NEWPosted 3 hours ago
Job ID: JOB_ID_7009
Job Description: IAM Engineer / PAM Lead
We are seeking an experienced IAM Engineer with a strong focus on Privileged Access Management (PAM), Identity & Access Management (IAM), and emerging Agentic AI security. This is an onsite role in Irvine, CA.
Key Responsibilities:
- Design and develop security standards and controls for securing non-human identities (NHI) using modern PAM practices.
- Collaborate with Technology Risk teams to define and implement IAM policies and security standards.
- Act as a Subject Matter Expert (SME) for AI identity security, privileged access management, and engineering guardrails/security controls (preventive & detective).
- Implement IAM encryption, data privacy strategies, and secure integrations with vendors and cloud platforms.
- Lead cross-functional stakeholder engagements, including status updates, demos, training sessions, and requirement clarification.
- Integrate IAM solutions with enterprise security tools and platforms.
- Identify and implement automation opportunities to improve efficiency and accuracy.
- Respond to security incidents, perform root cause analysis, and provide on-call IAM support.
- Enforce access controls across cloud IAM platforms (AWS, Azure Entra ID).
Required Skills & Qualifications:
- Minimum 7+ years of experience as an IAM Engineer.
- Strong hands-on experience in Privileged Access Management (PAM).
- Recent exposure to Agentic AI security and OWASP Top 10 risks for Non-Human Identities.
- Core Technical Skills:
- PAM & Security Tools: Experience with CyberArk, StrongDM, Azure Key Vault, AWS Secrets Manager.
- IAM & Authentication: Strong knowledge of SSO, Federation protocols (SAML, OIDC, OAuth2), SCIM provisioning, RBAC/ABAC, JIT access, Zero Trust architecture.
- Agentic AI & Identity Security: Understanding of AI agent identity binding, least privilege enforcement, policy-based guardrails, Model Context Protocol (MCP), Mutual TLS (mTLS), OAuth2 token exchange, AI security frameworks.
- Cloud & Directory Services: Experience with Azure Entra ID (Azure AD), AWS IAM/AWS AD, Okta, multi-cloud environments (AWS, Azure, GCP).
- Infrastructure & Automation: Hands-on experience with Terraform, Ansible, Pulumi, Cloud-init, Python scripting, Unix/Linux & Windows environments.
- API & Machine Identity: Familiarity with API Gateways (Kong, Apigee), Service Mesh (Istio), Machine identity frameworks (Certificates, Workload identities, SPIFFE/SPIRE).
- Security & Governance: Knowledge of threat modeling, insider threats, continuous authentication, open security standards.
- Soft Skills: Strong communication and collaboration skills, proven stakeholder management experience, ability to lead initiatives and deliver projects end-to-end, strong analytical and problem-solving skills.
Nice to Have:
- Experience with AI security tools and frameworks.
- Exposure to enterprise-scale IAM transformations.
- Prior experience in regulated environments.
Location:
- Irvine, CA (Onsite)
Employment Type:
- Onsite Contract
Compensation & Location
Salary: $65 – $85 per year (Estimated)
Location: Irvine, CA
Recruiter / Company – Contact Information
Recruiter / Employer: Valzo Soft Solutions
Email: ijeet@valzosoft.com
Recruiter Notice:
To remove this job posting, please send an email from
ijeet@valzosoft.com with the subject:
DELETE_JOB_ID_7009