Identity and Access Engineer
Listed on 2025-12-07
-
IT/Tech
Cybersecurity, Systems Engineer
Get AI-powered advice on this job and more exclusive features.
Direct message the job poster from Clayco
Clayco is a full-service, turnkey real estate development, master planning, architecture, engineering, and construction firm that safely delivers clients across North America the highest quality solutions on time, on budget, and above and beyond expectations. With $7.6 billion in revenue for 2024, Clayco specializes in the "art and science of building," providing fast track, efficient solutions for industrial, commercial, institutional, and residential related building projects.
The Role We Want You ForUnder the direction of the Identity and Access Manager, the Identity & Access Engineer will play a critical role in the implementation, integration, and support of advanced Identity and Access Management (IAM) solutions across the Clayco Enterprise. This role contributes to the design, configuration, and lifecycle management of IAM platforms and policies that enforce secure, scalable, and compliant access to internal systems, cloud services, and third‑party applications.
This role focuses on the engineering and integration of IAM capabilities, such as directory services, SSO/MFA platforms, PKI, and access provisioning automation, while also serving as a technical escalation point for operational IAM functions.
The Identity & Access Engineer also contributes to the ongoing adoption and expansion of data‑driven identity life‑cycles and the dynamic modification of access and entitlements as identity context and details change. This role also ensures compliance with regulatory requirements, enhancing security through access control and identity verification mechanisms.
The Specifics of the Role- As a member of the Information Security Team, contributes however and whenever necessary to Incident Response efforts as circumstance dictates
- Design and implement Directory Services integrations and Identity Provider (IdP) connections for both internal and third‑party applications
- Collaborate on standard integrations of cloud and on‑premise apps into the SSO/MFA ecosystem, leveraging standards like SAML 2.0, OAuth 2.0, and SCIM; lead on more complex integrations
- Maintain and support automated provisioning/deprovisioning workflows using tools like SCIM, orchestration workflows, API‑based connectors, etc.
- Collaborate with the Information Security and Architecture teams on the design and implementation of new IAM services, including PKI, PIM/PAM, federated authentication, and certificate‑based access control
- Contribute to infrastructure readiness assessments and configuration planning during IAM‑related project initiatives and system rollouts
- Participate in solution evaluations, proof of concept testing, and implementation planning for emerging IAM capabilities
- Serve as technical escalation point and operational coverage when necessary for the following technologies:
- Identity Providers (IdP) supporting SSO/MFA including Access Gateways
- Integrations of identity management solutions with in‑house applications, third‑party applications, and cloud services
- Active Directory Services & Entra
- Privileged Access Management (PAM) and Privileged Identity Management (PIM)
- Certificate Services, Hosted PKI, and Auto‑Enrollment Gateway (AEG)
- Automation of access provisioning / deprovisioning
- Physical Access Control identity management and integrations with Directory Services
- Integration & tuning of related IAM security log sources for SIEM ingestion
- Ensure all IAM integrations and implementations align with least‑privilege, role‑based access models, identity governance policies, and regulatory/contractual requirements
- Lead the implementation, deployment, and maturing of PKI services to support certificate‑based authentication and trust mechanisms across Clayco’s email infrastructure, client infrastructure, and document signing processes
- Document system and component configurations, integrations, testing, and validation procedures, and knowledge‑base articles for long‑term operational sustainability
- Bachelor’s Degree in Computer Science, Information Technology, or Information Systems (preferred), or equivalent hands‑on work…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).