About The Position

The Security Engineer – Identity, Access Management & Detection is responsible for designing, implementing, and operating AirLife's identity and access management infrastructure while also contributing to the detection and response capabilities that protect the enterprise from evolving cyber threats. This role manages user identities, authentication mechanisms, access privileges, and privileged account controls across AirLife's global environment, while partnering with AirLife's managed detection and response provider (Arctic Wolf) to ensure that identity-based and broader cyber threats are effectively detected, investigated, and remediated. This dual-focus role is central to AirLife's Zero Trust maturity journey and its ability to maintain a secure, compliant, and resilient IT environment.

Requirements

  • Deep understanding of Identity and Access Management architecture, including IAM lifecycle management, Identity Governance and Administration (IGA), and Privileged Access Management (PAM).
  • Hands-on experience with Microsoft Entra ID and on-premises Active Directory; PowerShell scripting experience required.
  • Experience with Cisco Duo MFA, Microsoft Intune MDM, and the Microsoft Defender security suite.
  • Practical knowledge of automated provisioning and deprovisioning, role-based access control (RBAC), Single Sign-On (SSO) configuration, LDAP, and federation standards.
  • Working knowledge of security threat detection concepts, SIEM platform interaction, and security alert triage; experience collaborating with MDR/MSSP providers on alert tuning and incident escalation (Arctic Wolf experience preferred).
  • Understanding of Zero Trust architecture principles and their application to identity-first security design.
  • Experience with vulnerability management, endpoint protection agent management, and data loss prevention tooling.
  • Knowledge of security compliance frameworks (NIST, ISO 27001, CIS Controls, GDPR) with practical experience applying them to IAM control design.
  • Experience with backup and disaster recovery systems (Rubrik/Azure preferred).
  • Strong root cause analysis and technical troubleshooting skills for complex identity and security issues.
  • Ability to manage concurrent projects and tasks in a dynamic environment; Smartsheet experience preferred.
  • Experience with KnowBe4 security awareness and phishing simulation administration preferred.
  • Relevant IAM or cybersecurity certification preferred (Microsoft SC-300, CompTIA Security+, SSCP, or equivalent).
  • Minimum 4–8 years of IT experience with 3+ years in a cybersecurity or IAM-focused role in an enterprise environment.
  • Experience in a manufacturing, healthcare, or regulated environment preferred.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field, or equivalent experience.
  • IAM or security certification preferred.

Nice To Haves

  • Arctic Wolf experience preferred
  • Smartsheet experience preferred
  • Experience with KnowBe4 security awareness and phishing simulation administration preferred
  • Relevant IAM or cybersecurity certification preferred (Microsoft SC-300, CompTIA Security+, SSCP, or equivalent)
  • Experience in a manufacturing, healthcare, or regulated environment preferred
  • IAM or security certification preferred

Responsibilities

  • Design, implement, and continuously improve AirLife's Identity and Access Management architecture, including full IAM lifecycle management, automated provisioning and deprovisioning workflows, and role-based access control frameworks aligned to least-privilege principles.
  • Administer and optimize Microsoft Entra ID and on-premises Active Directory services, including group policy management, directory synchronization, hybrid identity configuration, and identity governance rule maintenance.
  • Manage and continuously improve AirLife's Single Sign-On and Multi-Factor Authentication platforms (Cisco Duo, Entra ID), ensuring high availability, consistent user experience, and compliance with AirLife's authentication standards.
  • Develop and maintain Privileged Access Management (PAM) and Privileged Identity Management (PIM) controls, enforcing least-privilege principles and time-bound access for administrative and privileged accounts across the environment.
  • Conduct and coordinate periodic access reviews and certification campaigns to validate compliance with AirLife's access control policies, support segregation-of-duties requirements, and produce audit evidence for internal and external auditors.
  • Partner with Arctic Wolf (MDR provider) as AirLife's primary IAM subject matter expert: ensure identity-based threat alerts are properly tuned, reviewed, and investigated; participate in security incident response activities; and contribute to alert triage and false positive reduction efforts.
  • Monitor and triage security alerts from endpoint protection, SIEM, and identity platforms; collaborate with the managed security partner on threat detection rule refinement and response playbook execution.
  • Manage endpoint protection agent configurations, patch compliance levels, and agent health across AirLife's device fleet in coordination with the Infrastructure team.
  • Administer AirLife's data loss prevention capabilities and backup/disaster recovery systems (Rubrik/Azure), ensuring configurations align with data protection and recovery time objectives.
  • Support KnowBe4 security awareness and phishing simulation administration in coordination with the Security GRC Engineer, contributing to campaign configuration and completion tracking.
  • Develop and maintain comprehensive documentation of IAM architecture, configurations, access control standards, identity governance policies, and operational runbooks.
  • Collaborate with the Infrastructure, Applications, and Security GRC teams to ensure security-by-design principles — particularly identity-first and Zero Trust concepts — are applied to new system implementations, integrations, and cloud migrations.

Benefits

  • medical
  • dental
  • vision coverage
  • 401(k)
  • paid time off
  • paid holidays
  • bereavement leave
  • Employee Assistance Program resources
  • medical leave benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service