- Location
- Milford, MA, US
- Department
- Engineering
- Seniority
- Lead
- Experience
- 5+ years
- Education
- Master
- Closing date
- Today
- Source
- iCIMS
Description
Overview
Are you ready to help secure the digital experience and commerce ecosystem for a global leader in scientific discovery?Waters are seeking a Lead Identity & Application Security Engineer to support the security, resilience, and compliance of our customer-facing digital platforms. This role combines expertise in Identity and Access Management (IAM), Web Security, and Application Security to help protect critical business applications and digital services used across our global organization.This is an excellent opportunity for a security professional who brings strong experience in either Identity Security or Application Security and is looking to broaden their impact across multiple security domains.
Responsibilities
Identity & Access Management
- Support the design and continuous improvement of identity and access management controls.
- Manage authentication, authorization, and access governance capabilities using technologies such as Okta and Azure AD.
- Promote best practices including RBAC, MFA, PAM and least-privilege access principles.
Application & Web Security
- Implement and manage WAF policies and security controls, including bot mitigation and rule optimization.
- Support secure code reviews, penetration testing, DAST, and vulnerability assessment activities.
- Partner with engineering teams to improve secure development practices and address security risks.
Security Operations & Risk Management
- Identify, assess and track vulnerabilities, supporting remediation activities based on risk and business impact.
- Collaborate with Security Operations teams to investigate threats and strengthen detection capabilities.
- Support SIEM monitoring, log analysis, and security reporting activities.
Technical Leadership
Provide technical guidance across Identity Security, Application Security and Digital Platform Security initiatives.
Qualifications
Required
- 5+ years of experience in IAM, Application Security, Web Security or related Cybersecurity Engineering roles.
- Hands-on experience with Okta, Azure AD or similar identity platforms.
- Understanding SAML, OAuth2, OpenID Connect and LDAP.
- Experience with WAF and CDN security technologies such as Akamai or Cloudflare.
- Knowledge of RBAC, MFA, PAM, and identity governance concepts.
- Familiarity with OWASP Top 10, API security and application security testing.
- Scripting or automation experience using PowerShell, Python or similar technologies.
- Strong communication and stakeholder management skills.
Preferred
- CISSP, CCSP, GIAC, or equivalent certification.
- Experience supporting customer-facing web applications or digital platforms.
- Knowledge of Zero Trust and modern Identity Security architectures.