IAM Engineer

Simpson Thacher & Bartlett LLPNew York, NY
1d$160,000 - $180,000Hybrid

About The Position

The IAM Engineer will support the design, implementation and ongoing operations of core enterprise identity and access management and PKI certificate systems. This role will be 3 days onsite in NYC and the remaining remote, with the exception of the first two weeks of training which will be 4 days onsite. Simpson Thacher & Bartlett LLP is one of the world’s leading international law firms. The Firm was established in 1884 and has approximately 2,000 lawyers. Headquartered in New York with offices in Beijing, Boston, Brussels, Hong Kong, Houston, London, Los Angeles, Luxembourg, Palo Alto, San Francisco, São Paulo, Tokyo and Washington, D.C., the Firm provides coordinated legal advice and transactional capability to clients around the globe.

Requirements

  • 5+ years of experience in IT or Information Security
  • Expert understanding of IAM concepts including authentication, authorization, RBAC, and least privilege
  • Strong hands-on experience working in Active Directory and Microsoft Entra ID environments
  • Experience working with PKI and certificate lifecycle management systems
  • Experience implementing federated identities and SSO integrations using SAML
  • Understanding of authentication protocols including Kerberos, SAML, OAuth, OIDC, etc.
  • Familiarity with operating systems (Windows, Linux) and networking fundamentals
  • Understanding of zero-trust and modern security architectures
  • Strong analytical and problem-solving skills
  • Detail oriented with a docu on security and reliability
  • Excellent communication and teamwork skills.
  • Ability to learn quickly and adapt to new technologies.
  • BA in Information Security, IT Systems Management, Computer Science, or related discipline, or equivalent experience

Nice To Haves

  • Security Certifications: Security+, CEH, CRISC, CISM, CISA, CISSP, CCNP Security, GIAC GSEC, and Microsoft Systems Developer training.
  • Automation of security tasks (Python, C++, Java, Ruby, Bash etc)

Responsibilities

  • Administer and support Active Directory and Microsoft Entra ID environments, including users, groups, organizational units, and access policies.
  • Support identity lifecycle processes including provisioning, modification, and account termination.
  • Manage and support authentication protocols and systems including Kerberos, LDAP, SAML, and MFA platforms
  • Onboard applications to SSO platforms
  • Administer enterprise PKI (public key infrastructure), including certificate issuance, renewal, revocation, and support
  • Assist in the design, maintenance, and testing of role-based access and entitlements across infrastructure and applications.
  • Assist with periodic access reviews and certification campaigns.
  • Implement access requests according to established procedures and security policies, ensuring least privileged access.
  • Provide Tier 1 & 2 support for IAM related issues, troubleshooting access problems and escalating complex issues to leadership.
  • Create and maintain clear and concise documentation related to IAM processes, configurations, and troubleshooting steps.
  • Assist with monitoring IAM systems for anomalies and generate reports on access activity.
  • Participate in testing of IAM system updates, patches, and new features.
  • Assist in the development and implementation of automation scripts to streamline IAM processes (e.g., PowerShell, Python).
  • Work closely with other IT teams (Help Desk, Applications, Infrastructure, Information Security) to ensure seamless integration of IAM solutions.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service