IAM Engineer
Listed on 2026-08-05
-
IT/Tech
Cybersecurity, Systems Engineer, IT Support, Systems Administrator
IAM Engineer
The Identity and Access Management (IAM) Engineer provides technical and operational support for the University's Identity and Access Management (IAM) services. The role supports authentication, authorization, access provisioning, multifactor authentication, public key infrastructure, SSL/TLS certificate operations, and related security technologies. The position is primarily operational and consultative, emphasizing configuration, troubleshooting, service reliability, customer support, documentation, and automation rather than custom software development.
The successful candidate will be a self-starter who can work independently, learn new technologies quickly, and collaborate with support teams, application owners, vendors, and other ISC colleagues.
Job Responsibilities:
- Provide day-to-day operational support for IAM and access management services, including MFA, access provisioning, authentication and authorization support, and service monitoring.
- Troubleshoot access, login, certificate, provisioning, and related service issues; coordinate with the support desk, application owners, customers, vendors, and internal technical teams.
- Configure and maintain existing IAM services and related security controls, including role-based and attribute-based access concepts, SSL/TLS certificates, PKI-related services, and selected directory or identity repository functions.
- Support Linux-based IAM service hosts and cloud-hosted service components, including patching coordination, maintenance, monitoring, and operational readiness.
- Develop scripts, reports, documentation, and lightweight automation to improve repeatability, reduce operational toil, validate access controls, support metrics, and assist with service transition or retirement efforts.
- Provide secondary/backfill support for SSO and federation-related work using technologies such as SAML, OAuth, and OIDC, without serving as the primary SSO engineer.
- Participate in a shared on-call rotation for critical IAM services. Off-hours incidents are infrequent, but periodic scheduled maintenance may occur outside normal business hours.
- Other duties and responsibilities as assigned
Qualifications:
- Bachelor's degree and 2-3 years of related experience in identity and access management, information security, systems administration, application support, or a related technical operations role, or equivalent combination of education and experience is required.
- Experience should include operational support of production systems, troubleshooting complex technical issues, working with customers or support teams, and using scripting or automation to improve reliability and repeatability.
- Candidates should be comfortable working independently with limited supervision, communicating clearly with technical and non-technical stakeholders, and learning new IAM and security technologies as service needs evolve.
Job Location - City, State
Philadelphia, Pennsylvania
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).