Principal Security Access Engineer
$133,000–$133,000 year
RemoteUnited States
Job Summary
Implement robust IAM/PAM solutions using SailPoint Identity Security Cloud, BeyondTrust, Microsoft Entra, and Silverfort, while designing governance frameworks for AI agents and non-human identities. Manage Conditional Access policies to enforce risk-based controls and ensure seamless integration with secrets management and CI/CD pipelines. Provide indirect leadership to IAM engineers, conduct training on agentic identity risks, and coordinate cross-functional project delivery from initiation to completion. Deliver advanced troubleshooting via scripting and automation, maintaining comprehensive documentation for all IAM processes and configurations.
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent practical experience
- Minimum of 5 years of experience in IAM
- At least 3 years in a senior or principal engineer role
- Extensive, hands-on experience with SailPoint Identity Security Cloud (ISC)
- Experience with Non-Employee Risk Management (NERM)
- Strong understanding of Privileged Access Management (PAM)
- Hands-on experience with BeyondTrust
- Proficiency with Microsoft Entra (formerly Azure AD), including Conditional Access policy design and administration
- Zero Trust expertise with technologies such as Silverfort
- Working knowledge of secrets management and vaulting platforms for securing credentials, keys, and tokens used by applications, service accounts, and automations
- Familiarity with identity considerations for AI agents and non-human identities — authentication patterns, scoped authorization, credential lifecycle, and monitoring for agentic/automated access
- Proficiency in scripting and automation (e.g., REST APIs, PowerShell) for IAM tasks
- Excellent analytical, problem-solving, and decision-making skills
- Strong communication and interpersonal skills, with the ability to work effectively with and influence stakeholders at all levels
- Relevant certifications such as CISSP, CISM, or IAM-related certifications
- Trailhead participation
- Consent to Microsoft Copilot's AI technology recording and transcribing interview
Desired Qualifications
- Experience with Non-Employee Risk Management (NERM)
- Relevant certifications such as CISSP, CISM, or IAM-related certifications
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.