Senior IAM Engineer

Northwestern MutualFranklin, WI
$118,960 - $205,200

About The Position

This role is part of the centralized IAM Operations team responsible for delivering reliable, scalable identity and access management services across the enterprise. The team focuses on operational excellence, automation, service optimization, and rapid problem resolution to support IAM platforms, integrations, and end-user access needs. The role combines hands-on operational support, engineering mindset, and process improvement, ensuring IAM services are secure, efficient, and continuously improving. This includes proactive monitoring, automation development, incident and request management, and collaboration with engineering, security, and business teams.

Requirements

  • Bachelor's degree in Cyber Security, Computer Science, Information systems or equivalent work experience in the IT field, with at least a portion of that time in Security related position
  • 4-5 years of professional experience required
  • Expertise in one of the following domains: Directory Services (SSO/Federation, Active Directory, Azure), Identity Governance & Administration (Sailpoint IIQ, Access Certifications), Privileged Access, Client Identity and Access Management, Cloud IAM
  • General experience in the following domains: Directory Services (SSO/Federation, Active Directory, Azure), Identity Governance & Administration (Sailpoint IIQ, Access Certifications), Privileged Access, Client Identity and Access Management, Cloud IAM
  • Relevant certifications such as CISSP, CISM, or similar certifications are highly desirable
  • Experience with engineering best practices to include analyzing, designing, developing, and deploying and supporting software solutions and/or infrastructure implementations/upgrades.
  • Leadership, communication, and interpersonal skills, with the ability to collaborate with individuals at all levels of the organization.
  • Proven experience in designing and implementing IAM solutions, including integration with various systems and platforms.
  • Competency with one or more scripting/programming languages such as Python, JavaScript, Java, Ruby, Go, PowerShell, Bash, C#, C/C++, etc.
  • Strong ability to align and mature to security practices.
  • Strong ability to explain technical solutions to technical teams and non-technical teams.
  • Strong documentation, testing and automation skills.
  • Strong sense of ownership and the ability to work with a limited set of requirements.
  • Strong ability to align technical needs to business processes.
  • Strong ability to prioritize work based on business objectives.
  • Strong ability to breakdown work to deliver value incrementally.
  • Business Automation - Applies knowledge and utilizes systems that facilitate or automate one or more business application solutions, including linking rules to workflow management and requirements acquisition.
  • Continuous Improvement - Utilizes available methods to identify opportunities, executes solutions and measures impact to improve existing practices and processes. Implements feedback and lessons learned. Leverages the ability to identify and experiment assumptions and hypothesis for products to be able to refine and improve them at any stage of the life cycle.
  • Identity & Access Management Industry Standards - Utilizes IAM industry standards, reference architectures and patterns. Demonstrates and applies AAA (Authentication, Authorization, and Accounting) identity management protocols and access management infrastructure.
  • Identity Protocols - Utilizes identity protocols such as, SAML, OAuth, OpenID, LDAP, and Kerberos to provide strong authentication for network resources, including devices, applications and databases.
  • Security Practices - Undertakes best practices of technologies, policies, and processes designed to protect networks, devices, programs, and data from attack, damage, or unauthorized access.
  • Technical Problem Solving - Conducts in-depth analysis of technology needs, issues, and roadblocks within assigned scope, applies best practice based on experience and expertise, explores the “art of possible”. Solves problems effectively and gains alignment on the path forward. Defines, understands, and documents what is being solved for.

Nice To Haves

  • Experience preferred with Agile methodologies/DevOps environment.

Responsibilities

  • Provide centralized tier 2/3 operational support for IAM platforms (e.g., identity governance, authentication, directory services, PAM)
  • Handle incidents, service requests, and escalations in accordance with SLA/OLA commitments
  • Perform root cause analysis (RCA) and drive resolution of recurring issues
  • Design, develop, and maintain automation scripts and workflows to reduce manual effort
  • Improve operational efficiency through scripting (e.g., PowerShell, Python) and orchestration tools
  • Identify repetitive tasks and implement automation or self-service solutions
  • Contribute to DevOps practices (CI/CD pipelines, Terraform code)
  • Identify process inefficiencies and implement improvements
  • Maintain and enhance operational documentation, runbooks, and knowledge base articles
  • Partner with IAM engineering to transition new capabilities into operations (run/support model)
  • Drive standardization across IAM workflows and support processes
  • Ensure IAM operations comply with security policies, audit requirements, and regulatory standards
  • Support audit requests, access reviews, and evidence collection
  • Assist in remediation of audit findings related to IAM controls
  • Provide guidance and support to application teams integrating with IAM services
  • Participate in incident bridges and cross-functional troubleshooting efforts
  • Track and report on operational KPIs (incident volume, MTTR, automation adoption, etc.)
  • Use data to identify trends and drive improvements

Benefits

  • The standard pay structure is listed but if you’re living in California, New York City or other eligible location, geographic specific pay structures, compensation and benefits could be applicable
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service