×
Register Here to Apply for Jobs or Post Jobs. X

Principal Security Engineer; IAM​/Zero Trust

Job in Phoenix, Maricopa County, Arizona, 85003, USA
Listing for: Vaco LLC
Full Time position
Listed on 2026-06-05
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer
Salary/Wage Range or Industry Benchmark: 75 - 90 USD Hourly USD 75.00 90.00 HOUR
Job Description & How to Apply Below
Position: Principal Security Engineer (IAM / Zero Trust)
Vaco is partnering with a fintech organization to hire a Principal Security Engineer focused on Identity and Access Management as part of a broader shift toward modern, Zero Trust architecture. This is a high-impact, hands-on role centered on designing and building scalable identity systems that support a cloud-native, distributed environment. This role goes beyond traditional IAM. The focus is on evolving identity into a dynamic, risk-aware control plane across both human and non-human access.

The ideal candidate is a builder who can operate at the architecture level while still driving implementation, automation, and integration across complex systems. The role is ideally based in Tempe with a hybrid schedule, but remote candidates will be considered. What You’ll Be Doing Define and evolve enterprise Identity strategy, architecture, and roadmap aligned to Zero Trust principles Design and implement modern IAM solutions across user, application, and machine identities Transition access models from static RBAC to risk-based and adaptive authorization frameworks Architect identity lifecycle management including provisioning, deprovisioning, and governance workflows Design authentication and authorization solutions including MFA, SSO, and passwordless approaches Lead efforts to secure non-human identities including service accounts, APIs, and distributed workloads Implement Just-in-Time (JIT) access and least privilege models to reduce standing access risk Integrate IAM solutions across cloud and enterprise platforms using protocols such as SAML, OAuth, OpenID Connect, and SCIM Partner with SOC and security teams to build detection and response capabilities for identity-based threats Develop automation-first solutions using scripting, APIs, and Infrastructure as Code Provide technical leadership and mentorship to engineering teams and influence secure development practices Collaborate with business and technical stakeholders to drive adoption and align identity strategy with business needs Required Experience 8+ years of experience in cybersecurity, security engineering, or related fields 5+ years focused on Identity and Access Management Proven experience designing and implementing enterprise-scale IAM solutions Strong understanding of Zero Trust architecture and modern identity security principles Hands-on experience with IAM platforms such as Okta, Entra , Ping, or similar

Experience with identity governance and PAM tools such as SailPoint, Saviynt, or Cyber Ark Strong understanding of identity protocols including OAuth, OpenID Connect, SAML, and SCIM Experience securing cloud-native environments across AWS, Azure, or GCP

Experience with scripting and automation using tools such as Python or Power Shell Familiarity with microservices and API-driven architectures Nice to Have Experience in fintech or other regulated environments

Experience with Kubernetes, service mesh, or container-based architectures Familiarity with Terraform or Infrastructure as Code practices Experience building identity threat detection and response capabilities Security certifications such as CISSP, CISM, or vendor-specific IAM certifications A Special Note to Applicants The current volume of automated and AI-generated applications is on the rise. If you have read this posting in full and believe this role genuinely aligns with your experience, we encourage you to apply thoughtfully.

Applicants who include the word “Blue Steel” somewhere in their resume or cover note, or who reach out directly via Linked In to the recruiter who appreciates a good Zoolander reference, will help us route submissions more effectively Compensation Hourly rate: $75-90/hr 1-year W2 contract through Vaco Eligible for Vaco benefits including health, dental, vision, and 401(k) Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual’s skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs.

With that said, as required by local law in…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary