Earnbetter

Job Search Assistant

SECURITY SERVICES PRINCIPAL ENGINEER

Cetera Financial Group • Remote • Posted today

Boost your interview chances in seconds

Tailored resume, cover letter, and cheat sheet

Remote • Full-time • $150,000-$190,000/yr • Principal

Job Highlights

Using AI ⚡ to summarize the original job post

Cetera Financial Group is seeking a seasoned Security Services Principal Engineer to design, implement, and maintain IAM solutions tailored to organizational requirements. This role involves assessing the current IAM environment, identifying gaps, and providing recommendations for enhancements, collaborating with stakeholders to understand business requirements, and leading the engineering team in implementing the redesigned IAM solution. The ideal candidate will have over 10 years of direct IAM related experience, specifically with the SailPoint Identity Security Cloud (formerly IdentityNow) product.

Responsibilities

  • Assess the current IAM environment, including identity lifecycle management, access provisioning and deprovisioning, authentication, and authorization processes.
  • Identify gaps and areas for improvement within the existing IAM solution and provide recommendations for enhancements.
  • Collaborate with stakeholders to understand business requirements and translate them into IAM solution designs using SailPoint Identity Security Cloud (formerly IdentityNow).
  • Develop a high-level plan to redesign the IAM solution, considering scalability, security, and compliance requirements.
  • Lead the engineering team in implementing the redesigned IAM solution, ensuring alignment with best practices and industry standards.
  • Oversee the configuration, customization, and integration of SailPoint Identity Security Cloud (formerly IdentityNow) to meet the organization's specific needs.
  • Collaborate with other IT teams to integrate the IAM solution with existing systems and applications, ensuring smooth data flow and user experience.
  • Define, design, and implement access control policies, segregation of duties (SoD) rules, and role-based access controls (RBAC) within the IAM solution.
  • Conduct thorough testing of the IAM solution to ensure its reliability, functionality, and performance.
  • Develop comprehensive documentation, including architectural diagrams, configuration details, and standard operating procedures (SOPs) for the IAM solution.
  • Provide technical guidance and support to the engineering team throughout the implementation process.
  • Collaborate with operations teams to smoothly transition the re-engineered IAM solution into production and ensure its ongoing maintenance and support.
  • Stay updated on the latest IAM technologies, trends, and best practices to continuously improve the organization's IAM capabilities.

Qualifications

Required

  • Bachelor's degree in computer science, Information Systems, or a related field (or equivalent experience).
  • Over 10 years of direct IAM related experiences
  • Proven experience as an IAM Architect, specifically implementing the SailPoint Identity Security Cloud (formerly IdentityNow) product.
  • Strong knowledge of identity and access management concepts, principles, and technologies.
  • In-depth understanding of SailPoint Identity Security Cloud (formerly IdentityNow) features, modules, and configurations.
  • Hands-on experience with IAM solution design, implementation, and integration.
  • Familiarity with authentication protocols (e.g., SAML, OAuth, OpenID Connect) and directory services (e.g., LDAP, Active Directory).
  • Strong analytical and problem-solving skills.
  • Excellent communication and interpersonal skills.
  • Strong leadership abilities, with experience leading and guiding engineering teams.

Preferred

  • Proficient in programming/scripting languages (e.g., Java, PowerShell, Python) for customization and automation.
  • Knowledge of cloud identity solutions (e.g., Azure AD, AWS IAM).
  • Relevant certifications such as Certified Identity and Access Manager (CIAM) or Certified Identity Management Professional (CIMP).

Full Job Description

We are at the forefront of transforming the future of technology in the financial industry, and we seek curious, practical individuals to help us pave the way. Our team is not intimidated by taking calculated risks, as they relish a good challenge and are eager to engage in problem-solving. As a member of our team, you will work alongside like-minded experts in a culture that is deeply rooted in innovation and progression. Join us to be part of a transformative journey that can shape the industry's future.What we need to have:We are in search of a seasoned Security Services Principal Engineer to become a part of our team. The Principal Engineer will take charge of designing, implementing, and upkeeping IAM solutions tailored to fulfill our organizational requirements.What you will do: Assess the current IAM environment, including identity lifecycle management, access provisioning and deprovisioning, authentication, and authorization processes.Identify gaps and areas for improvement within the existing IAM solution and provide recommendations for enhancements.Collaborate with stakeholders to understand business requirements and translate them into IAM solution designs using SailPoint Identity Security Cloud (formerly IdentityNow).Develop a high-level plan to redesign the IAM solution, considering scalability, security, and compliance requirements. Lead the engineering team in implementing the redesigned IAM solution, ensuring alignment with best practices and industry standards. Oversee the configuration, customization, and integration of SailPoint Identity Security Cloud (formerly IdentityNow) to meet the organization's specific needs.Collaborate with other IT teams to integrate the IAM solution with existing systems and applications, ensuring smooth data flow and user experience. Define, design, and implement access control policies, segregation of duties (SoD) rules, and role-based access controls (RBAC) within the IAM solution. Conduct thorough testing of the IAM solution to ensure its reliability, functionality, and performance.Develop comprehensive documentation, including architectural diagrams, configuration details, and standard operating procedures (SOPs) for the IAM solution.Provide technical guidance and support to the engineering team throughout the implementation process. Collaborate with operations teams to smoothly transition the re-engineered IAM solution into production and ensure its ongoing maintenance and support. Stay updated on the latest IAM technologies, trends, and best practices to continuously improve the organization's IAM capabilities.What you will need to have: Bachelor's degree in computer science, Information Systems, or a related field (or equivalent experience). Over 10 years of direct IAM related experiences Proven experience as an IAM Architect, specifically implementing the SailPoint Identity Security Cloud (formerly IdentityNow) product. Strong knowledge of identity and access management concepts, principles, and technologies. In-depth understanding of SailPoint Identity Security Cloud (formerly IdentityNow) features, modules, and configurations. Hands-on experience with IAM solution design, implementation, and integration. Familiarity with authentication protocols (e.g., SAML, OAuth, OpenID Connect) and directory services (e.g., LDAP, Active Directory).Strong analytical and problem-solving skills, with the ability to assess complex environments and identify areas for improvement. Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams and stakeholders.Strong leadership abilities, with experience leading and guiding engineering teams.Good to have:Proficient in programming/scripting languages (e.g., Java, PowerShell, Python) for customization and automation. Knowledge of cloud identity solutions (e.g., Azure AD, AWS IAM) is a plus. Relevant certifications such as Certified Identity and Access Manager (CIAM) or Certified Identity Management Professional (CIMP) are highly desirable.Compensation:The salary range for this role is $150,000 - $190,000 plus competitive performance-based bonus. Compensation packages are based on a wide array of factors unique to each candidate, including but not limited to skill set, years and depth of experience, certifications, and specific office location. Compensation ranges may differ in differing locations due to cost of labor considerations.#LI-RemoteWhat we give you in return:Not many teams can say that they support people’s dreams coming to life… We happen to do that every day. And as important as we know your career is, we recognize that there’s a whole lot more to life. To ensure that our Employees can make the most of their time outside of working hours, we offer a competitive salary and for full-time roles, a benefits package including:Inclusive health, dental, vision and life insurance plans built to support diverse lifestyles, offer preventative care, and protect against hardship.Easy access to mental health benefits to meet our team members and their families where they are.20+ days of paid time off (PTO), paid holidays, 1 paid wellness day and 1 days of paid volunteer time off (VTO) to give our employees the time they need to stay close with their loved ones, recharge, and give back to their communities.401(k) Savings plan with a generous company contribution (up to 5%), and access to a financial professional to offer our employees the opportunity to plan-ahead for a strong financial future well beyond their working years.Paid parental leave to support all team members with birth, adoption, and foster.Health Savings and Flexible Spending Account options to help you save money on healthcare, daycare, commuting, and more.Employee Assistance Program (EAP), LifeLock, Pet Insurance and more.About Cetera Financial Group:Cetera Financial Group (Cetera) is a leading network of independent retail broker-dealers empowering the delivery of objective financial advice to individuals, families and company retirement plans across the country through trusted financial advisors and financial institutions. Cetera is an independent financial advisor network and a leading provider of retail services to the investment programs of banks and credit unions.Through its multiple distinct firms, Cetera offers independent and institutions-based advisors the benefits of a large, established broker-dealer and registered investment adviser, while serving advisors and institutions in a way that is customized to their needs and aspirations. Advisor support resources offered through Cetera include award-winning wealth management and advisory platforms, comprehensive broker-dealer and registered investment adviser services, practice management support and innovative technology.Cetera Financial Group refers to the network of retail independent broker-dealers encompassing, among others, Cetera Advisors, Cetera Advisor Networks, Cetera Financial Institutions, Cetera Financial Specialists, and First Allied Securities.Cetera Financial Group is committed to providing an equal employment opportunity for all applicants and employees. For us, this is the only acceptable way to do business. Accordingly, all employment decisions at the Cetera Financial Group, including those relating to hiring, promotion, transfers, benefits, compensation, and placement, will be made without regard to race, color, ancestry, national origin, citizenship, age, physical and/or mental disability, medical condition, pregnancy, genetic characteristics, religion, religious dress and/or grooming, gender, gender identity, gender expression, sexual orientation, marital status, U.S. military status, political affiliation, or any other class protected by state and/or federal law.Agencies please note: this recruitment assignment is being managed directly by Cetera’s Talent Acquisition team. We will reach out to our preferred agency partners in the rare instance we require additional talent options. Your respect for this process is appreciated.Please review our Workforce Privacy Policy for further details on what information we collect and the purposes for collection.Full timePosting Date: 2024-09-18