Iam Security Analyst

Cloudflare Cloudflare · Enterprise · India · Remote · Security

The IAM Security Analyst role at Cloudflare focuses on managing user identities and access across the enterprise. Responsibilities include implementing technologies and designing processes for authorized access, managing IAM cloud resources using Infrastructure as Code (IaC), automating provisioning tasks, implementing logging and alerting for security events, maintaining CI/CD pipelines for IAM configurations, designing automated workflows for user lifecycle management and RBAC, supporting secure application integration, managing credentials and secrets, and ensuring compliance with regulations like SOX, FRH, SOC2, HIPAA, or GDPR. The role requires proficiency in Python, experience with IAM tools, containerization (Kubernetes, Docker), Zero Trust Architecture, identity protocols (SAML, OAuth2, OIDC, SCIM), and data handling with SQL/NoSQL.

What you'd actually do

  1. Manage IAM cloud resources using Terraform, Bicep, or CloudFormation.
  2. Develop custom scripts/hooks to automate manual provisioning tasks or API integrations.
  3. Implement logging and alerting for identity-related security events (e.g., using SIEM tools).
  4. Maintain the CI/CD pipelines for deploying IAM configurations and custom connectors.
  5. Design and implement automated workflows for user onboarding, offboarding, and role-based access control (RBAC).

Skills

Required

  • 6–10 years in IT, with at least 3 years focused specifically on IAM within a DevOps or Site Reliability Engineering (SRE) context.
  • Deep hands-on experience with at least one major IAM platform.
  • High proficiency in Python (essential), with additional experience in Java, Go, or PowerShell.
  • Practical experience with ML libraries
  • Experience securing and managing identities within Kubernetes (K8s) and Docker environments.
  • Strong understanding of Zero Trust Architecture (ZTA) and Least Privilege principles.
  • Expert-level knowledge of Git and various branching strategies.
  • Deep understanding of identity protocols including SAML, OAuth2, OIDC, and SCIM.
  • Familiarity with RBAC (Role-Based Access Control) and ABAC (Attribute-Based Access Control) models.
  • Ability to query and manipulate large identity datasets using SQL or NoSQL databases.
  • Expert-level experience consuming and designing RESTful APIs for complex system integrations.

What the JD emphasized

  • SOX, FRH, SOC2, HIPAA, or GDPR compliance
  • Python (essential)