Identity & Access Management (IAM) Engineer

Customers BankMalvern, PA

About The Position

At Customers Bank, we believe in working hard, working smart, working together to deliver memorable customer experiences and having fun. Our vision, mission, and values guide us along our path to achieve excellence. Passion, attitude, creativity, integrity, alignment, and execution are cornerstones of our behaviors. They define who we are as an organization and as individuals. Everyone is encouraged to have personal development plans. By doing so, our team members are on their way to achieve their highest potential and be successful in their personal and professional lives. Must be legally eligible to work in the United States without sponsorship, now or in the future, to be considered. Who is Customers Bank? Founded in 2009, Customers Bank is a super-community bank with over $22 billion in assets. We believe in dedicated personal service for the businesses, professionals, individuals, and families we work with. We get you further, faster. Focused on you: We provide every customer with a single point of contact. A dedicated team member who’s committed to meeting your needs today and tomorrow. On the leading edge: We’re innovating with the latest tools and technology so we can react to market conditions quicker and help you get ahead. Proven reliability: We always ground our innovation in our deep experience and strong financial foundation, so we’re a partner you can trust. We are seeking a hands-on Identity and Access Management (IAM) Engineer to support the implementation and operation of the bank’s identity and access management program. This role focuses on platform administration, application integration, and support of IAM functions across critical cloud and on-prem environments. Responsibilities include creating and managing access for users and non-human accounts, building and maintaining roles and entitlements for various business units, and supporting secure authentication and authorization across enterprise systems. In addition, this role requires proactive governance of identities and access, including identifying stale access, orphaned accounts, excessive permissions, and other identity-related risks while driving improvements through automation and process optimization.

Requirements

  • 2–4 years of experience in IAM engineering or related roles.
  • Experience with IAM platforms such as Microsoft Entra ID, Active Directory, CyberArk, and Veza (or similar IGA tools).
  • Experience supporting IAM provisioning, identity lifecycle management, and access governance processes.
  • Experience integrating applications using SAML, OAuth/OIDC, SCIM, and REST APIs.
  • Experience supporting cloud identity security capabilities including conditional access and securing SaaS applications.
  • Strong understanding of IAM fundamentals including RBAC, ABAC, MFA, least privilege, and identity lifecycle management.
  • Proficiency in scripting using PowerShell, Python, or similar technologies.
  • Familiarity with structured change management and DevOps processes.
  • Strong troubleshooting, analytical, and problem-solving skills.
  • Strong communication and documentation skills.

Nice To Haves

  • Experience configuring and administering Veza or other similar IGA tools for identity governance and access visibility.
  • Experience with Microsoft Entra ID capabilities including SSO, MFA, conditional access, and identity protection.
  • Experience with CyberArk for privileged access management, credential vaulting, and privileged session management.
  • Understanding of integrating IAM processes with ServiceNow or similar ITSM platforms for provisioning and access request workflows.
  • Familiarity with cloud and SaaS identity security concepts and controls.
  • Ability to work within the Microsoft ecosystem and quickly learn additional enterprise applications and IAM technologies.
  • Familiarity with AI and automation tools that support productivity, workflow efficiency, and client engagement.

Responsibilities

  • Conduct configuration, integration, maintenance, performance management, troubleshooting, and operational support of IAM platforms and services.
  • Support IAM technology deployment projects involving platforms such as Veza, Microsoft Entra ID, Active Directory, and CyberArk.
  • Support cloud identity security capabilities including conditional access, identity protection, MFA, and Zero Trust-aligned controls.
  • Perform system-level scripting and automation using technologies such as PowerShell and Python to support IAM processes and integrations.
  • Build and maintain integrations using SAML, OAuth/OIDC, SCIM, and REST APIs to support secure authentication and authorization.
  • Assist in identifying stale access, orphaned accounts, excessive permissions, and other identity governance risks across environments.
  • Participate in provisioning, deprovisioning, onboarding, offboarding, and access modification activities while supporting automation and process improvements.
  • Identify opportunities to streamline manual IAM processes through automation, scripting, and workflow enhancements.
  • Support enforcement of IAM security standards and best practices including RBAC, ABAC, MFA, least privilege, and secure authentication patterns.
  • Assist with tracking and reporting IAM operational metrics such as provisioning timelines, access review completion, and access governance findings.
  • Partner with IAM Analysts, application owners, infrastructure teams, and security teams to deliver secure and scalable IAM solutions.
  • Document IAM integrations, workflows, platform configurations, standards, and operational procedures.
  • Support audit activities, evidence collection, and remediation efforts related to IAM controls and regulatory requirements.
  • Maintain strong communication and collaboration across technical and business teams.

Benefits

  • Personal development plans
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service