Marqeta
You see a card. We see endless possibilities.™
Manager, Identity Security
Security EngineerSecurity EngineerFull TimeRemoteTeam 501-1,000Since 2010H1B SponsorCompany SiteLinkedIn
Location
United States
Posted
91 days ago
Salary
$167.1K - $244.4K / year
Bachelor Degree15 yrs expEnglishAWSCloudEC2PythonTerraform
Job Description
• Provide Technical and managerial leadership to a team of 5 to 6 Identity Security Engineers
• Lead implementation of robust IAM strategies aligned with cloud-native architecture and security principles.
• Expand and operationalize the IAM program across IGA, PAM, SSO, MFA, access management, secrets management, and certificate lifecycle management.
• Automate identity provisioning, de-provisioning, and access reviews using tools and infrastructure-as-code.
• Design IAM integrations for AWS-native services ( EC2, S3, IAM, etc.), SaaS platforms, and third-party identity tools (e.g., Okta).
• Promote and enforce least privilege and zero-trust principles through scalable access controls and policy automation.
• Mentor junior engineers and serve as a technical lead for IAM-related projects.
• Collaborate with Security, DevOps, and Infrastructure teams to embed IAM controls across the engineering lifecycle.
• Stay ahead of emerging trends and continuously refine IAM strategy based on evolving cloud threats and compliance requirements.
Job Requirements
- A minimum of 15 years related experience with a Bachelor’s degree or equivalent combination of related education and work experience. Must have been a people manager
- Establish clear, achievable objectives for the team that align with organizational goals
- Experience in Agile/Scrum environments holding daily stand-ups, sprint planning, and retrospectives, using tools like Jira, and estimating user stories
- Comfortable working in a remote only environment and getting hands-on when required
- Providing guidance, support, and feedback to help team members grow in their roles
- Strong experience with IAM tools (e.g., Okta, CyberArk, Ping, SailPoint, Britive).
- Deep knowledge of IAM in cloud-native environments, especially AWS IAM, roles, policies, permissions boundaries, and federation.
- Proficiency in infrastructure-as-code (e.g., Terraform, CloudFormation).
- Familiarity with authentication and authorization protocols (SAML, OAuth2, OpenID Connect, Kerberos).
- Strong grasp of directory services like Active Directory, LDAP, and cloud-based alternatives.
- Experience in scripting (e.g., Python, PowerShell) to automate IAM operations.
- Solid understanding of compliance standards: NIST, SOC 2, PCI DSS, etc.
- Proven experience integrating IAM into CI/CD pipelines, secrets management, and DevOps workflows.
- Excellent communication skills and ability to influence and lead cross-functional teams.
Benefits
- Multiple health insurance options
- Flexible time off – take what you need
- Retirement savings program with company contribution and after tax contributions
- Equity in a publicly-traded company and an Employee Stock Purchase Program
- Family-forming benefits, fertility support, and up to 20 weeks of Parental Leave
- Free therapy sessions, financial and professional coaching, and legal advice
- Monthly stipend to support our remote work model
- Annual “development dollars” to support our people growth and development
- Through Flex First, the freedom to live and work wherever you and your family thrive
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Security Engineer91 days ago
Full TimeRemoteTeam 501-1,000Since 2010H1B Sponsor
Information Security Manager leading Vulnerability Management and Data Security program
AWSAzureCloudGoogle Cloud PlatformRuby on RailsSDLC
Endpoint Security Engineer – Carbon Black, Symantec
PlurilockAI + behavioral biometrics = Invisible, device-free #MFA and true continuous authentication for #ZeroTrust.
Security Engineer91 days ago
ContractRemoteTeam 11-50H1B No Sponsor
Mid-Level Endpoint Security Engineer focusing on VMware Carbon Black and Symantec products
CloudLinuxMacOSPythonVMware
New Jersey
Senior Endpoint Security Engineer – Carbon Black, Symantec
PlurilockAI + behavioral biometrics = Invisible, device-free #MFA and true continuous authentication for #ZeroTrust.
Security Engineer91 days ago
ContractRemoteTeam 11-50H1B No Sponsor
Senior Endpoint Security Engineer specializing in Carbon Black and Symantec.
CloudLinuxMacOSPythonVMware
New Jersey
Security Engineer91 days ago
Full TimeRemoteTeam 5,001-10,000H1B Sponsor
Security Architect managing cyber attack detection and mitigation
DNS