About The Position

This is a remote Senior Security Engineer position specializing in Identity and Access Management (IAM) with a strong focus on Policy Based Access Control (PBAC). The role involves designing, authoring, and deploying dynamic authorization policies aligned with complex business requirements. The ideal candidate will have hands-on experience with PBAC platforms, cloud-native infrastructure, automation, and modern DevSecOps practices. The candidate should be located in one of the following Metro locations: Louisville KY, NYC Metro, Dallas Metro, Charlotte NC Metro, South Florida, Washington DC metro, Chicago, Boston, Atlanta, Nashville.

Requirements

  • 3 to 5 years of hands‑on experience in Identity and Access Management (IAM).
  • Strong practical expertise in RBAC and PBAC concepts and implementations.
  • Hands‑on experience authoring and deploying PBAC policies using enterprise authorization tools.
  • Solid understanding of dynamic authorization and policy‑driven access control models.
  • Strong experience working with REST APIs.
  • Proficiency with SQL, including DDL and data modeling.
  • Hands‑on experience with Azure infrastructure and AKS.
  • Good understanding of networking fundamentals in cloud and distributed systems.
  • Experience using GitHub, GitHub Actions, and CI/CD pipelines.
  • Automation experience using PowerShell and/or shell scripting.
  • Excellent documentation, communication, and collaboration skills.
  • Ability to provide a high speed DSL or cable modem for a home office.
  • A minimum standard speed for optimal performance of 25x10 (25mpbs download x 10mpbs upload) is required.
  • A dedicated space lacking ongoing interruptions to protect member PHI / HIPAA information.

Nice To Haves

  • Direct experience with PlainID or similar PBAC / authorization platforms
  • Experience supporting enterprise‑scale IAM or Zero Trust architectures
  • Background working in cloud‑native, microservices‑based environments
  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field
  • Industry‑recognized security certifications such as CISSP, CCSP, CISM, or CompTIA Security+

Responsibilities

  • Design, develop, and deploy Policy‑Based Access Control (PBAC) policies to enable fine‑grained and dynamic authorization.
  • Work closely with business, security, and application teams to understand business requirements and translate them into scalable, secure authorization policies.
  • Author, test, deploy, and manage policies in PBAC platforms; experience with PlainID is highly preferred.
  • Lead policy lifecycle management, including documentation, versioning, change tracking, and governance.
  • Diagnose and resolve issues with existing authorization policies and implementations, improving stability and performance.
  • Design and integrate authorization solutions using RESTful APIs.
  • Work extensively with SQL, including schema design, DDL operations, and data analysis to support IAM use cases.
  • Deploy, manage, and support IAM workloads on Azure infrastructure, with strong hands‑on experience in Azure Kubernetes Service (AKS).
  • Demonstrate a solid understanding of networking concepts, including secure API communication, authentication flows, and cloud networking fundamentals.
  • Implement secure DevOps practices using GitHub, GitHub Actions, and CI/CD pipelines for policy and application deployments.
  • Develop PowerShell and shell scripts to automate IAM processes, enhance operational efficiency, and reduce manual effort.
  • Ensure all IAM and authorization solutions align with organizational security standards, compliance requirements, and best practices.

Benefits

  • medical, dental and vision benefits
  • 401(k) retirement savings plan
  • time off (including paid time off, company and personal holidays, volunteer time off, paid parental and caregiver leave)
  • short-term and long-term disability
  • life insurance
  • bonus incentive plan
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service