Senior Identity Access Management Engineer

Wintrust Financial Corporation•Rosemont, IL
•$135,000 - $165,000•Hybrid

About The Position

The Senior Identity Access Management Engineer is responsible for designing, implementing, and maintaining critical security systems within the Identity domain. This role serves as the subject matter expert (SME) focused on privileged access management and NHI. As the technical leader experienced in managing hybrid IAM environments, this role requires a strong understanding of IAM best practices, emerging technologies, and the evolving threat landscape.

Requirements

  • Bachelor’s degree or equivalent experience
  • 5-7 years of prior hands-on professional experience
  • Proven experience in architecting, deploying, and managing an enterprise PAM environment with specialized knowledge related to Delinea Secret Server or EntraID PIM
  • Demonstrated ability in removing standing privilege by leveraging just-in-time access or other dynamic elevation models
  • Hands-on experience with cloud migrations while managing complex hybrid Active Directory environments

Responsibilities

  • Contribute to IAM roadmap and vision. Working with security architecture, champion zero trust implementation, least privilege, and Just-in-Time elevation.
  • Expert understanding of Delinea/Thycotic products offerings on-prem and cloud. Deep understanding of account discovery, automated account management, custom scripts and hybrid environment operations/maintenance.
  • Govern Non-Human Identity (NHI) – Lead the lifecycle management of NHI and emerging AI agents, identify and manage standing privilege and secure machine to machine (m2m) interactions across the hybrid environment.
  • Cross-Functional liaison to IT – A thorough understanding of Active Directory, EntraID, authentication protocols (Kerberos/SAML/OIDC), Conditional Access and AD sync will be used to implement secure and scalable systems.
  • Automation and Scripting – Using bash, python, or PowerShell etc., support programmatic credential rotation, API integrations and administrative tasks.
  • Define IT Policy Standards and Security Governance related to privileged accounts

Benefits

  • Medical Insurance
  • Dental
  • Vision
  • Life insurance
  • Accidental death and dismemberment
  • Short-term and long-term Disability Insurance
  • Parental Leave
  • Employee Assistance Program (EAP)
  • Traditional and Roth 401(k) with company match
  • Flexible Spending Account (FSA)
  • Employee Stock Purchase Plan at 5% discount
  • Critical Illness Insurance
  • Accident Insurance
  • Transportation and Commuting Benefits
  • Banking Benefits
  • Pet Insurance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service