We're Looking for an experienced IAM Engineer!

About the Company:

Security Benefit is a leader in the U.S. retirement market with more than $55 billion in assets under management. We offer opportunities to thrive, innovate, and make an impact. As part of our team, you’ll play a key role in driving the future of the U.S. retirement industry. Security Benefit is a PLACE where we promise to help our customers To and Through Retirement®.

We’re proud to have been recognized as one of the best in the business:

  • Named to Ward’s 50 list of top-performing life-health insurance companies
  • Recognized on list of Ingram’s Top 100 Private Companies in the Kansas City area in 2024

About the Role:

The Senior IAM Engineer will lead the design, implementation, and optimization of CyberArk Privileged Access Management (PAM) solutions, serving as the primary subject matter expert for CyberArk across the organization. This role requires advanced technical skills in CyberArk architecture, deployment, and operations, as well as a strong understanding of identity governance, access management, and security best practices.

The Senior IAM Engineer position reports to the Manager, Identity and Security Operations and can be based out of our home office in Topeka, Kansas, our Overland Park, Kansas office or remotely for the right candidate. We work a hybrid schedule, offering flexibility to work both remotely and on-site.

What Does the Job Look Like?

The ideal candidate will architect end-to-end privileged access solutions, collaborate with cross-functional teams, and ensure the success of CyberArk deployments, while supporting integrations with SailPoint and other IAM platforms.

CyberArk Architecture & Implementation: Design, architect, and deploy enterprise-grade CyberArk Privileged Access Management (PAM) solutions that align with organizational security and compliance objectives.

Identity & Access Architecture Leadership: Lead the technical design and implementation of broader Identity and Access Management (IAM) solutions across the enterprise, ensuring scalability, automation, and alignment with business and security requirements.

Scripting & Automation: Develop and maintain automation scripts (e.g., PowerShell, Python, REST APIs) to enhance provisioning, access control, and system monitoring processes.

Security Engineering & Hardening: Implement secure configurations, patch management, and least privilege models across CyberArk components and integrated systems. Perform security baseline and hardening in line with industry (NIST, CIS) benchmarks.

Threat Detection & Response: Collaborate with Security Operations to monitor privileged accounts for anomalies or abuse, participate in incident investigations, and contribute to response for security events.

Integration Leadership: Lead integrations between CyberArk and enterprise identity, authentication solutions (e.g., Azure AD/Entra ID, Okta, AWS IAM).

Governance & Compliance: Ensure PAM and IAM controls meet regulatory and audit requirements (NIST, SOX, NYDFS). Maintain thorough documentation and evidence for audits.

Stakeholder Collaboration: Work closely with infrastructure, application, and audit teams to translate privileged access requirements into secure, scalable designs.

Mentorship & Continuous Improvement: Provide technical mentorship, promote security best practices, and contribute to the evolution of enterprise IAM standards and security posture.

What We’re Looking For:

  • CyberArk Privilege Cloud & ISPSS Expertise: 8+ years proven experience implementing, configuring, and managing CyberArk Privilege Cloud and Identity Security Platform Shared Services (ISPSS) in enterprise environments. Deep understanding of secure design, onboarding, policy configuration, and lifecycle management in cloud-native deployments.
  • Architecture & Design: Strong background in designing scalable and secure CyberArk Privilege Cloud architectures that integrate with hybrid identity environments (on-prem, AWS, Azure).
  • Identity & Access Management: Broad understanding of IAM principles including authentication, authorization, SSO, MFA, and directory services (Active Directory, Azure AD, Okta).
  • Scripting & Automation: Proficiency in scripting languages such as PowerShell, Python, or REST APIs to automate PAM operations, onboarding, and integrations across CyberArk and related systems.
  • Integration Experience: Demonstrated success integrating CyberArk Privilege Cloud with enterprise platforms such as IDPs (Entra ID, Okta), ITSM (Jira Service Management, ServiceNow), and identity governance solutions (SailPoint).
  • Compliance & governance: Knowledge of regulatory and security frameworks such as NIST, CIS, SOX, and NYDFS, with the ability to map PAM controls to compliance requirements.
  • Cloud & Infrastructure Security: Experience managing privileged access and secrets in AWS and Azure environments, leveraging CyberArk’s cloud connectors and ISPSS services.

(Preferred) Automation & DevOps Integration: Proficiency integrating PAM solutions into CI/CD pipelines, cloud-native platforms, and DevOps workflows.

(Preferred) Governance, Monitoring & Continuous Improvement: Familiarity with automating access reviews, integrating PAM telemetry into SIEM platforms (InsightIDR, Sentinel), and driving ongoing security posture enhancements.

(Preferred) Certifications: CyberArk Guardian, CyberArk Sentry, CyberArk Defender, CISSP, GIAC Certifications, or similar credentials.

Why Choose Security Benefit?

When you join our team, you’re not just getting a paycheck — you’re getting a career path full of growth opportunities, plus a robust benefits package that puts your well-being first. Here’s what you can expect as a full-time Security Benefit associate:

  • Competitive salary and annual incentive bonuses to reward your contributions.
  • 33 days of paid time off (including PTO, holidays, Volunteer Day, and days of significance).
  • Paid parental leave after 90 days of service.
  • Comprehensive medical, dental & vision insurance.
  • 401(k) with company match, plus Profit Sharing & Savings Plan.
  • Short- and Long-Term Disability Insurance to give you peace of mind.
  • Flexible Spending Accounts for medical and dependent care.
  • Life Insurance to protect your loved ones.
  • Educational assistance to support your career development.
  • Associate assistance programs for your personal and professional well-being.

Ready to Make an Impact?

Apply today by visiting our career page to submit your resume. We’re excited to meet you!

Security Benefit is an Equal Opportunity Employer.

Pay Type

Salary

Read Full Description
Confirmed 12 minutes ago. Posted 8 days ago.

Discover Similar Jobs

Suggested Articles