Senior IAM Engineer
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Who we are? As the world's largest organization of board-certified pathologists and leading provider of laboratory accreditation and proficiency testing programs, the College of American Pathologists (CAP) serves patients, pathologists, and the public by fostering and advocating excellence in the practice of pathology and laboratory medicine worldwide.
Our Culture- CAP employees make a meaningful difference by partnering with colleagues customers and members on challenging and rewarding work
- CAP provides its employees with an energetic and collaborative work environment and encourage opportunities to further develop their skills—offering reimbursement for educational programs and participation in events that enhance your skills
- We offer a generous compensation and benefits package, 401K, and more -- visit Careers at the CAP for more details
Brief Description The Senior Identity & Access Management (IAM) Engineer is responsible for the implementation, operation, and continuous improvement of identity and access management capabilities across the enterprise. This role leads the design and enforcement of identity controls to ensure secure, efficient, and compliant access to systems and data.
This position works closely with security leadership, IT teams, and application owners to implement scalable identity solutions, strengthen authentication and access controls, and support evolving business and security requirements.
Specific Duties- Identity & Access Management Engineering Designs, implements, and maintains IAM solutions, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and identity federation
- Configures and manages identity platforms (e.g., Microsoft Entra , Okta, or similar)
- Implements and maintains Conditional Access policies aligned to organizational security requirements
- Integrates applications with identity providers using standard protocols (e.g., SAML, OAuth, OpenID Connect)
- Establishes and enforces authentication and access control standards across the environment
- Manages and continuously improves MFA strategy, including enforcement, exclusions, and user experience considerations
- Supports secure onboarding of applications and services into centralized identity systems
- Reviews and improves role-based and attribute-based access models where applicable
- Establishes and maintains controls for privileged access, including administrative roles and elevated permissions
- Supports the implementation and ongoing improvement of Privileged Access Management (PAM) capabilities
- Develops and enforces standards for service accounts and other non-human identities, including credential management and access restrictions
- Identifies opportunities to reduce standing privilege and improve least privilege across systems and platforms
- Partners with infrastructure and application teams to improve visibility and governance of non-human identities
- Supports identity lifecycle processes for both human and non-human identities, including provisioning, deprovisioning, and access changes
- Identifies opportunities to improve automation and consistency in access management workflows
- Partners with IT and business teams to ensure appropriate access controls are implemented and maintained
- Contributes to the maturation of identity governance and privileged access capabilities over time
- Troubleshoots and resolves identity-related issues, including authentication failures and access inconsistencies
- Supports incident response efforts involving identity or access-related events
- Monitors IAM systems for reliability, performance, and security issues
- Works with cross-functional teams to ensure identity services are integrated into new and existing systems
- Evaluates and recommends improvements to IAM tools, configurations, and processes
- Supports ongoing maturation of identity capabilities, including privileged access and identity governance
- Stays current with evolving identity threats, technologies, and best practices
- Owns and maintains security standards, control requirements, and guidance within the assigned security practice domain
- Leads security scoping activities for enterprise initiatives involving controls within the assigned practice area
- Defines security requirements, deliverables, and acceptance criteria for initiatives impacting the practice domain
- Oversees alignment of implementation plans to established security standards
- Collaborates with project managers and business stakeholders to ensure security milestones are defined, tracked, and documented
- Escalates material deviations from established standards and supports formal risk documentation where appropriate
- Develops and maintains key performance indicators and metrics related to the assigned security practice domain
- Provides periodic reporting on control…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).