Who We Are:
At OPENLANE we make wholesale easy so our customers can be more successful.
We’re a technology company building the world’s most advanced—and uncomplicated—digital marketplace for used vehicles.
We’re a data company helping customers buy and sell smarter with clear, actionable insights they can understand and use.
And we’re an innovation company accelerating the future of wholesale remarketing through curiosity, collaboration, and an entrepreneurial spirit.
Our Values:
Driven Waybuilders. We pursue challenges that inspire us to build, create, and innovate.
Relentless Curiosity. We seek to understand and improve our customers’ experience.
Smart Risk-Taking. We transform risk into progress through data, experience, and intuition.
Fearless Ownership. We deliver what we promise and learn along the way.
We’re Looking For:
A Senior Identity & Access Engineer to design, scale, and optimize our enterprise identity infrastructure and access governance frameworks. In this role, you will take ownership of complex identity architecture projects, build seamless automation for access lifecycles, and strengthen our zero-trust security posture across hybrid and cloud environments.
You Are:
Comfortable using AI coding and productivity tools as part of your daily workflow to work faster and smarter.
A proactive, analytical, and security-focused engineer who thrives on solving complex identity challenges.
A collaborative team player with strong technical ownership and a commitment to continuous improvement.
A clear communicator who can collaborate across technical teams and mentor junior engineers on IAM best practices.
You Bring:
Core knowledge of advanced identity lifecycles, enterprise governance, zero-trust principles, and least-privilege security architectures.
Functional expertise in designing and optimizing single sign-on (SSO), multi-factor authentication (MFA), role-based/attribute-based access control (RBAC/ABAC), and identity governance and administration (IGA).
Technical expertise in configuring and automating cloud identity providers (e.g., Okta, Microsoft Entra ID, Ping Identity), directory services (Active Directory, LDAP), scripting (Python, PowerShell, Bash), and Infrastructure as Code (IaC) tooling.
You Own:
Design, integration, and day-to-day administration of enterprise IAM, SSO, MFA, and Privileged Access Management (PAM) platforms.
Development and optimization of automated provisioning/deprovisioning workflows, access request pipelines, and lifecycle operations.
Escalated tier 3 support, root-cause analysis, and technical resolution for complex identity and authentication issues.
Enterprise access certification reviews, compliance audit support, and identity risk assessment across multi-cloud environments.
You Drive:
Execution: Modernizing identity protocols, deploying scalable access policies, and automating manual identity lifecycle tasks using code and API integrations.
Results: Enhanced infrastructure security, zero unauthorized access incidents due to legacy controls, streamlined user onboarding/offboarding, and audit readiness.
Who You Will Work With:
Reporting to the Identity & Access Management Manager, this role will collaborate with Cloud Engineering, IT Infrastructure, Compliance Officers, and Security Architects on a daily to weekly basis.
Where You Work:
Your work is performed as a Remote employee, with flexible support aligned to business needs.
Must Have’s:
5+ years of hands-on experience in Identity and Access Management (IAM) or IT Security engineering.
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
Demonstrated experience architecting and managing enterprise SSO, MFA, and federated identity protocols (SAML 2.0, OAuth 2.0, OpenID Connect).
Advanced proficiency in directory service administration, scripting for workflow automation, and exposure to Infrastructure as Code (e.g., Terraform, CloudFormation).
Demonstrated hands-on use of AI-assisted coding/development tools (e.g., AI coding assistants, LLM-based automation) to accelerate scripting, automation, or documentation work.
Nice to Have’s
Relevant certifications such as CISSP, Certified Identity and Access Manager (CIAM), or vendor credentials (e.g., Okta Certified Professional, Okta Certified Administrator, Google Professional Cloud Security Engineer, Google Professional Security Operations Engineer, AWS Certified Security - Specialty).
Hands-on experience with Privileged Access Management (PAM) solutions.
Experience designing identity security solutions for multi-cloud environments (AWS, Azure, Google Cloud).
What We Offer:
Competitive pay
Medical, dental, and vision benefits with employer HSA contributions (US) and FSA options (US)
Immediately vested 401K (US) or RRSP (Canada) with company match
Paid Vacation, Personal, and Sick Time
Paid maternity and paternity leave (US)
Employer-paid short-term disability, long-term disability, life insurance, and AD&D (US)
Robust Employee Assistance Program
Employer paid Leap into Service Day to volunteer
Tuition Reimbursement for eligible programs
Opportunities to expand your skill set and share your knowledge across a publicly traded, global organization
Company culture of internal promotions, diverse career paths, and meaningful advancement
Sound like a match? Apply Now - We can't wait to hear from you!
Compensation Range of
Annual Salary: $115,000.00 - $130,000.00 USD(Depending on experience, skill set, qualifications, and other relevant factors.)
Skills Required
- 5+ years of hands-on experience in Identity and Access Management or IT Security engineering
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience
- Experience architecting and managing enterprise SSO, MFA, and federated identity protocols including SAML 2.0, OAuth 2.0, and OpenID Connect
- Advanced proficiency in directory service administration
- Scripting experience for workflow automation
- Exposure to Infrastructure as Code tools such as Terraform or CloudFormation
- Hands-on use of AI-assisted coding or development tools for scripting, automation, or documentation
- Relevant certifications such as CISSP, CIAM, Okta credentials, Google Professional Cloud Security Engineer, Google Professional Security Operations Engineer, or AWS Certified Security Specialty
- Hands-on experience with Privileged Access Management solutions
- Experience designing identity security solutions for AWS, Azure, and Google Cloud multi-cloud environments
OPENLANE Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about OPENLANE and has not been reviewed or approved by OPENLANE.
-
Leave & Time Off Breadth — PTO is often described as generous and sometimes front‑loaded, with flexible scheduling and a paid volunteer day supporting work‑life balance.
-
Healthcare Strength — Health coverage is considered decent and includes medical, dental, vision, HSA seed money, and employer‑paid disability and life insurance.
-
Retirement Support — Retirement offerings include a 401(k) with company match and immediate vesting in the U.S. (or RRSP in Canada), providing a solid foundation for savings.
OPENLANE Insights
What We Do
We’re a tight-knit team of fearless entrepreneurs and diverse waybuilders redefining how used cars are bought and sold everyday. We make wholesale easy so our customers can be more successful – by building the world’s greatest digital marketplaces for used vehicles. Our team helps the world’s largest OEMs, dealers, fleet operators, rental companies and financial institutions drive their businesses forward everyday. Looking for your next adventure? From creative design to engineering, software development to manufacturing, to marketing and finance - your journey can start here. Explore our roles today: corporate.openlane.com/careers








