Summary
Reprise Financial is a financial services company focused on making personal loans accessible and transparent through technology and a customer-first approach. The Identity and Access Management Engineer I will operate and improve the company’s Joiner-Mover-Leaver and identity-automation platform, manage integrations and deployments, troubleshoot identity lifecycle issues, and support governance, audits, investigations, and security operations.
Responsibilities
- Operate and maintain the Python-based JML application, Azure Functions, Logic Apps, telemetry, troubleshooting portal, and related provisioning components
- Process and troubleshoot ADP-driven onboarding, job changes, transfers, terminations, BPO guest-account workflows, and other identity lifecycle events
- Administer and improve Entra ID Lifecycle Workflows, Access Packages, groups, access assignments, service principals, managed identities, and related identity controls
- Maintain custom API integrations and screen-automation sequences for systems without SCIM or supported provisioning APIs
- Maintain Git repositories, pull-request controls, GitHub Actions pipelines, deployment configurations, secrets, environment settings, and release documentation
- Diagnose provisioning failures, trace events and telemetry, resolve user-impacting issues, and document durable fixes
- Create specific IAM/JML execution tasks for Desktop Support Analysts, Systems Administrators, and other support staff; validate completion and provide technical guidance without owning their performance management
- Support IAM governance and access-control standards, including entitlement cleanup, access reviews, privileged-access review, and service-principal review
- Provide identity-related audit evidence for GLBA, NIST CSF, SOC 1, PCI DSS, and applicable state lending requirements
- Support security investigations involving accounts, access, identity risk, and IAM application or Azure-resource vulnerabilities
- Review new integrations for identity and access-control requirements and recommend secure implementation approaches
- Partner with the Director, Information Security; AVP, Desktop Support; HR; Systems Administration; Cloud Security; and application owners on lifecycle reliability and risk reduction
- Contribute to incident response and vulnerability remediation involving the IAM platform, Entra ID, Azure Functions, Logic Apps, and connected systems
Skills
- • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent experience
- • 3+ years of experience in IAM, identity engineering, systems integration, security automation, cloud engineering, or application operations
- • Strong Python development and troubleshooting experience, including event-driven applications and API integrations
- • Hands-on experience with Entra ID, Active Directory, Lifecycle Workflows, Access Packages, groups, service principals, managed identities, and access controls
- • Experience with Azure Functions, Logic Apps, Azure Monitor or comparable telemetry, and cloud application configuration
- • Experience maintaining Git repositories, pull requests, CI/CD pipelines, secrets, deployment controls, and release processes
- • Experience integrating systems through REST APIs, webhooks, SCIM, or reliable screen automation when APIs are unavailable
- • Understanding of JML lifecycle controls, least privilege, access reviews, privileged access, identity governance, and audit evidence
- • Ability to break complex operational work into clear tasks for support teams and coordinate execution across technical groups
- • Strong troubleshooting, documentation, communication, and cross-functional collaboration skills
- All team members must reside in one of our approved locations by their start date, ensuring you remain part of our collaborative community
- • Security certification or Azure/Entra certification preferred; practical experience is weighted equally with certifications
Qualifications
Must Haves
- • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field, or equivalent experience
- • 3+ years of experience in IAM, identity engineering, systems integration, security automation, cloud engineering, or application operations
- • Strong Python development and troubleshooting experience, including event-driven applications and API integrations
- • Hands-on experience with Entra ID, Active Directory, Lifecycle Workflows, Access Packages, groups, service principals, managed identities, and access controls
- • Experience with Azure Functions, Logic Apps, Azure Monitor or comparable telemetry, and cloud application configuration
- • Experience maintaining Git repositories, pull requests, CI/CD pipelines, secrets, deployment controls, and release processes
- • Experience integrating systems through REST APIs, webhooks, SCIM, or reliable screen automation when APIs are unavailable
- • Understanding of JML lifecycle controls, least privilege, access reviews, privileged access, identity governance, and audit evidence
- • Ability to break complex operational work into clear tasks for support teams and coordinate execution across technical groups
- • Strong troubleshooting, documentation, communication, and cross-functional collaboration skills
- All team members must reside in one of our approved locations by their start date, ensuring you remain part of our collaborative community
Nice to Haves
- • Security certification or Azure/Entra certification preferred; practical experience is weighted equally with certifications
Benefits
- Comprehensive medical, dental, and vision coverage
- Contributions to a Health Savings Account (HSA)
- Access to an Employee Assistance Program (EAP) to support mental health and overall well-being
- 401(k) program, featuring a Safe Harbor Match (100% of the first 3% and 50% of the next 2%)
- Accrued time off
- Company holidays
- Sick time
- 3 floating holidays
- 12-week Paid Parental Leave
- Variable annual bonus based on both company and individual performance
- A robust tech package designed to help you deliver your best every day
- Fully remote work arrangement