Senior Identity Access Management Engineer - Silicon Valley, United States - iHeartMedia

    Default job background
    Full time
    Description

    What We Need:

    We are on the hunt for a seasoned Senior/Lead Identity Access Management Engineer with a proven ability to implement, execute, and support critical IAM processes, including overall identity management, access management, provisioning/de-provisioning, user onboarding/off-boarding, and access certifications/review. The ideal candidate will stay at the forefront of emerging identity trends, technologies, and best practices, and apply this knowledge to enhance iHeart's data and resource protection strategies.
    This role requires a blend of technical expertise, development skills, and a strategic mindset to design, implement, and manage cutting-edge IAM solutions.

    What You'll Do:

    Develop and implement secure IAM solutions, with emphasis on least privilege use, focusing on an end-state goal of zero-trust.

    Design and deploy access controls, identity lifecycle management, and authentication mechanisms.

    Demonstrate advanced knowledge and proficiency in AWS IAM, Google Cloud Identity, Entra ID, and AD Directory services, including directory synchronization, conditional access, and identity protection.

    Integrate IAM principles within application development, ensuring secure coding practices and implementing application identity controls.

    Leverage cloud platform expertise, to design and implement IAM solutions for hybrid and multi-cloud environments.

    Utilize programming and scripting languages, with a focus on Python or PowerShell, for developing IAM-related application code and automating IAM tasks.

    Conduct regular security assessments and audits, identifying vulnerabilities, ensuring compliance with security policies, and implementing corrective measures.

    Automate IAM tasks and workflows to enhance efficiency, leveraging scripting languages and IAM tools.

    Collaborate with the IT and cybersecurity teams to develop and enforce security policies and procedures related to identity and access management.

    Implement and manage identity federation solutions to enable Single Sign-On (SSO) across various applications and platforms.

    Proven track record of implementing Privilege Access Management (PAM) solutions at an enterprise level.

    Provide leadership within the IAM domain, guiding and mentoring junior team members, and fostering a culture of continuous improvement.

    Participate in incident response activities, providing expertise in IAM-related incidents and contributing to resolution efforts.

    All other duties as assigned.

    What You'll Need:

    • Over 7 years of experience in identity and access management, with substantial expertise in Azure Entra ID, AWS IAM, Google Cloud Identity, Active Directory, and IAM within applications.
    • Strong development skills, particularly in, and familiarity with other scripting languages like PowerShell.
    • Deep understanding of cloud platforms, particularly Azure, AWS, and GCP, with hands-on experience in integrating IAM services within these environments.
    • Solid grasp of PAM & IAM principles, technologies, and services, including SSO, MFA, OAuth, OpenID Connect, and conditional access, specifically within application development contexts.
    • Demonstrates strong organizational skills and time management.
    • Ability to self-manage multiple tasks/projects while ensuring deadlines are met.
    • Hands-on experience in administering and configuring AWS IAM, Google Cloud Identity, Entra ID, and AD Directory services, including architecture, configuration, and management.
    • Experience with Web Access Management Single Sign On & MFA.
    • Strong application development skills, with a focus on integrating IAM controls.
    • Ability to design and implement comprehensive IAM solutions tailored to organizational requirements.
    • Proficient in using scripting languages (e.g., PowerShell,) to automate IAM tasks.
    • Strong troubleshooting skills for resolving IAM-related issues and incidents.
    • Solid grasp of Identity and Access Management (IAM) principles, including authentication, authorization, and directory services.
    • Good understanding of RBAC/ ABAC methodologies.
    • Exceptionally self-motivated, effective multi-tasking, and thrives in a small team environment.
    • Possess excellent analytical, evaluative, and problem-solving abilities.
    • Possess excellent written and oral communication skills including the ability to articulate requirements to both technical and non-technical audiences.
    • Good interpersonal skills.
    • Exceptional problem-solving abilities and a proven track record of working under pressure.
    • Leadership qualities and experience in a senior or lead role, with the ability to mentor and guide others.
    • Relevant certifications: Microsoft Certified: Azure Solutions Architect Expert (AZ-303 & AZ-304), Microsoft 365 Certified: Enterprise Administrator Expert (MS-100 & MS-101), Microsoft Certified: Azure Developer Associate (AZ-204), AWS Security Specialty, or GCP Professional Cloud Architect. Must have 1 listed Microsoft Certification.
    • A university degree in the field of computer science, IT or Information Security

    What You'll Bring:

    • Respect for others and a strong belief that others should do this in return
    • Mastery of various technical disciplines and applications
    • Expertise in technology strategy
    • Organized and able to multitask on a variety of critical projects
    • Ability to work independently and provide leadership and mentorship to a team
    • Strong communication skills and ability to exchange advanced technical information and ideas effectively.
    • Ability to build trust and communicate using tact and diplomacy
    • Collect and analyze data to identify and solve complex problems that may arise
    • Efficiency with own work and understanding of the impact on team results
    • Situational awareness and tech savviness to help team efforts and their impact on the broader organizational objectives.
    • Advanced knowledge of emerging technologies

    Compensation:

    Salary to be determined by multiple factors including but not limited to relevant experience, knowledge, skills, other job-related qualifications, and alignment with market data.

    $120,000 - $150,000

    Location:

    San Antonio, TX: 20880 Stone Oak Parkway, 78258

    Position Type:

    Regular

    Time Type:

    Full time

    Pay Type:

    Salaried

    Benefits:

    iHeartMedia's benefits offering is flexible and offers a variety of choices to meet the diverse needs of our changing workforce, including the following:

    • Employer sponsored medical, dental and vision with a variety of coverage options
    • Company provided and supplemental life insurance
    • Paid vacation and sick time
    • Paid company holidays, including a floating holiday that enable our employees to celebrate the holiday of their choosing
    • A Spirit day to encourage and allow our employees to more easily volunteer in their community
    • A 401K plan
    • Employee Assistance Program (EAP) at no cost – services include telephonic counseling sessions, consultation on legal and financial matters, emotional well-being, family and caregiving
    • ​A range of additional voluntary programs, such as spending accounts, student loan refinancing, accident insurance and more

    We are accepting applications for this role on an ongoing basis.