World Kinect Logo

World Kinect

IT Identity Engineer III

Reposted 7 Days Ago
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Miami, FL
Senior level
In-Office or Remote
Hiring Remotely in Miami, FL
Senior level
The Senior InfoSec Identity Engineer will secure and manage identity systems, integrate AWS and Azure IAM, and optimize AD environments.
The summary above was generated by AI
At World Kinect, our employees are the key to our global success. We are industry leaders due to the innumerable talents of our approximately 5000 strong professional team. Our people thrive in an entrepreneurial and culturally-diverse environment, where innovative thinking, collaboration and efficient execution are highly valued. Our high-performance culture is what allows us to drive sustained growth. Stronger together, we promote an environment where individuals can thrive.
 

 

Responsibilities and Duties:

As a Senior InfoSec Identity Engineer, you will play a critical role in ensuring the security, stability, and scalability of our organization’s identity and access management systems. Your expertise will be essential in integrating and maintaining the following technologies:

1. AWS Identity and Azure Identity:

Leverage Microsoft Entra ID integrations with AWS Identity and Access Management (IAM) solutions and for secure cloud identity, role and permissions management.

Integrate IAM policies and roles with AWS services and Azure resources.

Manage identities, roles and permissions across multiple large and micro-sized AWS accounts.

Develop Identity monitoring processes, and ensure the SOC, Incident Response and Identity Operations teams have visibility and response capabilities within both infrastructure platforms.

2. Active Directory (AD), Azure Active Directory/Entra ID:

Analyze, design, implement, and support the hybrid on-premises and cloud Active Directory environment.

Collaborate with business and technical partners to integrate systems and applications with centralized authentication using AD.

Implement security baselines and recommended best practices for AD.

Develop and maintain integrations between Entra ID and Linux-based systems ensuring seamless authentication and authorization for Linux users.

Provide subject matter expertise on Azure AD and Entra ID.

Support and maintain Azure AD Federation Services (ADFS) environments and Entra ID Enterprise Applications.

Collaborate closely with global cross-functional teams to ensure stability and security.

Support synchronization and federation between on-premises AD, Azure AD, and Entra ID.

Troubleshoot and optimize synchronization processes to maintain consistency across environments.

3. Privileged Management (PIM, PAM, and Endpoint Privilege Management):

Implement time-based and approval-based role activation to mitigate risks associated with privileged accounts.

Administer PAM platforms, including Centrify, CyberArk, and Quest Active Roles Server.

Design and implement controls for managing privileged access on endpoints (Windows, macOS, Linux).

Collaborate with system administrators and security teams to enforce least privilege principles.

Implement and manage role-based access control (RBAC) for various systems and applications.

Define and enforce group-based access policies to elevate privileges when necessary.

4. Identity Governance and Administration (IGA):

Contribute during phases of design, configuration, deployments, and operations in the area of IAM.

Work on access management, identity governance, and identity management solutions.

5. Automation of User and Device Onboarding/Offboarding:

Develop and maintain scripts or workflows to automate user and device provisioning and deprovisioning.

Streamline the onboarding and offboarding processes to enhance efficiency and security.

6. Application Certification and Secret Lifecycle Management:

Collaborate with application owners to certify and manage access to critical applications.

Ensure secure handling of application secrets (API keys, passwords, etc.) throughout their lifecycle.

Qualifications:

  • Proven experience as a Senior Active Directory/Entra ID Engineer or similar role with a minimum of 8 years of experience.
  • · Advanced knowledge of Active Directory, Azure Active Directory/Entra ID, Lightweight Directory Access Protocol (LDAP), and Active Directory Federation Services (ADFS).
  • · Familiarity with PIM, PAM, and IGA concepts.
  • · Experience with endpoint privilege management, AWS IAM, Azure AD, and Linux integration.
  • · Relevant Microsoft certifications such as Microsoft Certified: Identity and Access Administrator Associate, Microsoft Certified: Azure Security Engineer Associate, or other industry certifications (e.g., CISSP, CISM, CompTIA Security+).

World Kinect is an equal opportunity/affirmative action employer. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected veteran status, age, or any other characteristic protected by law.

Top Skills

Active Directory
Active Directory Federation Services
Aws Identity
Azure Active Directory
Azure Identity
Centrify
Cyberark
Lightweight Directory Access Protocol
Linux
Microsoft Entra Id
Quest Active Roles Server

Similar Jobs

2 Hours Ago
Remote or Hybrid
22 Locations
135K-215K
Senior level
135K-215K
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
As a Manager of Network Reliability Engineering, you will enhance network efficiency, develop monitoring tools, and lead network incident resolution while managing a sustaining engineering team.
Top Skills: AWSBgpEvpnGCPGoMplsPerlPythonVxlan
55K-139K Annually
Mid level
Machine Learning • Payments • Security • Software • Financial Services
The IT Observability and Support Specialist ensures system reliability through monitoring, incident management, and collaboration with IT teams to enhance observability and troubleshoot issues.
Top Skills: AnsibleAWSAzureBashDatadogDockerElastic StackGCPGrafanaKubernetesLinuxPowershellPrometheusPythonSplunkTerraformWindows
Yesterday
Easy Apply
Remote or Hybrid
United States
Easy Apply
118K-231K Annually
Senior level
118K-231K Annually
Senior level
Big Data • Cloud • Software • Database
The role involves enhancing MongoDB's product security, advocating for security initiatives, collaborating with engineering teams, and leading security projects. The focus includes threat modeling, security assessments, and educating others on security practices.
Top Skills: AWSAzureC++Database SecurityGCPGoJavaScriptPython

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account