IAM Security Engineer

Posted 6 Days Ago
Be an Early Applicant
Lisbon
3-5 Years Experience
Information Technology • Security • Cybersecurity
Helping Build a Better Internet
The Role
As an IAM Security Engineer at Cloudflare, you will design, implement, and manage identity and access management solutions to safeguard systems, applications, and data. Responsibilities include ensuring secure user access and authentication mechanisms as well as building controls to enforce policies. Desired skills include knowledge of identity federation, IAM policy enforcement, DevOps practices, and network security infrastructure.
Summary Generated by Built In

Available Locations: Lisbon, Portugal.
About the DepartmentThe Identity and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges, and authentication mechanisms across internal systems, applications, and data. Our mission is to safeguard the organization against unauthorized access, protect sensitive information, and enable seamless user experiences while adhering to industry best practices and compliance standards.
About the Role
As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and scaling identity and access management solutions for Cloudflare's internal workforce and workloads. You will be responsible for safeguarding our systems, applications, and data by ensuring secure user access, authentication, and authorization mechanisms.
What You'll Do

  • Design, build, test, and deploy IAM solutions across authentication, authorization, and accounting
  • Leverage Cloudflare products to secure our identities
  • Build SSO integrations leveraging SAML, OIDC, OAuth, and SCIM
  • Build and manage the Identity Governance and Administration platform
  • Develop automated roles leveraging RBAC and ABAC
  • Build and manage an access certification platform
  • Build and manage a Priviliged Accss Management (PAM) platform
  • Provide operational support of IAM systems including an on-call rotation that may include after hours calls


Desirable skills, knowledge and experience
Security engineers take part in a wide variety of tasks and projects in the team. One individual is not expected to know everything, but a working knowledge in several of the following areas is required:

  • Strong understanding of identity federation (SAML, OAuth, OpenID Connect, etc.)
  • Experience implementing Identity Governance and Administration (IGA) solutions including lifecycle management, SCIM, birthright access (RBAC, ABAC), and access certifications
  • Experience with secure configuration of containerized application platforms (e.g. Kubernetes)
  • Advanced scripting experience (Python, TypeScript, Bash, etc.)
  • Experience implementing Zero Trust controls
  • Experience integrating with applications and SaaS solutions
  • Experience with Identity and Access Management policy application and enforcement
  • Experience working with Identity Threat Detection & Response (ITDR)
  • Experience working with infrastructure as code and configuration management tools like Terraform, Ansible, etc.

Top Skills

Ansible
DevOps
Iam
Oauth
Open Policy Agent
Openid Connect
SAML
Terraform
The Company
HQ: San Francisco, CA
3,300 Employees
Hybrid Workplace
Year Founded: 2010

What We Do

Cloudflare, Inc. is on a mission to help build a better Internet. Cloudflare’s suite of products protect and accelerate any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare have all web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was awarded by Reuters Events for Global Responsible Business in 2020, named to Fast Company's Most Innovative Companies in 2021, and ranked among Newsweek's Top 100 Most Loved Workplaces in 2022.

Why Work With Us

Cloudflare employees come from all walks of life. Our team is energized by a collaborative, creative environment that celebrates our differences and fosters new ways to grow together.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Cloudflare Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

We are committed to developing a global team that is distributed with a flexible working approach. Doing this equitably and inclusively is essential to our success. Visit our careers site for more on 'How & Where We Work.'

Typical time on-site: Flexible
HQSan Francisco, CA
Colorado
Austin, TX
Calgary, CA
Champaign, IL
London, GB
Los Angeles, CA
San Jose, CA
Seattle, WA
Washington, DC
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account