onsite
Security Analyst - Identity and Access Management - EMCOR
Security Engineer
Security Analyst specializing in Identity and Access Management, responsible for managing user provisioning, access controls, and IAM tooling such as Azure AD and Okta, while ensuring compliance and mitigating security risks.
About the role
Key Responsibilities
- Administer and maintain IAM solutions (Azure AD, Okta) to provision, de‑provision, and manage user access across enterprise systems.
- Develop and enforce access control policies, role‑based access, and entitlement reviews to ensure least‑privilege compliance.
- Design, implement, and troubleshoot authentication protocols (SAML, OAuth, OpenID Connect) for internal and external applications.
- Automate IAM processes using PowerShell and scripting to improve efficiency and auditability.
- Conduct regular security risk assessments, access audits, and incident investigations related to identity threats.
- Collaborate with IT, security, and business teams to integrate IAM controls into new projects and cloud migrations.
Requirements
- 3+ years of hands‑on experience in Identity and Access Management, preferably in a large enterprise environment.
- Proficiency with Azure Active Directory, Okta, and related authentication standards (SAML, OAuth, OpenID Connect).
- Strong scripting skills, especially PowerShell, for automation of provisioning and reporting tasks.
- Demonstrated ability to perform access reviews, risk assessments, and respond to IAM‑related security incidents.
- Relevant certifications (e.g., CISSP, CISM, Azure AD, Okta) are a plus.