Information Security Identity and Access Engineer

psecu· PSECU Pennsylvania State Employees Credit Union
Apply Now ↗
📍 Harrisburg, PAFull time

About this role

Members Achieve More isn't just a tagline for us, it's part of everything we do!  We're looking for passionate individuals to join our team to help us maintain that focus every day.  Want to work somewhere that's remained strong for 90 years, that encourages you to learn, grow, and pursue your dreams? If yes, then read on...

The Identity and Access Management (IAM) Engineer is responsible for designing, implementing, integrating, and supporting enterprise identity and access management solutions across on-premises, cloud, and hybrid environments. This role provides engineering expertise for identity governance, authentication, authorization, privileged access management, and identity lifecycle automation platforms.

In addition to identity-focused responsibilities, the IAM Engineer II serves as a member of the broader information security engineering team and contributes to enterprise cybersecurity initiatives. The role participates in the implementation of security controls, security architecture reviews, vulnerability remediation efforts, incident response activities, and technical risk reduction projects that strengthen the organization's overall security posture.

Working under general supervision, the IAM Engineer II partners with Information Security, Infrastructure, Application Development, Cloud Engineering, Risk Management, Compliance, and business stakeholders to develop secure and scalable identity solutions. This position contributes to the engineering and enhancement of enterprise IAM capabilities through application integrations, automation, process optimization, and implementation of modern authentication technologies while ensuring compliance with organizational security standards and regulatory requirements.

Schedule: Monday - Friday, 8:00am -4:00pm or 9:00am -5:00pm This position will be a hybrid model both in person and remote with minimum of onsite expectation of 60% or as needed.

In this position, you will

  • Design, implement, and support enterprise Identity and Access Management (IAM) solutions, including identity governance, authentication, authorization, privileged access management, directory services, and cloud identity platforms.
  • Engineer and maintain identity lifecycle management, access governance, role-based security models, and automated provisioning and deprovisioning processes to ensure secure and efficient access control.
  • Integrate enterprise applications, cloud services, and infrastructure with IAM platforms using modern authentication, federation, API, and directory technologies while supporting hybrid environments.
  • Develop automation, scripting, and infrastructure-as-code solutions; perform system analysis, testing, troubleshooting, and performance optimization to improve the reliability and scalability of IAM and security services.
  • Design, implement, administer, and continuously enhance cybersecurity controls and security technologies across on-premises, cloud, and hybrid environments to protect enterprise systems, applications, networks, and data.
  • Support security architecture reviews, vulnerability management, security monitoring, incident response investigations, and threat remediation activities to reduce organizational risk and strengthen security posture.
  • Collaborate with information security, infrastructure, cloud, application development, compliance, data, and business teams to implement secure-by-design solutions, support regulatory and audit requirements, maintain technical documentation, and recommend continuous improvements to IAM and cybersecurity capabilities.
  • Other Duties as assigned.

Qualifications:

Bachelors: Computer Science (Required), Bachelors: Engineering (Required), Bachelors: Information Technology (Required)

Any equivalent combination of experience and education. | Required Experience with automation, scripting, or integrations that improve identity and access management processes | Required Experience with Identity and Access Management (IAM), including account provisioning, access governance, SSO, MFA, and role-based access controls | Required Experience with identity governance, access reviews, and automated provisioning | Not Required Experience with Microsoft Entra RBAC, Conditional Access, and hybrid identity environments | Not Required Familiarity with CIAM and external identity solutions | Not Required Knowledge of FFIEC, NIST, or other security and compliance frameworks | Not Required Knowledge of Microsoft Entra ID, Active Directory, and identity lifecycle management | Required Possess solid working knowledge of IAM technologies and may provide technical guidance or mentoring to junior staff | Required Requires 6 or more years of experience in IAM engineering, security engineering, systems engineering, directory services, or identity infrastructure support | Required Understanding of Zero Trust, least privilege, and access security best practices | Required

Certified Ethical Hacker (CEH) - EC-Council (International Council of E-Commerce Consultants), Certified Identity and Access Manager (CIAM) - Identity Management Institute (IMI), Certified Information Systems Security Professional (CISSP) - ISC2 (International Information System Security Certification Consortium), CompTIA Security+ - CompTIA (Computing Technology Industry Association), CyberArk Defender Certifications - CyberArk Software, CyberArk Sentry Certifications - CyberArk Software, Microsoft Certified: Cybersecurity Architect Expert - Microsoft, Microsoft Certified: Identity and Access Administrator Associate - Microsoft, Okta Certified Administrator - Okta, Inc., Okta Certified Professional - Okta, Inc., SailPoint IdentityIQ Engineer Certification - SailPoint Technologies

Frequently Asked Questions

Is the salary disclosed for the Information Security Identity and Access Engineer position at psecu?
The salary for this Information Security Identity and Access Engineer role at psecu is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Where is the Information Security Identity and Access Engineer position at psecu located?
This Information Security Identity and Access Engineer role at psecu is based in Harrisburg, PA. The position is listed as on-site or hybrid. Check the full job description or apply directly to confirm the work arrangement.
Is the Information Security Identity and Access Engineer role at psecu full-time or part-time?
This is listed as a Full time position. It is posted as a Information Security Identity and Access Engineer role in the PSECU Pennsylvania State Employees Credit Union department at psecu.
Which team or department does the Information Security Identity and Access Engineer at psecu belong to?
This Information Security Identity and Access Engineer position is part of the PSECU Pennsylvania State Employees Credit Union department at psecu. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Information Security Identity and Access Engineer position at psecu?
Click the "Apply Now" button on this page. You will be redirected to psecu's official application portal hosted on workday where you can submit your application directly.
When was the Information Security Identity and Access Engineer job at psecu posted?
This Information Security Identity and Access Engineer position at psecu was posted on Sep 29, 2026. Apply as soon as possible — early applications are often reviewed first.
Information Security Identity and Access Engineer
psecu
Apply for this role ↗

You'll be redirected to psecu's official application page on Workday.