EngineerJobs.io
← Back to all jobs

Job Description

Moody’s is seeking a Sr Cybersecurity Engineer (IDAM) to support Identity and Access Management initiatives across the enterprise, with end-to-end ownership spanning engineering, configuration, operations, and audit evidence for Okta and Microsoft Entra ID environments.

Role Overview

This position focuses on workforce identity engineering and administration for Moody’s identity platforms. Responsibilities include designing secure access patterns, maintaining authentication and lifecycle workflows, monitoring identity risk signals, and producing SOX and FedRAMP audit evidence in collaboration with governance and audit stakeholders.

Responsibilities

  • Own end-to-end engineering, configuration, and administration of workforce identities in Moody’s Okta tenants, including FedRAMP workforce, non-production, and Customer Identity and Access Management tenants, applying established standards and requirements
  • Design and maintain Single Sign-On and application integrations using SAML, OIDC, and SCIM across enterprise applications
  • Engineer authentication and multi-factor authentication policy to enforce a phishing-resistant assurance level
  • Own identity lifecycle (joiner/mover/leaver) and provisioning workflows, including automation via Okta Workflows
  • Monitor and respond to identity risk signals and threats
  • Design and administer groups, custom admin roles, and least-privilege access models
  • Produce and maintain SOX and FedRAMP audit evidence in partnership with Cybersecurity Governance and Audit teams
  • Provide engineering coverage for Microsoft Entra ID, including Conditional Access policy design and hybrid identity management configurations
  • Support hybrid identity operations and coordinate with the Entra/Active Directory engineering owner on shared administrative responsibilities per the team’s admin-ownership model

Required Qualifications

  • 3+ years of hands-on access management engineering experience, including workforce identity configuration, administration, and lifecycle management (Okta preferred)
  • Strong depth in Identity and Access Management and Single Sign-On and application integration patterns, including SAML, OIDC, and SCIM
  • Experience engineering authentication and multi-factor authentication policy using phishing-resistant methods
  • Hands-on experience with identity lifecycle and provisioning automation
  • Experience operating in regulated, audited environments (SOX/ITGC, FedRAMP, or equivalent), including producing audit evidence and control documentation
  • Working knowledge of identity governance concepts (access requests, certifications, separation of duties); Okta Identity Governance experience preferred
  • Familiarity with Microsoft Entra ID administration, including Conditional Access policy engineering and hybrid identity management, is preferred
  • Strong written communication skills for producing audit-ready documentation and evidence packages
  • Ability to independently lead end-to-end engineering work from requirements through operational support
  • Demonstrated proficiency in artificial intelligence concepts, with hands-on experience using AI tools to streamline workflows and enhance operational efficiency, including awareness of AI risk management and a commitment to responsible and ethical AI use

Preferred Skills and Credentials

  • Okta preferred
  • Okta Identity Governance experience is preferred
  • Microsoft Certified: Identity and Access Administrator (SC-300), CISSP, or equivalent identity/security certifications
  • Prior FedRAMP or US federal identity/compliance experience preferred

Technology Stack

  • Okta
  • SAML, OIDC, SCIM
  • Multi-factor authentication
  • Okta Workflows
  • SOX, ITGC, FedRAMP
  • Microsoft Entra ID
  • Conditional Access
  • Active Directory

Compensation and Location

  • Location: Charlotte, NC (onsite)
  • Salary range: USD 116,500 - 192,300 per year

Benefits

  • Eligible for incentive compensation
  • Medical, dental, and vision insurance
  • Parental leave
  • Paid time off
  • 401(k) plan with employee and company contribution opportunities
  • Life insurance, disability insurance, and accident insurance
  • Discounted employee stock purchase plan
  • Tuition reimbursement

Education

  • Bachelor’s degree or equivalent qualification in Computer Science, Information Technology, Cybersecurity, Engineering, or related field
  • Advanced technical certifications preferred, such as Okta Certified Administrator/Professional (Consultant track a plus), Microsoft Certified: Identity and Access Administrator (SC-300), CISSP, or equivalent identity/security certifications
  • Prior FedRAMP or US federal identity/compliance experience preferred

About the Identity Engineering Team

The Identity Engineering team designs, builds, and operates identity and access management platforms that secure access across Moody’s enterprise and regulated environments. The team extends enterprise-grade identity engineering practices into a federal compliance boundary, emphasizing phishing-resistant authentication, identity governance, and audit-ready operations. As Moody’s advances its AI capabilities, the team supports secure identity foundations that enable innovation, automation, and responsible AI adoption across the organization.

Similar Jobs