Hiring.Camp

Identity and Access Management Engineer

Open Dealer Exchange

·

Today

Location
Southfield, MI
Workplace
Hybrid
Department
Engineering
Experience
3+ years
Education
Bachelor
Source
Paylocity

Description

Description

Identity and Access Management Engineer


Open Dealer Exchange (ODE), is seeking an Identity and Access Management (IAM) Engineer to support its workforce in Southfield, MI. As an IAM Engineer, you will own and mature our identity security posture across a complex, multi-platform environment, serving as the primary driver of a structured role based access control (RBAC) program and a trusted technical advisor across infrastructure, IT, and development teams. The ideal candidate will have deep experience with Entra ID, Active Directory, identity lifecycle automation, and governing access in regulated enterprise environments. Open Dealer Exchange is a dynamic, exciting place to work. Open Dealer Exchange offers a hybrid work model as well as an excellent compensation/benefit package.


Responsibilities

  • Design and implement enterprise RBAC: Build a cohesive role-based access control model across Entra ID, Active Directory, and Entra External ID, replacing ad hoc access grants with governed, role-aligned entitlements.
  • Lead identity lifecycle automation: Integrate the HR system with Entra ID to automate provisioning and deprovisioning, ensuring access changes are event-driven and auditable at the point of hire, transfer, and termination.
  • Govern directory structure and access hygiene: Define and enforce naming conventions, group structures, and access review cadences across all directory platforms.
  • Manage non-human identities: Govern service accounts, including managed identities, service principals, and app registrations, enforcing least privilege and credential hygiene across all environments.
  • Advise development teams on identity security: Provide architectural guidance on token handling, session management, and federation patterns for teams building or maintaining identity adjacent systems.
  • Drive Conditional Access and PIM: Lead Conditional Access policy design and own Privileged Identity Management configuration and the privileged access model for admin roles across Azure and M365.
  • Support Entra External ID governance: Advise teams on External ID tenant configuration, custom policy, user flows, and external identity federation.
  • Produce compliance-ready documentation: Maintain IAM documentation including access control matrices, provisioning runbooks, and audit-ready entitlement inventories supporting FCRA and FTC Safeguards Rule obligations.
  • Collaborate across the security program: Align IAM initiatives with the broader security roadmap and participate in change management and architecture review processes alongside security engineers and the Cybersecurity Manager.

Requirements

Required Skills & Experience

  • 5+ years of hands-on IAM engineering experience, with at least 3 years focused on Entra ID (Azure AD) in enterprise environments.
  • Deep working knowledge of Active Directory, including group policy, OU design, domain trust models, and hybrid identity patterns.
  • Demonstrated experience designing and implementing RBAC models at scale in complex or legacy environments.
  • Hands-on experience with Entra ID Governance, including access reviews, entitlement management, lifecycle workflows, and Privileged Identity Management (PIM).
  • Strong working knowledge of OAuth 2.0, OIDC, and SAML, sufficient to review developer implementations and identify security risk.
  • Practical experience automating identity lifecycle events using Logic Apps, Azure Functions, PowerShell, or the Microsoft Graph API.
  • Ability to communicate risk clearly to non-technical stakeholders and produce compliance-ready documentation.
  • Will accept any suitable combination of education, training, or experience.

Preferred Skills & Experience

  • Experience in regulated industries such as financial services, fintech, or automotive with access control obligations.
  • Familiarity with FTC Safeguards Rule requirements or equivalent data security regulatory frameworks.
  • Prior experience integrating an HRIS platform (Workday, BambooHR, UKG, or similar) with Entra ID via SCIM or custom connector.
  • Exposure to IGA platforms such as SailPoint, Saviynt, or Omada.
  • Experience advising development teams on token validation, scope design, role claims, and secure session management.
  • Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent professional experience.
  • Relevant certifications: SC-300 (Microsoft Identity and Access Administrator), AZ-500 (Microsoft Azure Security Technologies), or equivalent

Skills

AzureWorkdayCybersecurityOAuthComplianceChange Management

Similar Jobs

30

Senior Cybersecurity Engineer (Identity and Access Management)

Open Dealer Exchange · Southfield, MI · Hybrid

Today

Senior Identity and Access Management Engineer

Open Dealer Exchange · Southfield, MI · Hybrid

Today

Senior Software Engineer | Identity and Access Management | Full-Stack

Deepl · London · Hybrid

Today

Product Delivery Manager - Identity and Access Management

JPMorgan Chase · OH, United States, US

3 days ago

Product Delivery Manager - Identity and Access Management

JP Morgan Chase · OH, United States, US

3 days ago

Customer Operations and Identity & Access Management Business Systems & Data Analyst

Boeing · USA - Seattle, WA, United States of America · Hybrid

4 days ago

Sr. Director, Customer Identity and Access Management

Zillow · Remote-USA, United States of America · Remote

5 days ago

Senior Identity and Access Management Engineer

UFCU · Austin, TX

5 days ago

Lead Software Engineer- Identity and Access Management

JPMorgan Chase · Plano, TX, United States, US

6 days ago

Lead Software Engineer- Identity and Access Management

JP Morgan Chase · Plano, TX, United States, US

6 days ago

Identity and Access Management Engineer

Signify · Panama City - Torre V · Onsite

6 days ago

Vice President, Identity and Access Management

Mufgub · London Ropemaker place, United Kingdom

1 week ago

Head of Information Security / Identity and Access Management

Bbh · Jersey City, United States of America

1 week ago

Identity and Access Management Lead

Qube Research & Technologies · London +1

1 week ago

Senior Security Engineer IS - Identity and Access Management, Remote

Providence Health & Services · Renton, WA, United States, US · Remote

1 week ago

Sr. Identity and Access Management Engineer

Onetrust · Madrid, Spain +1

1 week ago

Identity and Access Management (IAM) Engineer (Senior)

Interclypse Inc. · Annapolis Junction, MD · Onsite

1 week ago

Identity and Access Management (IAM) Engineer (Junior)

Interclypse Inc. · Annapolis Junction, MD · Onsite

1 week ago

Identity and Access Management (IAM) Engineer (Mid)

Interclypse Inc. · Annapolis Junction, MD · Onsite

1 week ago

Summer 2027 Information Security and Access Management Internship – Identity and Access Management (IAM) Analyst

Southwest Power Pool · Little Rock, AR

1 week ago

Security Engineer - Identity and Access Management (IAM)

Allica Bank · Milton Keynes Office · Hybrid

1 week ago

Staff Identity and Access Management Engineer

Tanium · Addison, TX (Hybrid); Bellevue, WA (Hybrid); Durham, NC (Hybrid); Emeryville, CA (Hybrid); Reston, VA (Hybrid) +1 · Hybrid

1 week ago

Identity and Access Management Engineer (Hybrid)

AbbVie · North Chicago, IL, United States · Hybrid

1 week ago

Identity and Access Management (IAM) Linux Engineering - AVP

Mufgub · New Jersey Office - 210 Hudson Street, United States of America +1

1 week ago

Identity and Access Management Specialist, Senior

Booz Allen Hamilton · Undisclosed Location - USA, DC, Washington, United States of America +2 · Hybrid

1 week ago

Identity and Access Management Specialist, Senior

Booz Allen Hamilton · Undisclosed Location - USA, DC, Washington, United States of America +2 · Hybrid

1 week ago

Manager - Identity and Access Management

Ameriprise Financial · 11068 Ameriprise India - Udyog Vihar · Hybrid

2 weeks ago

Principal Security Engineer - Identity and Access Management (Hybrid - Seattle)

Us We · Seattle WA, United States of America · Hybrid, Onsite

2 weeks ago

Director of Identity and Access Management (IAM)

Medtronic · USA-MN Mounds View South, United States of America +7 · Onsite

2 weeks ago

Staff Identity and Access Management Engineer

Ridgeline · Reno, NV; San Ramon, CA +2

2 weeks ago