Summary
United Airlines is a global airline whose Cybersecurity and Digital Risk team works to protect operations through secure and resilient systems. The Engineer – Identity & Access Management will implement and support enterprise IAM solutions, integrate secure identity capabilities with organizational systems, collaborate with development teams, and maintain compliance with security requirements.
Responsibilities
- Design, implement and test the solutions and capabilities of Enterprise IAM platform & service
- Provides support in responding to break/fix requests monitoring the environment, supporting Digital Technology in change management processes for development, QA, and production environments
- Respond to Level 1 tickets including bugs, outages, and new feature requests
- Ensure IAM solutions adhere to regulatory, compliance, and internal requirements
- Assist in the maintenance of IAM policies, standards, and procedures
- Provide reports as requested for compliance
- Work with Cyber Defense and other departments as needed
- Ensure IAM security is aligned with the overall security strategy to reduce risk to the organization
- Collaborate with development teams and other IAM service consumers
- Provide guidance on the implementation and usage of IAM capabilities in enterprise systems
- Collaborate with other IAM team members seeking guidance on IAM related matters and contributing to system support
Skills
- Bachelor's Degree, or in lieu of a Bachelor's Degree, 6-9 years of related work experience will be accepted
- 2+ years of related experience, ideally within an Entra ID environment
- An understanding of Enterprise Identity & Access Management in some of the following areas: Single Sign-On (SSO), Multi-Factory Authentications (MFA), and Password-less Authentication, Privileged Access Management (PAM), Identity Governance & Administration concepts
- An understanding of identity protocols and technologies such as OpenID Connect (OIDC,) OAuth, SAML, API Gateways, SCIM, and platforms such as Ping Identity, Okta, MS Azure, and ForgeRock
- Familiar with modern software lifecycle development and automated cloud infrastructure deployment
- Understanding of policies that reflect system security objectives. Ability to determine how a security system works (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes
- Must be legally authorized to work in the United States for any employer without sponsorship
- Reliable, punctual attendance is an essential function of the position
- STEM degree in a field such as Cybersecurity, Risk Management, Computer Science
- Certifications related to Microsoft Entra ID, CISA, CISM, CISSP
- 4+ years of related experience
- Knowledge of organizational standards and policies (ISO, NIST)
- Knowledge of compliance regulations (SOX, PCI, FAA, GDRP, PII)
Qualifications
Must Haves
- Bachelor's Degree, or in lieu of a Bachelor's Degree, 6-9 years of related work experience will be accepted
- 2+ years of related experience, ideally within an Entra ID environment
- An understanding of Enterprise Identity & Access Management in some of the following areas: Single Sign-On (SSO), Multi-Factory Authentications (MFA), and Password-less Authentication, Privileged Access Management (PAM), Identity Governance & Administration concepts
- An understanding of identity protocols and technologies such as OpenID Connect (OIDC,) OAuth, SAML, API Gateways, SCIM, and platforms such as Ping Identity, Okta, MS Azure, and ForgeRock
- Familiar with modern software lifecycle development and automated cloud infrastructure deployment
- Understanding of policies that reflect system security objectives. Ability to determine how a security system works (including its resilience and dependability capabilities) and how changes in conditions, operations, or the environment will affect these outcomes
- Must be legally authorized to work in the United States for any employer without sponsorship
- Reliable, punctual attendance is an essential function of the position
Nice to Haves
- STEM degree in a field such as Cybersecurity, Risk Management, Computer Science
- Certifications related to Microsoft Entra ID, CISA, CISM, CISSP
- 4+ years of related experience
- Knowledge of organizational standards and policies (ISO, NIST)
- Knowledge of compliance regulations (SOX, PCI, FAA, GDRP, PII)
Benefits
- Eligibility for bonus and/or long-term incentive compensation awards
- Medical benefits
- Dental benefits
- Vision benefits
- Life insurance
- Accident and disability benefits
- Parental leave
- Employee assistance program
- Commuter benefits
- Paid holidays
- Paid time off
- 401(k)
- Flight privileges
- Space-available travel
- Employee-run Business Resource Group communities