IAM Security Engineer
Job Description
Contract IAM Security Engineer role with a Seattle, WA client from JMS Technical Solutions, offering a hybrid schedule (one day remote) for a 3-month contract. You will help deliver identity security programs across multiple IAM and privileged access platforms while coordinating planning, execution, and risk management with security, compliance, and business stakeholders.
What you’ll work on
- Own end-to-end program planning, scheduling, and execution for one or more identity security workstreams.
- Build and maintain detailed project plans, dependency maps, risk registers, and RAID logs.
- Lead sprint planning plus PI Planning and backlog grooming within an SAFe/Agile delivery model.
- Facilitate cross-team ceremonies including standups, demos, retrospectives, and steering committee reviews.
- Track and report program health, milestones, and KPIs to senior leadership and the CISO organization.
- Proactively identify, escalate, and resolve blockers, risks, and inter-workstream dependencies.
- Drive delivery of Privileged Access Management (PAM) using BeyondTrust Password Safe, Endpoint Privilege Management (EPM), and Privileged Remote Access (PRA).
- Support Microsoft Entra ID (Azure AD) initiatives including conditional access policy governance, hybrid identity, and lifecycle management.
- Partner with IGA teams on SailPoint IdentityNow configuration, access certification campaigns, and role engineering.
- Coordinate Okta identity platform hardening, including phishing-resistant MFA (FastPass, FIDO2/WebAuthn), device assurance policies, and authenticator enrollment controls.
- Translate technical identity requirements into project scope, acceptance criteria, and delivery milestones.
- Serve as the primary point of contact for program status across technology, security, compliance, and business stakeholders.
- Prepare and deliver executive-ready status reports, steering committee decks, and program dashboards.
- Partner with Vendor Management and Procurement on contingent resource onboarding and statement of work management.
- Coordinate with audit and compliance teams ( SOX, PCI-DSS, NIST ) to ensure delivery timelines support control testing windows.
What you bring
- Bachelor’s Degree in Information Technology, Computer Science, Cybersecurity, or related experience.
- 2+ years of direct experience in an Identity and Access Management role.
- Experience with at least one major cloud identity platform: Okta or Microsoft Entra ID.
- Proficiency scripting with PowerShell or Python for automation.
- Hands-on experience with Infrastructure as Code, particularly Terraform.
- Strong understanding of modern authentication and federation: SAML, OIDC, OAuth 2.0, SCIM.
- Experience with hybrid identity models connecting cloud IdPs to on-premises Active Directory.
- SailPoint Certified IdentityIQ Associate or SailPoint Certified IdentityNow Professional is preferred.
Technologies
BeyondTrust Password Safe, Endpoint Privilege Management (EPM), Privileged Remote Access (PRA), Microsoft Entra ID (Azure AD), SailPoint IdentityNow, Okta, FastPass, FIDO2/WebAuthn, PowerShell, Python, Terraform, SAML, OIDC, OAuth 2.0, SCIM, Active Directory, SailPoint IdentityIQ, SAFe, Agile.
Location: Seattle, WA (hybrid). Compensation: USD 65 per hour. Experience: 2+ years. Job type: contract.