IAM Security Engineer

Posted 8 Days Ago
Be an Early Applicant
Remote
168K-240K Annually
Artificial Intelligence • Cloud • Information Technology • Security • Software • Cybersecurity
Helping Build a Better Internet
The Role
As an Identity and Access Management (IAM) Security Engineer, you will design, implement, and manage identity and access management solutions to ensure secure user access and authentication. You will work with various technologies and tools such as Open Policy Agent, Terraform, and Ansible.
Summary Generated by Built In

Available Locations: Hybrid from Austin, TX, Washington D.C., San Francisco, CA, Mexico City, MX
About the DepartmentThe Identity and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges, and authentication mechanisms across internal systems, applications, and data. Our mission is to safeguard the organization against unauthorized access, protect sensitive information, and enable seamless user experiences while adhering to industry best practices and compliance standards.
About the Role
As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling identity and access management solutions for Cloudflare's internal workforce and workloads. You will be responsible for safeguarding our systems, applications, and data by ensuring secure user access, authentication, and authorization mechanisms.
What You'll Do

  • Design, build, test, and deploy IAM solutions across authentication, authorization, and accounting
  • Leverage Cloudflare products to secure our identities
  • Build SSO integrations leveraging SAML, OIDC, OAuth, and SCIM
  • Build and manage the Identity Governance and Administration platform
  • Develop automated roles leveraging RBAC and ABAC
  • Build and manage an access certification platform
  • Build and manage a Privileged Access Management (PAM) platform
  • Provide operational support of IAM systems including an on-call rotation that may include after hours calls


Desirable skills, knowledge and experience
Security engineers take part in a wide variety of tasks and projects in the team. One individual is not expected to know everything, but a working knowledge in several of the following areas is required:

  • Strong understanding of identity federation (SAML, OAuth, OpenID Connect, etc.)
  • Experience implementing Identity Governance and Administration (IGA) solutions including lifecycle management, SCIM, birthright access (RBAC, ABAC), and access certifications
  • Experience with secure configuration of containerized application platforms (e.g. Kubernetes)
  • Advanced scripting experience (Python, TypeScript, Bash, etc.)
  • Experience implementing Zero Trust controls
  • Experience integrating with applications and SaaS solutions
  • Experience with Identity and Access Management policy application and enforcement
  • Experience working with Identity Threat Detection & Response (ITDR)
  • Experience working with infrastructure as code and configuration management tools like Terraform, Ansible, etc.


Compensation
Compensation may be adjusted depending on work location.

  • For Colorado, Illinois, Maryland and Minnesota based hires: Estimated annual salary of $137,000 - $167,000.
  • For New York City, Washington, Washington D.C. and California (excluding Bay Area) based hires: Estimated annual salary of $154,000 - $188,000.
  • For Bay Area based hires: Estimated annual salary of $162,000 - $198,000.


Equity
This role is eligible to participate in Cloudflare's equity plan.
Benefits
Cloudflare offers a complete package of benefits and programs to support you and your family. Our benefits programs can help you pay health care expenses, support caregiving, build capital for the future and make life a little easier and fun! The below is a description of our benefits for employees in the United States, and benefits may vary for employees based outside the U.S.
Health & Welfare Benefits

  • Medical/Rx Insurance
  • Dental Insurance
  • Vision Insurance
  • Flexible Spending Accounts
  • Commuter Spending Accounts
  • Fertility & Family Forming Benefits
  • On-demand mental health support and Employee Assistance Program
  • Global Travel Medical Insurance


Financial Benefits

  • Short and Long Term Disability Insurance
  • Life & Accident Insurance
  • 401(k) Retirement Savings Plan
  • Employee Stock Participation Plan


Time Off

  • Flexible paid time off covering vacation and sick leave
  • Leave programs, including parental, pregnancy health, medical, and bereavement leave

Top Skills

Ansible
Open Policy Agent
Terraform
The Company
Austin, TX
3,900 Employees
Hybrid Workplace
Year Founded: 2009

What We Do

Cloudflare, Inc. (NYSE: NET) is the leading connectivity cloud company on a mission to help build a better Internet. It empowers organizations to make their employees, applications and networks faster and more secure everywhere, while reducing complexity and cost. Cloudflare’s connectivity cloud delivers the most full-featured, unified platform of cloud-native products and developer tools, so any organization can gain the control they need to work, develop, and accelerate their business.

Powered by one of the world’s largest and most interconnected networks, Cloudflare blocks billions of threats online for its customers every day. It is trusted by millions of organizations – from the largest brands to entrepreneurs and small businesses to nonprofits, humanitarian groups, and governments across the globe.

Why Work With Us

Cloudflare employees come from all walks of life. We are mission-driven, and our team is energized by a collaborative, creative environment that celebrates our differences and fosters new ways to grow together.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery

Cloudflare Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Not Specified
Austin, TX

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account