Security Engineer

Adobe Adobe · Enterprise · Seattle, WA +1

Security Engineer role focused on Identity Architecture & Solutions, building and operationalizing scalable identity and SaaS security capabilities. Responsibilities include engineering Zero-Trust access controls, hardening privileged access, participating in SaaS security posture monitoring tool POCs, instrumenting identity metrics collection, and contributing to architecture and standards for identity and access management.

What you'd actually do

  1. Engineer Zero‑Trust access controls for workforce and service identities. Develop and implement pipelines using RBAC and ABAC standards. Include device and posture checks and risk‑adaptive policies for critical services and high-risk scenarios.
  2. Harden privileged access: migrate administrators to right‑size entitlements and eliminate long‑lived elevated access across prioritized platforms (e.g., Entra ID, Privileged Access Management).
  3. Participate in tool POCs and deployments for SaaS security posture monitoring. Define baselines for M365, Slack, GitHub, Workday, and Google. Build remediation runbooks and posture success measurements.
  4. Instrument identity metrics collection and tracking by standardizing log schemas for authentication, authorization, and entitlement changes. Publish dashboards showing privilege drift, misconfigurations, and access sprawl. Coordinate risky events with security alert procedures.
  5. Contribute and drive architecture & standards: author implementation guides and reference architecture that supports a multi‑year strategy passionate about measuring risk reduction over time. Inclusive of new technologies and risks.

Skills

Required

  • Enterprise identity controls and solutions (Entra ID/AD, Okta, SailPoint)
  • Zero Trust principles
  • least privilege
  • continuous verification models
  • SaaS posture skills for securing large SaaS tenants (M365, Slack, GitHub, Workday, Google)
  • security Authn and Authz for SaaS tenants
  • Influence and collaboration with IT and security teams
  • Excellent written and verbal communication
  • Ability to deliver measurable outcomes
  • Active team participation
  • Inquisitive mind

Nice to have

  • Engineering familiarity with secure access control solutions (Teleport, Vault)
  • Secrets management
  • CI/CD solutions
  • Scripting/automation knowledge (Python, PowerShell)
  • Infrastructure-as-code (Terraform)
  • Service identity frameworks (SPIFFE/SPIRE)
  • Workload identity patterns

What the JD emphasized

  • Enterprise identity controls and solutions
  • Zero Trust principles
  • least privilege
  • continuous verification models
  • SaaS posture skills
  • security Authn and Authz for all identities accessing SaaS tenants