Lead Identity Security Engineer

Job not on LinkedIn

🔥 0 minutes ago

🌽 Illinois – Remote

infoinfo

💵 $128.1k - $169.7k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 1%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of S&C Electric Company

S&C Electric Company

1001 - 5000 employees

Founded 1911

⚡ Energy

🔧 Hardware

🏭 Manufacturing

Energy • Hardware • Manufacturing

S&C Electric Company is a manufacturer and solutions provider of electrical power distribution and protection equipment. The company designs, produces and supports switchgear, reclosers, fuses, pad-mounted gear, controllers and microgrid control systems, plus automated restoration and communication/control software for utilities and commercial/industrial customers. S&C also offers engineering, consulting, cybersecurity, laboratory and field services and serves sectors such as airports, data centers, government/military, healthcare, mining, universities and wastewater treatment. Its offerings focus on grid reliability, resiliency, automation and fault interruption for underground and overhead distribution systems.

📋 Description

• Define and maintain identity security strategy, reference architectures, technical standards, and roadmap aligned with MCRA, Zero Trust, cybersecurity risk priorities, and business needs • Design secure, scalable identity and access management solutions across on-premises, cloud, and hybrid environments • Govern identity architecture and control posture for Microsoft Entra ID, Active Directory, cloud synchronization, and related identity services • Architect authentication and authorization capabilities including SSO, federation, MFA, passwordless authentication, Conditional Access, session controls, and risk-based access • Design privileged access controls including PIM/PAM, just-in-time access, administrative tiering, emergency access, service-account governance, and least-privilege operating models • Develop role-based and attribute-based access models, segregation-of-duties controls, entitlement standards, and secure access patterns • Lead identity lifecycle and governance improvements, including joiner-mover-leaver processes, provisioning and deprovisioning automation, SCIM integrations, access reviews, recertification, guest access, and non-human identity governance • Partner with Identity Administration on implementation and operational execution while retaining architecture, standards, and control design ownership • Participate in security architecture, project, and change reviews • Engineer identity threat detection and response enablement across Defender for Identity, Sentinel, SIEM/SOAR, PAM, and related platforms • Build and tune identity detections and response automation with Cybersecurity Operations • Assess identity risk and translate findings into remediation plans • Define identity metrics, reporting, and evidence standards for audit, compliance, client assurance, and cyber insurance needs • Evaluate identity and ITDR technologies, lead proofs of concept and vendor assessments, and drive initiatives through implementation and transition to operations • Develop architecture diagrams, standards, control designs, implementation guidance, operating procedures, and playbooks • Provide technical leadership and mentorship across IT • Protect firm and client information by complying with information security policies and reporting security events, control failures, or material risks • Collaborate with Identity Administration, Cybersecurity Operations, infrastructure, application, governance, compliance, and business teams

🎯 Requirements

• 6 to 10 years of progressive experience in identity and access management, identity security engineering, security engineering, or a closely related discipline • Experience serving as a senior technical lead for enterprise identity initiatives, including hands-on delivery in complex Microsoft identity environments • Deep knowledge of Microsoft Entra ID, Active Directory, and hybrid identity environments • Advanced experience with MFA, SSO, federation, Conditional Access, PIM/PAM, RBAC/ABAC, identity lifecycle governance, access reviews, and least-privilege design • Ability to design enterprise identity controls while preserving boundaries between architecture and governance, platform administration, and security monitoring • Experience with Entra ID and Active Directory logging, Microsoft Defender for Identity, Microsoft Sentinel or comparable SIEM, SOAR automation, and identity analytics • Understanding of identity attack paths and threats including credential theft, token abuse, privilege escalation, lateral movement, legacy authentication, excessive privilege, and persistence through identity systems • Proficiency with PowerShell, Python, Microsoft Graph and other APIs, infrastructure-as-code, and structured data formats • Ability to translate cybersecurity risk and technical complexity into standards, decisions, roadmaps, and executive-ready communications • Ability to lead complex cross-functional initiatives, influence without direct authority, manage competing priorities, and drive issues through resolution • High degree of discretion, integrity, attention to detail, and commitment to client service and professional excellence • Bachelor’s degree in Cyber Security, Information Systems Management, Computer Science, Computer Engineering, Cloud Security or equivalent experience • Preferred: experience in a global, highly confidential, regulated, manufacturing, or professional-services environment • Preferred: working knowledge of cloud security, networking, PKI and certificates, application architecture, and security operations • Preferred: Microsoft Certified: Identity and Access Administrator Associate (SC-300), Azure Security Engineer Associate, or comparable Microsoft identity certification within 6 months • Preferred: CISSP, CISM, CCSP, or comparable information security certification • Preferred: advanced certification in PAM, IGA, ITDR, SIEM/SOAR, or a cloud platform

🏖️ Benefits

• Health and prescription medical benefits • Dental insurance • Vision insurance • Health Care and Dependent Care Flexible Spending Accounts • Health Savings Account (HSA) • Group Life Insurance • Optional Supplemental Life and AD&D Insurance • Wellbeing Resources • Employee Assistance Program • Family Forming Benefits, including adoption and fertility support • Vacation Time • Sick Time • Paid Holidays and Company Shutdown days • Short-Term Disability • Long-Term Disability • Other Leaves • Paid Parental Time • Military Leave • 401(k) Retirement Savings • Employee Stock Ownership Plan (ESOP) through KSOP • Traditional and Roth 401(k) options • Annual ESOP company contributions of over 11% of eligible earnings • Annual incentive plan (AIP), subject to eligibility criteria • Remote work arrangement

Apply Now

Similar Jobs

🔥 2 minutes ago

Imagine Pediatrics

51 - 200

🏥 Healthcare

🧘 Wellness

👥 B2C

Security Engineer protecting Imagine Pediatrics’ virtual and in-home pediatric healthcare systems. Operating cloud, endpoint, identity, application security, and incident response technologies.

🔥 1 hour ago

Connecting for Better Health

1 - 10

🏥 Healthcare

💼 Consulting

⚖️ Legal

Senior Security Engineer securing Oshi Health’s cloud-native digestive healthcare platform. Building application, AWS, identity, and AI security foundations for regulated health data.

🔥 1 hour ago

Chainguard

51 - 200

🔐 Security

☁️ SaaS

🔒 Cybersecurity

Security Engineer improving information security and cyber resiliency at Chainguard, the trusted source for hardened open-source software. Engineering detections, incident response, threat hunts, and AI security playbooks.

🔥 2 hours ago

GuidePoint Security

201 - 500

💼 Consulting

🏥 Healthcare

📦 Logistics

Microsoft Security Engagement Lead guiding enterprise Entra ID, Microsoft 365, and Azure consulting engagements. Advising clients, shaping solutions, and leading delivery for GuidePoint Security’s cybersecurity services.

🔥 3 hours ago

PingWind Inc. (SDVOSB)

51 - 200

💼 Consulting

📦 Logistics

🏥 Healthcare

Security Engineer protecting FSA IAM systems through SIEM, EL3 logging, and incident response. Supporting PingWind’s federal cybersecurity compliance and Authority to Operate requirements.