Security Engineer II
Job in
Irving, Dallas County, Texas, 75084, USA
Listed on 2026-07-08
Listing for:
Lennar
Full Time
position Listed on 2026-07-08
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Systems Engineer
Job Description & How to Apply Below
Systems Engineer II
- Security
Location:
On-site, Irving, TX.
The Systems Engineer II
- Security is a mid-level position responsible for enhancing and maintaining the security of the organization’s information technology infrastructure. The role designs, implements, and operates identity and access controls across IAM, IGA, and PAM platforms to ensure the right users and workloads have the right access at the right time. This reduces identity-related risk by enforcing least privilege, strengthening authentication, and governing privileged access in alignment with security and regulatory requirements.
Responsibilities
- Support enterprise IAM solutions that deliver single sign-on (SSO), multifactor authentication (MFA), identity governance and administration, and privileged access management for all types of identities.
- Engineer and operate IGA capabilities, including joiner‑mover‑leaver workflows, access request and approval, automated provisioning/de‑provisioning, and role‑based access control (RBAC/ABAC).
- Implement and manage PAM platforms for privileged account onboarding, credential vaulting, password rotation, session monitoring/recording, and just‑in‑time (JIT) elevation.
- Design and implement identity and access controls for AI agents and non‑human identities (service accounts, bots, APIs, workloads), including lifecycle management, secrets management, least‑privilege roles, and monitoring of machine‑to‑machine access in alignment with Zero Trust principles.
- Monitor identity and privileged access activities, analyze logs and alerts, and support incident response and forensic investigations related to compromised identities or misuse of privilege.
- Support audit, compliance, and certification efforts by providing evidence, improving control design, and remediating findings related to IAM, IGA, and PAM.
- Troubleshoot complex IAM/IGA/PAM issues, perform root cause analysis, and drive continuous improvement and modernization of identity platforms.
- Collaborate with security architecture, infrastructure, application, and Dev Ops teams to embed identity security and Zero Trust principles in new solutions and strategic programs.
- Document architectures, standards, runbooks, and knowledge articles, and provide guidance and training to operations and application teams on identity security best practices.
- Participate in Proof of Concepts and product evaluations of new and emerging Identity security services and technologies.
- May provide mentorship and support to various junior security engineers and security operations team members.
- Bachelor’s degree in Computer Science, Cybersecurity, Engineering, or related field.
- 4‑5 years of hands‑on cybersecurity engineering experience with exposure to IAM.
- 4+ years of relevant work experience in security engineering, focusing on IAM technologies such as SailPoint, Delinea, Cyber Ark, Entra , Ping Identities.
- 2+ years of relevant work experience with Identity and Access Management solutions, including implementation and configuration of SSO, MFA, and identity integration protocols (SAML, OIDC).
- Experience building and maintaining SailPoint connectors, aggregation and provisioning jobs, roles/entitlements, and workflows for HR‑driven JML processes.
- Experience administering Microsoft Entra , including users, groups, roles, app registrations, and enterprise applications.
- Working knowledge of solutions for Identity Governance and Administration, Privileged Access Management, and access control models such as RBAC, ABAC, PBAC, and FGAC.
- Certifications:
CISSP, CompTIA Security+, Certified Identity and Access Manager (CIAM), or similar advanced cloud security certifications preferred.
- Knowledge of cloud‑based Identity Providers, access controls, and hybrid federated IAM architectures.
- Experience designing, configuring, and administering SailPoint Identity Security Cloud for identity lifecycle, access request, certifications, and policy/SoD controls.
- Strong knowledge of Microsoft Active Directory (AD) Domain Services, management of AD users and security groups, and security best practices for configuring AD infrastructure, policies, and…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×