IAM Cybersecurity Engineer

D&H Distributing Co.
  • Harrisburg, PA
  • Remote
    10 days ago

    Job Description

    IAM Security Engineer

    This is a remote role

    D&H is growing! Join 100+ year old Employee-Owned technology distributor, offering end-to-end solutions for today''s resellers, retailers, and the clients they serve across the SMB and Consumer markets.

    • We are empowered by our employee Co-Owners who provide the industry's best service, and we promote a collaborative culture.
    • We offer an Employee Stock Ownership Plan, 401k, Paid Time Off, Medical, Prescription, Dental and Vision benefits as well as Gym Reimbursement, Work from Home Reimbursement, Employee Purchase Program, Tuition Assistance and much more!
    • As a D&H Co-Owner you receive numerous discounts on services.
    • We feel strongly about giving back to the community and promoting sustainable, eco-friendly business practices.

    SUMMARY

    The IAM Security Engineer is responsible for designing, implementing, maintaining, and improving identity and access management solutions that protect company systems, applications, users, and data. This role supports secure authentication, authorization, single sign-on, multi-factor authentication, identity lifecycle management, and access control capabilities across cloud, SaaS, and on-premises environments.

    Knowledge of IDaaS platforms, identity providers, Microsoft Entra ID, Active Directory, MFA, passkeys, Microsoft Authenticator, Conditional Access policies, federation, SSO, and Customer Identity and Access Management (CIAM) capabilities is essential to this role.

    ESSENTIAL DUTIES AND RESPONSIBILITIES

    • Design, implement, administer, and support enterprise identity and access management solutions across cloud, SaaS, and on-premises environments.
    • Engineer and maintain identity provider integrations using standards such as SAML, OAuth, OpenID Connect, LDAP, SCIM, and federation technologies.
    • Configure and support Microsoft Entra ID, Active Directory, hybrid identity services, enterprise applications, app registrations, authentication methods, and identity synchronization.
    • Implement and maintain multi-factor authentication controls, including Microsoft Authenticator, phishing-resistant authentication, passkeys, and passwordless authentication capabilities.
    • Develop, test, and enforce Conditional Access policies aligned to security standards, business requirements, risk posture, and least privilege principles.
    • Support CIAM capabilities for customer-facing identity use cases, including secure registration, authentication, authorization, and user experience considerations.
    • Partner with application, infrastructure, security operations, and business teams to integrate applications with SSO, MFA, identity governance, and access management controls.
    • Troubleshoot and resolve complex authentication, authorization, provisioning, federation, and access-related issues.
    • Assist with identity lifecycle processes, including onboarding, role changes, access reviews, deprovisioning, privileged access controls, and entitlement management.
    • Monitor identity-related logs, alerts, risky sign-ins, audit events, and security incidents to support timely investigation and response.
    • Evaluate and recommend new identity security technologies, authentication methods, and automation opportunities to improve the organization's security posture.
    • Maintain IAM documentation, standards, configuration baselines, operational procedures, and support materials.
    • Maintain knowledge of cybersecurity frameworks and identity security best practices, including NIST, ISO 27001, CIS, Zero Trust, and least privilege principles.
    • Provide input on the design of IAM policies, authentication standards, access control models, and secure identity processes for the organization.
    • Effectively deal with rapid change in a positive manner.
    • Maintain a positive and professional working relationship with peers, management, and support resources, with a constant commitment to teamwork and exemplary customer service.
    • Maintain technical knowledge by attending educational workshops and reviewing publications.
    • Conduct self in the presence of co-owners and community to present a professional image of D&H Distributing.
    • Perform all other duties as assigned by management in a professional and efficient manner.

    KNOWLEDGE, SKILLS, and/or ABILITIES

    • Strong understanding of identity and access management concepts, including authentication, authorization, federation, identity lifecycle management, least privilege, RBAC, ABAC, and Zero Trust principles.
    • Hands-on experience with IDaaS platforms, identity providers, Microsoft Entra ID, Active Directory, hybrid identity, MFA, passkeys, Microsoft Authenticator, and Conditional Access policies.
    • Experience integrating applications with SSO and federation protocols such as SAML, OAuth, OpenID Connect, LDAP, and SCIM.
    • Knowledge of CIAM concepts and customer-facing authentication patterns, including secure registration, account recovery, user consent, and adaptive authentication.
    • Ability to analyze identity-related logs, risky sign-ins, audit events, access failures, and authentication patterns to support troubleshooting and security investigations.
    • Working knowledge of PowerShell or similar scripting languages to support automation, reporting, configuration management, and operational efficiency.
    • Exceptional verbal and written communications skills.
    • Effectively communicate complex identity and security issues in business terms at any level within the organization.
    • Respond to customer inquiries, effectively communicate critical problems, and discuss resolutions with management.
    • Highly self-motivated and directed.
    • Ability to prioritize and execute tasks in a high-pressure environment and make sound decisions in urgent situations.

    EDUCATION and/or EXPERIENCE

    • Education

    • Associate's degree in Cybersecurity or similar area of study required or equivalent years of related work experience.

    • Bachelor's Degree in Cybersecurity or similar area of study preferred.

    • Experience

    • At least 3-5 years of experience in cybersecurity, information technology, identity and access management, or security engineering with implementation and system maintenance preferred.

    • At least 3-5 years of experience supporting Microsoft Entra ID, Active Directory, identity provider integrations, SSO, MFA, Conditional Access, or related IAM technologies preferred.

    • Scripting experience in PowerShell, Python, or similar languages preferred.

    Numbers & Facts

    LocationHarrisburg, PA (
    Remote
    )

    Skills

    • Access Controlunmatched
    • Analysis Skillsunmatched
    • Authenticationunmatched
    • Automationunmatched
    • Best Practicesunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • Computer Securityunmatched
    • Configuration Managementunmatched
    • Consumer Goods and Servicesunmatched
    • Customer Relationsunmatched
    • Customer Support/Serviceunmatched
    • Documentation Standardsunmatched
    • Enterprise Applicationsunmatched
    • Establish Prioritiesunmatched
    • ISO (International Organization for Standardization)unmatched
    • Identify Issuesunmatched
    • Identity Data Managementunmatched
    • Identity Federationunmatched
    • Information Technology & Information Systemsunmatched
    • Internet Securityunmatched
    • LDAP (Lightweight Directory Access Protocol)unmatched
    • Microsoft Access Databaseunmatched
    • Microsoft Active Directoryunmatched
    • Microsoft Product Familyunmatched
    • OAuthunmatched
    • Onboardingunmatched
    • OpenIDunmatched
    • Operational Supportunmatched
    • Operations Processesunmatched
    • Organizational Development/Managementunmatched
    • Presentation/Verbal Skillsunmatched
    • Problem Solving Skillsunmatched
    • Publicationsunmatched
    • Python Programming/Scripting Languageunmatched
    • Reseller Channelunmatched
    • Riskunmatched
    • Scripting (Scripting Languages)unmatched
    • Security Assertion Markup Language (SAML)unmatched
    • Security Auditingunmatched
    • Single Sign-On (SSO)unmatched
    • Software as a Service (SaaS)unmatched
    • Systems Engineeringunmatched
    • Systems Maintenanceunmatched
    • Team Playerunmatched
    • Test Plan/Scheduleunmatched
    • Time Managementunmatched
    • U.S. National Institute of Standards and Technology (NIST)unmatched
    • Use Casesunmatched
    • User Interface/Experience (UI/UX)unmatched
    • Windows PowerShellunmatched
    • Writing Skillsunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder