- Company Name
- Pacific Life Re
- Job Title
- Identity & Access Management Operational Engineer
- Job Description
-
**Job Title**
Identity & Access Management Operational Engineer
**Role Summary**
Provide end‑to‑end operations, support, and enhancement of enterprise IAM services, including Privileged Access Management, Single Sign‑On/Multi‑Factor Authentication, and Directory Services, to ensure secure, resilient access for a global user community.
**Expectations**
- Deliver reliable IAM operations at enterprise scale.
- Maintain service level agreements and support policies.
- Enforce IAM compliance through audits, certifications, and reporting.
- Collaborate with IT, security, and business stakeholders on IAM initiatives.
**Key Responsibilities**
- Implement and support new and upgraded IAM platforms (CyberArk, Delinea, Okta, MS Entra SSO/MFA, Azure AD).
- Process daily IAM fulfillment requests (user/group creation, access approvals, etc.).
- Consult on IAM best practices for projects and new initiatives.
- Ensure resilience and uptime of IAM services; respond to incidents per ITSM processes.
- Conduct regular compliance audits, certifications, and operational reviews.
- Identify, document, and elevate project risks, issues, and roadblocks.
- Contribute to IAM strategy, roadmap, and continuous improvement.
**Required Skills**
- 10+ years in information security with hands‑on experience in enterprise IAM.
- Expertise in SSO/MFA and federation protocols (SAML, OIDC, OAuth).
- Proficiency in Privileged Access Management (credential vaulting, session monitoring).
- Strong experience with Directory Services (Active Directory, access control).
- Knowledge of security concepts: least privilege, zero trust, phishing‑resistant authentication.
- Familiarity with ITSM (Incident, Change, Problem Management).
- Scripting/automation in PowerShell or Python.
- Ability to prioritize tasks, manage multiple requests, and report status effectively.
**Required Education & Certifications**
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent professional experience).
- Preferred certifications: CISSP, CISM, CompTIA Security+, or vendor‑specific IAM credentials (e.g., CyberArk/Okta/Delinea).