Senior IAM Engineer

Signature Aviation

The Role

Overview

Design, implement, and manage Azure and hybrid IAM solutions, ensuring security and compliance.

Key Responsibilities

  • iam audits
  • azure ad
  • sso mfa
  • rbac
  • pam
  • automation

Tasks

-Conduct regular audits of IAM configurations to identify and remediate security gaps. -Continuously evaluate and implement emerging IAM technologies and best practices to enhance security and user experience. -Document IAM processes, configurations, and procedures to ensure operational continuity and knowledge sharing. -Monitor and report on IAM security posture, access control effectiveness, and compliance metrics to the Cloud Security Manager and other stakeholders. -Provide technical expertise and support for IAM-related incidents, including troubleshooting access issues and resolving authentication failures. -Act as a subject matter expert for IAM during security incidents, supporting the Cloud Security Manager in investigations and remediation efforts. -Design, deploy, and manage identity and access management solutions using Azure Active Directory (Azure AD), including single sign-on (SSO), multi-factor authentication (MFA), and conditional access policies. -Participate in security assessments and red/blue team exercises to validate IAM controls and identify areas for improvement. -Develop and enforce IAM policies, standards, and procedures in alignment with ISO 27001, NIST 800-53, and other relevant frameworks. -Collaborate with IT Infrastructure, Cloud Security, Application Development, and Compliance teams to integrate IAM solutions into DevOps pipelines and infrastructure operations. -Develop and maintain secure access policies for Azure Key Vault, ensuring proper management of secrets, keys, and certificates. -Automate IAM processes using Azure Logic Apps, PowerShell scripts, and Azure Automation to improve efficiency and reduce manual errors. -Configure and manage Azure AD Connect for seamless synchronization between on-premises Active Directory and Azure AD. -Ensure IAM solutions comply with global regulations, including GDPR, HIPAA, PCI-DSS, and aviation-specific standards (e.g., FAA, IATA). -Stay current with industry trends, such as zero trust and identity governance, to proactively enhance IAM capabilities. -Enforce least privilege principles and monitor privileged accounts to mitigate insider threats and unauthorized access. -Implement and maintain role-based access control (RBAC) and attribute-based access control (ABAC) for Azure workloads and hybrid environments. -Support the integration of third-party applications with Azure AD for secure authentication and authorization. -Implement and manage privileged access management (PAM) solutions, including Azure AD Privileged Identity Management (PIM), to secure elevated access across cloud and hybrid platforms. -Support audits and assessments by providing detailed IAM configuration reports and evidence of compliance.

Requirements

  • azure ad
  • powershell
  • sailpoint
  • cissp
  • zero trust
  • pam

What You Bring

-5+ years of experience in identity and access management, with at least 2 years focused on cloud-based IAM solutions, preferably in Microsoft Azure. -Privileged Access Management (PAM) and Azure AD Privileged Identity Management (PIM). -Strong analytical skills and a proactive approach to identifying and resolving IAM-related security risks. -Experience in aviation, transportation, or critical infrastructure sectors.. -Excellent problem-solving, communication, and collaboration skills to work effectively with cross-functional teams. -Proven ability to implement zero trust architecture and integrate IAM into DevSecOps workflows. -Professional certifications such as Microsoft Certified: Identity and Access Administrator Associate, CISSP, CISM, or CompTIA Security+. -Experience with identity governance and administration (IGA) platforms, such as SailPoint or Saviynt. -Proficiency in scripting and automation tools, such as PowerShell or Python, for IAM-related tasks. -Knowledge of SIEM tools (e.g., Microsoft Sentinel, Splunk) for monitoring IAM-related security events. -IAM integration with cloud workloads and third-party applications. -Azure Active Directory (Azure AD) administration, including SSO, MFA, and conditional access. -Availability to provide support for IAM-related incidents outside of regular business hours as needed. -Bachelor’s degree in Computer Science, Information Security, Cybersecurity, or a related field from an accredited institution, or an equivalent combination of education and experience. -Azure AD Connect for hybrid identity synchronization. -Ability to work in a fast-paced, global environment with a strong commitment to operational excellence. -Ability to document technical processes clearly and maintain accurate records of IAM configurations -Familiarity with Microsoft Defender for Identity, Azure Key Vault, or other Azure security services. -Strong understanding of security frameworks and standards (e.g., NIST 800-53, ISO 27001, CIS Controls).

Benefits

-Paid time off -Tuition reimbursement -Health Savings Account -Identity Theft and Legal Services -Disability Insurance -Paid Maternity Leave -Critical Illness, Hospital Indemnity and Accident Insurance -Training and Development -Medical/prescription drug, dental, and vision Insurance -Life Insurance -Flexible Spending Accounts -Employee Assistance Program (EAP) & Perks

The Company

About Signature Aviation

-With a rich history of providing exceptional fuel services, ground handling, and aircraft maintenance, the company serves thousands of clients worldwide. -Operates across major airports, offering comprehensive services that cater to both private and commercial aviation. -The company's expertise spans fueling, maintenance, concierge services, and more, making it a go-to partner for aviation professionals. -Noteworthy for their innovation, Signature Aviation also invests in sustainable technologies and solutions that benefit both their clients and the environment. -With an extensive global footprint, Signature Aviation is consistently ranked among the top service providers in the aviation sector.

Sector Specialisms