Identity Governance Engineer

Posted 10 Days Ago
Be an Early Applicant
Redondo Beach, CA, USA
In-Office
140K-180K Annually
Senior level
Aerospace • Software
The Role
Maintain and scale enterprise identity governance and access management across Active Directory, Microsoft Entra ID, cloud, SaaS, and regulated environments. Manage identity lifecycles, access reviews, Conditional Access, authentication, privileged access, SSO, federation, certificates, and non-human identities. Develop automation with PowerShell, Python, Microsoft Graph, and REST APIs while partnering with security teams to investigate identity risks and support compliance controls.
Summary Generated by Built In
As an Identity Governance Engineer at Impulse, you will maintain, enhance, and scale our enterprise identity and access management capabilities. This role will help ensure that users, devices, administrators, applications, and other identities have appropriate access throughout their lifecycle. The Identity Governance Engineer will work across Information Security, IT, Engineering, and business teams to strengthen identity governance, authentication, privileged access, directory services, and identity automation across corporate, cloud, and regulated environments. This is a hands-on engineering role for someone with strong experience in Active Directory, Microsoft Entra ID, identity governance, Conditional Access, and enterprise authentication technologies. 

Responsibilities
  • 3+ years of professional relative experience 
  • Maintain and enhance enterprise Identity Governance and Administration (IGA) capabilities
  • Manage and improve identity lifecycle processes, including provisioning, deprovisioning, access changes, and periodic access reviews
  • Maintain and enhance Microsoft Active Directory and Microsoft Entra ID, including users, groups, roles, privileged identities, and hybrid identity integrations
  • Maintain and continuously improve Microsoft Entra Conditional Access, authentication methods, and identity security policies
  • Support and enhance certificate-based authentication for user and device identities
  • Maintain and improve Privileged Identity Management (PIM) and integrations with Privileged Access Management (PAM) capabilities
  • Maintain enterprise SSO, federation, and automated provisioning integrations using technologies such as SAML, OAuth/OIDC, and SCIM
  • Govern employee, contractor, partner, B2B, service account, application, and other non-human identities 
  • Maintain and enhance identity governance across Microsoft 365, Azure, AWS, SaaS applications, and enterprise systems
  • Develop automation using technologies such as PowerShell, Microsoft Graph, REST APIs, and Python. Partner with Security Operations and Security Engineering to monitor, investigate, and remediate identity-related security risks. Maintain identity and access controls supporting organizational security and compliance requirements 

Minimum Qualifications
  • 5+ years of professional relative experience 
  • Experience in Identity and Access Management, Identity Governance, Security Engineering, or a related discipline
  • Strong hands-on experience administering and engineering Microsoft Active Directory
  • Strong hands-on experience with Microsoft Entra ID / Azure AD and hybrid identity environments
  • Experience managing Conditional Access, MFA, authentication methods, and privileged access
  • Experience with identity lifecycle management, RBAC, least privilege, access reviews, and entitlement governance
  • Experience with enterprise authentication and federation technologies such as SAML, OAuth 2.0, OpenID Connect, and SCIM
  • Experience with scripting and automation using PowerShell and APIs. Working knowledge of PKI, X.509 certificates, and certificate-based authentication
  • Strong troubleshooting, documentation, and communication skills

Preferred Skills and Experience
  • Experience with Microsoft Entra ID Governance, including Entitlement Management, Access Reviews, Lifecycle Workflows, and PIM
  • Experience with Entra certificate-based authentication, Active Directory certificate authentication, 802.1X/EAP-TLS, and user/device certificates
  • Experience with enterprise PAM technologies. Experience governing identity and access across Azure, AWS, and SaaS environments
  • Experience with B2B/external identity and non-human identity governance
  • Experience securing Active Directory and Entra ID against identity-based attacks
  • Experience with SIEM and identity security monitoring
  • Experience working in aerospace, defense, government contracting, or another regulated industry
  • Familiarity with CMMC, NIST SP 800-171, NIST SP 800-172, or NIST SP 800-53 

Additional Information:
Compensation bands are determined by role, level, location, and alignment with market data. Individual level and base pay is determined on a case-by-case basis and may vary based on job-related skills, education, experience, technical capabilities and internal equity. In addition to base salary, for full-time hires, you may also be eligible for long-term incentives, in the form of stock options, and access to medical, vision & dental coverage as well as access to a 401(k) retirement plan.
Impulse Space’s spacecraft manufacturing business is subject to U.S. export regulations including the International Traffic in Arms Regulations (ITAR) and Export Administration Regulations (EAR). This position requires applicants to be either U.S. Persons (i.e., U.S. citizen, U.S. national, lawful permanent U.S. resident (green card holder), an individual granted asylum in the U.S., or an individual admitted in U.S. refugee status) or persons eligible to obtain an export license from the U.S. Departments of State, Commerce, or other applicable U.S. government agencies. Learn more about the ITAR here.  
Impulse Space is an Equal Opportunity Employer; employment with Impulse Space is governed on the basis of merit, competence and qualifications and will not be influenced in any manner by race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, gender identity, marital status, mental or physical disability or any other legally protected status.

About
Impulse Space, the in-space transportation company founded by Tom Mueller, is opening access beyond Low Earth Orbit (LEO) with its fleet of in-space transportation vehicles. The high-energy Helios vehicle unlocks orbits beyond LEO with its powerful Deneb engine, dropping off payloads in MEO, GEO, heliocentric, lunar, and other planetary orbits. The flight-proven Mira vehicle uses a nontoxic, high-impulse chemical propulsion system to offer orbital transport, constellation deployment, and precision reentry services to customers throughout LEO. Led by a team that delivered the most reliable rockets in history, Impulse provides economical and efficient in-space transportation by reliably and rapidly getting customers where they want to go.

Skills Required

  • 5+ years of professional relevant experience
  • Experience in Identity and Access Management, Identity Governance, Security Engineering, or a related discipline
  • Hands-on experience administering and engineering Microsoft Active Directory
  • Hands-on experience with Microsoft Entra ID / Azure AD and hybrid identity environments
  • Experience managing Conditional Access, MFA, authentication methods, and privileged access
  • Experience with identity lifecycle management, RBAC, least privilege, access reviews, and entitlement governance
  • Experience with SAML, OAuth 2.0, OpenID Connect, and SCIM
  • Experience with PowerShell and API-based scripting and automation
  • Working knowledge of PKI, X.509 certificates, and certificate-based authentication
  • Strong troubleshooting, documentation, and communication skills
  • Experience with Microsoft Entra ID Governance, Entitlement Management, Access Reviews, Lifecycle Workflows, and PIM
  • Experience with Entra certificate-based authentication, Active Directory certificate authentication, 802.1X/EAP-TLS, and user/device certificates
  • Experience with enterprise PAM technologies and governing identity across Azure, AWS, and SaaS environments
  • Experience with B2B/external identity and non-human identity governance
  • Experience securing Active Directory and Entra ID against identity-based attacks
  • Experience with SIEM and identity security monitoring
  • Experience in aerospace, defense, government contracting, or another regulated industry
  • Familiarity with CMMC, NIST SP 800-171, NIST SP 800-172, or NIST SP 800-53
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: El Segundo, CA
82 Employees
Year Founded: 2021

What We Do

Impulse enables low-cost and nimble last-mile space payload delivery - access any orbit, reach other worlds.

Similar Jobs

In-Office
Sandoz, CA, USA
17135 Employees

Block Logo Block

Data Scientist

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
8 Locations
12000 Employees
240K-359K Annually
Hybrid
2 Locations
289097 Employees

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Barista II

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
Cabazon, CA, USA
16000 Employees
15-18 Hourly

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
60 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account