Allegiant

Allegiant

Identity & Access Management (IAM) Engineer III

Las Vegas, NV · Mid

No sponsorship$150k-$184kDetected 195 days ago
PythonBashPowerShellGitAWSGCPAzureTerraformCI/CDRESTOAuthCybersecuritySIEMSOARDetection EngineeringComplianceAgileCustomer SupportZero TrustHIPAALeadership

About the role

  • Certification: IAM or Cyber related certifications.
  • Regular attendance is a requirement of the role.
  • Exposure to moderate noise (i.e. business office with computers, phones, printers, and foot traffic), temperature and light fluctuations.

Responsibilities

  • Job Duties • Architect, engineer, and support enterprise IAM solutions across IGA, PAM, SSO, and MFA platforms. • Own and manage the organization's identity architecture, including cloud and hybrid identity models. • Design and implement identity lifecycle management (joiner, mover, leaver) and access governance processes. • Lead onboarding and integration of applications into SSO, MFA, and IGA platforms. • Design and enforce role-based access control (RBAC) and least-privilege access models. • Implement and manage PAM solutions for privileged accounts, service accounts, and secrets management. • Manage cloud identity platforms (e.g., Azure AD / Entra ID, AWS IAM, GCP IAM) and their integrations. • Develop and maintain IAM standards, architecture diagrams, and technical documentation. • Serve as a subject matter expert for identity-related security incidents, audits, and compliance efforts. • Collaborate with application, cloud, infrastructure, and security teams to deliver secure identity solutions. • Mentor junior IAM engineers and contribute to IAM strategy and roadmap planning. • Evaluate IAM tools and technologies and recommend improvements or new capabilities. • Other duties as assigned.
  • Architect, engineer, and support enterprise IAM solutions across IGA, PAM, SSO, and MFA platforms. • Ability to lead cross functional initiatives and influence identity security standards across the enterprise. • Experience integrating IAM platforms with SIEM, SOAR, and security monitoring solutions. • Experience using REST APIs and automation frameworks to integrate IAM systems. • Familiarity with Git based workflows and Agile delivery methodologies. • Own and manage the organization's identity architecture, including cloud and hybrid identity models. • Experience managing hybrid identity environments, including Active Directory, Microsoft Entra ID, AWS IAM, and GCP IAM. • Design and implement identity lifecycle management (joiner, mover, leaver) and access governance processes. • Lead onboarding and integration of applications into SSO, MFA, and IGA platforms. • Design and enforce role based access control (RBAC) and least privilege access models. • Implement and manage PAM solutions for privileged accounts, service accounts, and secrets management. • Manage cloud identity platforms (e.g., Azure AD / Entra ID, AWS IAM, GCP IAM) and their integrations. • Develop and maintain IAM standards, architecture diagrams, and technical documentation. • Serve as a subject matter expert for identity related security incidents, audits, and compliance efforts. • Collaborate with application, cloud, infrastructure, and security teams to deliver secure identity solutions. • Mentor junior IAM engineers and contribute to IAM strategy and roadmap planning. • Evaluate IAM tools and technologies and recommend improvements or new capabilities. • Ensure any direct reports understand and apply our Customer Commitment and customer service standards to their daily responsibilities as appropriate. • Model Allegiant's customer service standards in personal actions and when providing leadership direction. • Other duties as assigned.

Requirements

  • The ideal candidate combines deep, hands on engineering experience with strong architectural skills and can partner closely with security, infrastructure, cloud, and application teams.
  • Must be authorized to work in the US as defined by the Immigration Act of 1986.
  • Bachelor's Degree in cybersecurity or Computer Science.
  • Years of Experience: Minimum seven (7) years of experience in related field.
  • The Physical Demands and Work Environment described here are a representative of those that must be met by a Team Member to successfully perform the essential functions of the role.
  • May be required to lift, push, pull, or carry up to 50 lbs.
  • May be required to work various shifts/days in a 24 hour situation.
  • Ability to work in a confined area as well as the ability to sit at a computer terminal for an extended period of time.

Nice to have

  • Strong hands on experience implementing and supporting IGA, PAM, SSO, MFA, and identity federation solutions.
  • Experience implementing Conditional Access, adaptive authentication, and Zero Trust identity controls.
  • Experience securing machine identities, service accounts, and workload identities.
  • Familiarity with Identity Threat Detection & Response (ITDR) concepts and tooling.
  • Strong understanding of Active Directory, LDAP, Kerberos, and enterprise directory services.
  • Experience designing and implementing enterprise IAM architectures.
  • Solid understanding of authentication and authorization protocols (SAML, OAuth 2.0, OpenID Connect, LDAP).
  • Experience managing cloud identity services (Azure AD / Entra ID, AWS IAM, GCP IAM).

Compensation

  • $150k-$184k

Equal opportunity

  • Employer: Disability/Veteran For more information, see https://allegiantair.jobs
  • Disability/Veteran For more information, see https://allegiantair.jobs
  • EEO Statement We welcome all individuals from varied backgrounds and experiences to apply.

Visa & Work Authorization

  • Must be authorized to work in the US as defined by the Immigration Act of 1986.

This listing is sourced directly from Allegiant's careers page and normalized into a canonical job model.