×
Register Here to Apply for Jobs or Post Jobs. X

Senior Identity and Access Engineer

Job in Lancaster, Lancaster County, Pennsylvania, 17622, USA
Listing for: Morgan, Lewis & Bockius LLP
Full Time position
Listed on 2026-07-27
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 120000 - 150000 USD Yearly USD 120000.00 150000.00 YEAR
Job Description & How to Apply Below

Morgan, Lewis & Bockius LLP, one of the world’s leading global law firms with offices in strategic hubs of commerce, law, and government across North America, Asia, Europe, and the Middle East, is seeking to hire a Sr. Identity and Access Engineer. Reporting to the Manager of Identity and Access Management, the Sr. Identity and Access Engineer provides mentoring to fellow engineers and contributes great things to the team with respect to knowledge transfer and advanced knowledge of Identity Access Management (IAM) engineering fundamentals.

Responsibilities
  • Respond to strategies provided by the Architecture and Engineering team and its management for implementation and oversight and will be called upon to resolve the highest-level technical issues. In addition, this person will partner with applicable teams to ensure secure, scalable, and compliant identity services.
  • Develop innovative IAM strategies and take ownership of these through all phases.
  • Deliver enterprise-wide IAM, identity governance, and authentication solutions in a hybrid cloud capacity.
  • Design and implement lifecycle management automation for joiner, mover and leaver scenarios.
  • Implement role-based access control (RBAC) and apply the concept of least-privilege.
  • Provide programmatic solutions to include Power Shell, JSON, SQL, LDAP, and object-oriented languages for IAM systems.
  • Collaborate with other IAM team members on system design, architecture, and strategies to provide high levels of customer satisfaction.
  • Integrate enterprise applications for SSO and set up provisioning/offboarding.
  • Lead key meetings including technical, cross-functional, and stakeholder meetings.
  • Ensure Enterprise services and servers remain operational and monitor Active Directory, EntraID, and IAM services.
  • Provide after-hours support as needed to address incidents, system maintenance.
  • Create and maintain architecture and documentation for IAM systems.
  • Represents the team during the audit and ISO 27001 certification process.
  • Participate in on-call support rotation.
Education And Experience
  • A bachelor's degree from a four-year college or university.
  • 5 years of hands-on experience in Identity and Access Management / Identity Governance engineering roles.
  • 5 years of experience with Cloud technologies (Azure, AWS, GCE) in a hybrid/multi-cloud identity environment.
  • Solid understanding of identity federation protocols (SAML, OAuth, OpenID Connect) and access governance concepts.
  • Problem-solving and analytical skills; ability to handle complex, time-sensitive incidents.
  • Excellent communication skills and ability to collaborate across technical and non-technical stakeholders.
Technical Requirements
  • Expertise in MS Active Directory (design, administration, Group Policy, replication, trusts, privileged access).
  • Proficiency with MS Entra  (conditional access, PIM, hybrid identity, SSO/MFA, entitlement management, access reviews).
  • Advanced Power Shell scripting skills for automation, reporting, integrating, and administration of AD/Entra /SailPoint environments.
  • Experience implementing and supporting SailPoint (Identity Now, Identity IQ, or Identity Security Cloud), including custom workflows, rules, transforms, connectors, certifications, and integrations.
  • SailPoint Certified Identity IQ Engineer / Identity Now Administrator is preferred.
  • Familiarity with security frameworks (NIST, Zero Trust, ISO 27001); compliance requirements (SOX, GDPR, HIPAA, etc.); PAM tools (e.g., Cyber Ark, Delinea) are a plus.
  • Core back-end technologies (Microsoft Windows 2019 Server and above, Varonis, LDAP, Cloud Identity solutions, and related IAM software solutions), ISO 27001 principles.

Morgan, Lewis & Bockius LLP is committed to equal employment opportunity and providing reasonable accommodations to applicants with physical and/or mental disabilities. We value inclusion and solicit applications from all qualified applicants without regard to race, color, gender, sex, age, religion, creed, national origin, ancestry, citizenship, marital status, sexual orientation, physical or mental disability, medical condition, veteran status, gender identity, genetic information, or any other characteristic protected by…

Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary