioner must...SuggestedWork experience placement
- ...as we are, join our team. KPMG is currently seeking a Manager, Security Posture Management Innovation Engineer to join our Global... ...identification, prioritization, remediation) and understanding of identity lifecycle management and data lifecycle management Understanding...SuggestedWork experience placementH1bLocal area
- KPMG is currently seeking a Manager, Security Posture Management Innovation Engineer to join our Global Technology & Group which is part of KPMG... ..., prioritization, remediation) and understanding of identity lifecycle management and data lifecycle management Understanding...SuggestedWork experience placementH1bLocal area
$105k - $160k
...Azure Security Engineer Work with a top 20 CPA and advisory firm... ...and help shape the security posture of both public and private sector... ...knowledge of others: Identity & Access: Entra ID, Conditional... ...for Cloud, security posture management Automation & Scripting: KQL...SuggestedFull timeWork at officeLocal areaRemote workFlexible hours- ...contribute to the company’s success. As a Security Expert within PNC's Security Ops... ...TX or Houston, TX or Phoenix, AZ. Identity & Access Management (IAM) Governance Security Expert Lead... ...tools needed to improve overall security posture of the organization. Provides unique...Full timeTemporary workPart timeWork experience placementWork at office
- ...senior engineers and analysts to help ensure reliable SaaS security visibility and contribute to automation and platform improvements... .... Preferred Qualifications Exposure to SaaS Security Posture Management, cloud security, or application security. Basic knowledge of...
$128.1k - $239.6k
...EY Infosec is seeking a Cloud Security consultant with expertise in... ...and compliance, vulnerability management, and overall risk reduction... ...such as SAST tools, DAST tools, Identity and Access Management (IAM),... .../advance our cloud security posture using the Wiz CNAPP across the...Summer holidayLocal areaFlexible hoursShift work$14.55 - $20.4 per hour
...Maintains positive relationships with Store Management. Conducts apprehensions within... ...support business needs ~0-2 years retail or security experience Benefits include: Associate... ...origin, age, disability, gender identity and expression, marital or military status...Hourly payTemporary workLocal areaHome officeFlexible hours- Vanguard is seeking an Associate Developer in Dallas to support the development and maintenance of SaaS integrations. This role involves working closely with senior engineers to enhance platform performance and reliability. The ideal candidate will have 1-3 years of experience...
- ...pounds; able to work indoors or outdoors. Able to assume low‑level postures to allow physical and visual contact with children, see and... ..., marital status, military or veteran status, gender identity or expression, or any other basis protected by local, state, or...Local area
$86.02k - $117.71k
..., weekends and holidays. Must be able to manage his or her rest in order to be prepared for... ..., staying in hotels. Must be able to secure appropriate airport authority and/or US Customs... ...and Long-Term Disability Legal Plan Identity Theft Protection Plans Pet Insurance Family...Temporary workFlexible hoursNight shiftWeekend workWeekday work$85k - $123.3k
...consultants, sustainability specialists, and technologists are passionate... .... Your Opportunity The Security Designer in the Mission... ...Senior Consultant or Project Manager. Understands and identifies project... ..., sexual orientation, gender identity or gender expression. We...Full timeTemporary workPart timeCasual workLocal areaFlexible hours- ...Security Specialist (with Azure exp.) Addison Texas (Hybrid role) Visa open (W2 candidates)... ...quality controls, dependency, and workload management. • Define and build deployment... ...FIDO, SCIM, LDAP, SAML) • Expertise in Identity and Authentication solutions such as...
- ...Physical Security Specialist Firehawk Aerospace is a leading propulsion-focused aerospace and... ...principles, regulatory compliance, risk management, and site security standards. The... ...status, age, sexual orientation, gender identity, marital status, mental or physical disability...Permanent employmentFull timeFor contractorsWork at officeLocal areaRemote workFlexible hours
- ...equipment. Perform line pilot duties IAW GOM. Support Safety Management System, Destination Zero, and other company safety campaigns.... ..., protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal...Local areaRelocation packageShift workNight shift
$91k - $185.9k
...the company’s success. As a Security Specialist within PNC's Technology organization... ...is responsible for managing, configuring, and optimizing... ...to improve overall security posture of the organization. Primary... ...sexual orientation, gender identity, disability, veteran status,...Full timeTemporary workPart timeWork experience placementWork at office- ...TrendAI™, the global AI security leader and enterprise business unit... .... You'll join our Global Managed Detection & Response (MDR) team... ...improve organizational threat posture. Qualifications: ~... ...veteran status, marital status, sexual orientation, or gender identity.Full timeH1bWork at office3 days per week
- ...Job Title: Director, Security Reports To: Chief... ...expertise, a proactive risk management mindset, and the executive presence... ...units. Present security posture, risk metrics, and program updates... .... Architecture & Identity Lead security architecture...
$138.4k - $207.6k
...making history. Enterprise Security Shared Services (ESSS) is a... ...driven leader to serve as the Manager Security 3 . We are looking... ...functional groups to align security posture with business objectives.... ..., sexual orientation, gender identity, marital status, national...For contractorsWork at officeRelocationShift work$85k - $123.3k
...consultants, sustainability specialists, and technologists are passionate... .... Your Opportunity The Security Designer in the Mission Critical... ...Senior Consultant or Project Manager. Understands and identifies... ..., sexual orientation, gender identity or gender expression. We prohibit...Full timeTemporary workPart timeCasual workLocal areaFlexible hours- ...Electronic Security Specialist III Texas Behavioral Health Center Join our team and help... ...and electronic systems in the management of Access Control for UT Southwestern... ...origin, sex, sexual orientation, gender identity, gender expression, age, disability, genetic...Full timeRemote work
$99.84k - $131.04k
...View as a good or great place to work! Do you want to drive IT security solutions? We are looking for a dynamic and energetic Senior... ...the most effective companies are made up of people with varied identities, experiences and backgrounds. Long View is an equal opportunity...Full timeTemporary workFlexible hours- ...Title – IBM Security Expert Location – Dallas, TX Rate - $Open Type – Long Term Contract Job Description: IBM Identity and Access Management Expert Environment is 8M in Datapower, Q radar Looking for a guru to architect...Long term contract
- ...Security Guard Level II (Armed) PacArctic LLC, a Koniag Government Services company,... ...experience Scheduling and personnel management skills Physical Demands: Frequent... ..., sexual orientation, gender or gender identity (except where gender is a bona fide occupational...Contract workFor contractorsLocal areaShift workNight shift
$131.3k - $177.6k
...Are you ready to shape the future of secure artificial intelligence - not just from the... ...success while also driving the security posture of the broader GenAIIC practice - Build... ...depth, strong governance and risk management skills, the ability to operate effectively...Flexible hoursDay shift- ...Job Title: Oracle Fusion Security Specialist Location: Remote Engagement: Contract... ...SCM, and EPM modules. Design and manage role-based access control (RBAC) and data... ...policies. Work with Oracle Identity Cloud Service (IDCS) for Single Sign-On...Contract workRemote work
$30 per hour
...Security Screening Specialist, Part-Time- DFW DFW Airport - Irving, TX 75062 Overview Salary Range $30.00 Position Type Per Diem Job Shift... ...to race, color, religion, sexual orientation, gender identity, national origin, veteran, or disability status. Benefits...Hourly payDaily paidFull timePart timeFlexible hoursShift workNight shift- ...Government Services company, is seeking a Security Guard Level II (Armed) to support PAC... ...experience Scheduling and personnel management skills Physical Demands: Contract... ...sex, sexual orientation, gender or gender identity (except where gender is a bona fide...Contract workFor contractorsLocal areaShift workNight shift
$80.67k - $107.55k
...OVERVIEW The Regional Loss Prevention (LP) Manager plays a critical role in protecting... ...partnering with Field Leadership to build a secure, safety‑first retail environment. This position... ..., gender, sexual orientation, gender identity, national origin, age, disability,...Local areaNight shift
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Identity Security Posture Management (ISPM) Specialist. Be the first to apply!
- physical security consultant Dallas, TX
- aws security specialist Dallas, TX
- senior security consultant Dallas, TX
- physical security specialist Dallas, TX
- network security analyst Dallas, TX
- security advisor Dallas, TX
- information security compliance analyst Dallas, TX
- security consultant Dallas, TX
- security analyst intern Dallas, TX
- entry level information security analyst Dallas, TX

