Senior IT Security Analyst

Advanced Energy Industries, Inc•Denver, CO
•$110,000 - $150,000•Onsite

About The Position

The IT Security Analyst III plays a critical role in shaping the future of identity security at Advanced Energy. This position offers the opportunity to lead enterprise-wide IAM initiatives, influence Zero Trust strategy, and modernize identity controls across global cloud and SaaS environments. Working alongside security, infrastructure, and business leaders, you'll drive solutions that protect the business while enabling growth and innovation. This is an opportunity to make a visible impact in a global technology organization.

Requirements

  • Advanced knowledge of Identity and Access Management (IAM) principles, including Identity Governance and Administration (IGA), Privileged Access Management (PAM), authentication, authorization, and identity lifecycle management.
  • Strong understanding of modern identity security concepts, including Zero Trust, least privilege, adaptive authentication, risk-based access controls, continuous access evaluation, and identity threat detection and response (ITDR).
  • Advanced knowledge of on-premise, cloud, and hybrid identity environments.
  • Strong understanding of authentication, federation, and directory protocols, including SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), LDAP, Kerberos, RADIUS, and SCIM.
  • Knowledge of access control frameworks, including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC).
  • Strong analytical and problem-solving skills, with the ability to diagnose and resolve complex technical issues.
  • Excellent verbal and written communication skills, including the ability to communicate technical concepts to both technical and non-technical audiences.
  • Strong organizational and project leadership skills with the ability to manage multiple priorities and initiatives simultaneously.
  • Demonstrated ability to influence stakeholders and collaborate effectively across cross-functional teams.
  • Ability to develop and maintain technical documentation, standards, procedures, and operational runbooks.
  • Seven (7) or more years of experience in Identity and Access Management, Cybersecurity Engineering, Information Security, or a related technical discipline.
  • Five (5) or more years of experience administering and supporting enterprise IAM platforms and access management processes.
  • Three (3) or more years of experience supporting on-premise, cloud, and/or hybrid identity directory services in a medium to large enterprise environment.
  • Experience implementing and supporting Identity Governance and Administration (IGA) and Privileged Access Management (PAM) solutions.
  • Experience administering enterprise authentication solutions, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), federation services, and conditional access policies.
  • Experience integrating identity platforms with cloud providers, enterprise applications, and SaaS solutions.
  • Experience designing and implementing user provisioning, deprovisioning, access reviews, role management, and access certification processes.
  • Experience developing automation solutions using PowerShell, Python, SQL, Power Automate, or similar technologies.
  • Experience leading technical projects from planning and design through implementation and operational support.
  • Experience collaborating with Information Security, Infrastructure, Application Development, Audit, and business stakeholders to deliver IAM solutions.
  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, Engineering, or a related field; or an equivalent combination of education, training, and experience.

Nice To Haves

  • Knowledge of regulatory and compliance frameworks such as SOX, NIST, ISO 27001, and CIS Controls.
  • Familiarity with IT and Security platforms or applications within Customer Relationship Management (CRM), Zero Trust, and other enterprise driven product families.
  • Understanding of cloud security architectures within Azure, AWS, and Google Cloud Platform environments.
  • Experience supporting global or manufacturing organizations.
  • Experience supporting regulatory audits, compliance initiatives, and remediation activities.
  • Experience implementing Zero Trust, Privileged Access Management, or enterprise IAM modernization programs.
  • Microsoft Certified: Identity and Access Administrator Associate (SC-300)
  • Microsoft Certified: Cybersecurity Architect Expert (SC-100)
  • Certified Information Systems Security Professional (CISSP)
  • Certified Identity and Access Manager (CIAM)
  • Certified Identity Management Professional (CIMP)
  • Additional cloud, cybersecurity, or identity management certifications relevant to the role.

Responsibilities

  • Design, implement, and maintain enterprise Identity and Access Management (IAM) solutions supporting workforce, privileged, and application identities.
  • Lead the integration, administration, and optimization of IAM platforms.
  • Develop IAM architecture standards, design patterns, and technical roadmaps that align with business and security objectives.
  • Establish scalable identity solutions that support cloud-first and hybrid environments.
  • Evaluate emerging IAM technologies and industry best practices to strengthen the organization's security posture.
  • Lead initiatives related to Identity Governance and Administration (IGA), Access Management, Privileged Access Management (PAM), Identity Threat Detection and Response (ITDR), and Zero Trust security programs.
  • Design and implement identity lifecycle management processes, including provisioning, deprovisioning, role management, and access certification activities.
  • Develop and maintain authorization models including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC).
  • Support segregation of duties (SoD), least privilege, just-in-time access, and privileged account governance programs.
  • Administer and enhance enterprise authentication services, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), passwordless authentication, federation, and conditional access controls.
  • Manage and support on-premise, cloud, and hybrid identity environments.
  • Configure Identity Protection policies, Conditional Access policies, risk-based authentication controls, and adaptive access capabilities.
  • Design and maintain integrations between identity platforms, cloud services, and business applications through APIs, provisioning connectors, and automation frameworks.
  • Implement secure identity integrations with enterprise applications, SaaS platforms, and cloud environments including Microsoft Azure, AWS, and Google Cloud Platform.
  • Partner with application owners and development teams to ensure secure authentication and authorization controls are implemented consistently across platforms.
  • Support application onboarding, federation, provisioning, and access governance activities.
  • Develop automation solutions using PowerShell, Python, SQL, Power Automate, or similar technologies to improve operational efficiency and reduce manual effort
  • Create and maintain technical documentation, architecture diagrams, operational procedures, and support runbooks.
  • Recommend and implement process improvements that enhance security, user experience, and operational effectiveness.
  • Serve as a senior IAM subject matter expert and trusted advisor to Information Security, IT, Audit, Compliance, and business stakeholders.
  • Lead technical projects from planning and design through deployment and operational transition.
  • Mentor junior employees and provide technical guidance across IAM-related initiatives.
  • Support audit, compliance, and regulatory activities by implementing appropriate controls and providing required evidence.
  • Participate in identity-related incident response activities and root cause investigations.
  • Stay informed of emerging IAM threats, technologies, and industry trends.
  • Perform other duties as assigned.

Benefits

  • Medical - multiple medical plans are available to choose from
  • Short and long-term disability and life insurance
  • Health savings and flexible spending accounts
  • Generous time off policy starting with 3 weeks of paid vacation, 7 days of paid sick time, and 12 paid holidays
  • 8 hours of paid volunteer time off
  • 8 weeks of paid parental leave for both parents
  • Company matched 401(k)
  • Tuition reimbursement
  • Expanded mental health coverage and employee assistance programs
  • Critical illness, accident and hospital indemnity, pet insurance, identity theft, and legal assistance
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service