Marqeta

You see a card. We see endless possibilities.™

Manager, Identity Security

Security EngineerSecurity EngineerFull TimeRemoteTeam 501-1,000Since 2010H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

91 days ago

Salary

$167.1K - $244.4K / year

Bachelor Degree15 yrs expEnglishAWSCloudEC2PythonTerraform

Job Description

• Provide Technical and managerial leadership to a team of 5 to 6 Identity Security Engineers • Lead implementation of robust IAM strategies aligned with cloud-native architecture and security principles. • Expand and operationalize the IAM program across IGA, PAM, SSO, MFA, access management, secrets management, and certificate lifecycle management. • Automate identity provisioning, de-provisioning, and access reviews using tools and infrastructure-as-code. • Design IAM integrations for AWS-native services ( EC2, S3, IAM, etc.), SaaS platforms, and third-party identity tools (e.g., Okta). • Promote and enforce least privilege and zero-trust principles through scalable access controls and policy automation. • Mentor junior engineers and serve as a technical lead for IAM-related projects. • Collaborate with Security, DevOps, and Infrastructure teams to embed IAM controls across the engineering lifecycle. • Stay ahead of emerging trends and continuously refine IAM strategy based on evolving cloud threats and compliance requirements.

Job Requirements

  • A minimum of 15 years related experience with a Bachelor’s degree or equivalent combination of related education and work experience. Must have been a people manager
  • Establish clear, achievable objectives for the team that align with organizational goals
  • Experience in Agile/Scrum environments holding daily stand-ups, sprint planning, and retrospectives, using tools like Jira, and estimating user stories
  • Comfortable working in a remote only environment and getting hands-on when required
  • Providing guidance, support, and feedback to help team members grow in their roles
  • Strong experience with IAM tools (e.g., Okta, CyberArk, Ping, SailPoint, Britive).
  • Deep knowledge of IAM in cloud-native environments, especially AWS IAM, roles, policies, permissions boundaries, and federation.
  • Proficiency in infrastructure-as-code (e.g., Terraform, CloudFormation).
  • Familiarity with authentication and authorization protocols (SAML, OAuth2, OpenID Connect, Kerberos).
  • Strong grasp of directory services like Active Directory, LDAP, and cloud-based alternatives.
  • Experience in scripting (e.g., Python, PowerShell) to automate IAM operations.
  • Solid understanding of compliance standards: NIST, SOC 2, PCI DSS, etc.
  • Proven experience integrating IAM into CI/CD pipelines, secrets management, and DevOps workflows.
  • Excellent communication skills and ability to influence and lead cross-functional teams.

Benefits

  • Multiple health insurance options
  • Flexible time off – take what you need
  • Retirement savings program with company contribution and after tax contributions
  • Equity in a publicly-traded company and an Employee Stock Purchase Program
  • Family-forming benefits, fertility support, and up to 20 weeks of Parental Leave
  • Free therapy sessions, financial and professional coaching, and legal advice
  • Monthly stipend to support our remote work model
  • Annual “development dollars” to support our people growth and development
  • Through Flex First, the freedom to live and work wherever you and your family thrive

Related Categories

Related Job Pages

More Security Engineer Jobs

Manager, Vulnerability & Data Security

Marqeta

You see a card. We see endless possibilities.™

Security Engineer91 days ago
Full TimeRemoteTeam 501-1,000Since 2010H1B Sponsor

Information Security Manager leading Vulnerability Management and Data Security program

AWSAzureCloudGoogle Cloud PlatformRuby on RailsSDLC
United States
$167.1K - $208.9K / year

Endpoint Security Engineer – Carbon Black, Symantec

Plurilock

AI + behavioral biometrics = Invisible, device-free #MFA and true continuous authentication for #ZeroTrust.

Security Engineer91 days ago
ContractRemoteTeam 11-50H1B No Sponsor

Mid-Level Endpoint Security Engineer focusing on VMware Carbon Black and Symantec products

CloudLinuxMacOSPythonVMware
New Jersey

Senior Endpoint Security Engineer – Carbon Black, Symantec

Plurilock

AI + behavioral biometrics = Invisible, device-free #MFA and true continuous authentication for #ZeroTrust.

Security Engineer91 days ago
ContractRemoteTeam 11-50H1B No Sponsor

Senior Endpoint Security Engineer specializing in Carbon Black and Symantec.

CloudLinuxMacOSPythonVMware
New Jersey
Security Engineer91 days ago
Full TimeRemoteTeam 5,001-10,000H1B Sponsor

Security Architect managing cyber attack detection and mitigation

DNS
Massachusetts
$70.5K - $146.5K / year