AWS IAM Engineer

CapgeminiDallas, TX
Remote

About The Position

We are looking for an experienced AWS IAM Engineer to implement, manage, and scale enterprise Identity and Access Management (IAM) solutions across AWS environments. This role focuses on hands-on engineering, automation, and standardization of IAM workloads, with a strong emphasis on IAM persona buildout for services, infrastructure-as-code modernization, and integration with Identity Directory / Identity Governance (IDC) platforms.

Requirements

  • Experienced AWS IAM Engineer
  • Hands-on engineering, automation, and standardization of IAM workloads
  • Strong emphasis on IAM persona buildout for services
  • Infrastructure-as-code modernization
  • Integration with Identity Directory / Identity Governance (IDC) platforms
  • Experience with AWS IAM roles, policies, permission boundaries, and trust relationships
  • Knowledge of least-privilege access models using RBAC and ABAC principles
  • Experience converting CloudFormation to Terraform
  • Experience engineering Terraform modules for reusable IAM components
  • Experience maintaining and enhancing Terraform pipelines
  • Experience migrating legacy IAM implementations

Responsibilities

  • Engineer and maintain AWS IAM workloads across multi-account environments
  • Build, configure, and manage IAM roles, policies, permission boundaries, and trust relationships for human and service identities
  • Implement least-privilege access models using RBAC and ABAC principles
  • Troubleshoot and resolve IAM-related access and permission issues
  • Design and implement IAM personas for services, applications, and platform workloads
  • Support enterprise-scale rollout of standardized IAM personas across development, staging, and production environments
  • Ensure IAM persona consistency, reusability, and compliance across teams and accounts
  • Partner with security, platform, and application teams to onboard services to approved IAM models
  • Convert and modernize CloudFormation-based IAM roles and policies to Terraform
  • Engineer Terraform modules for reusable IAM components (roles, policies, instance profiles, service roles)
  • Maintain and enhance Terraform pipelines for IAM deployments
  • Support migration activities from legacy IAM implementations (e.g., CNF or bespoke frameworks) to Terraform
  • Integrate AWS IAM with IDC solutions for identity lifecycle management
  • Engineer IAM workflows supporting identity provisioning, deprovisioning, and access reviews
  • Support federation and identity synchronization between AWS and IDC platforms
  • Assist with audit readiness, compliance reporting, and governance controls

Benefits

  • Paid time off based on employee grade (A-F), defined by policy: Vacation: 12-25 days, depending on grade, Company paid holidays, Personal Days, Sick Leave
  • Medical, dental, and vision coverage
  • Retirement savings plans (e.g., 401(k) in the U.S., RRSP in Canada)
  • Life and disability insurance
  • Employee assistance programs
  • Other benefits as provided by local policy and eligibility
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service