Senior Identity & Access Management Engineer - Moveworks

ServiceNow ServiceNow · Enterprise · Sandy Springs, GA +1 · Engineering

This role is for a Senior Identity & Access Management Engineer at Moveworks, an Agentic AI Assistant platform recently acquired by ServiceNow. The role focuses on designing, building, and scaling IAM solutions across cloud infrastructure, SaaS applications, and internal systems. Responsibilities include developing access models, reducing privilege sprawl, building observability in SIEM, improving user access reviews, and de-risking IAM threats. The role requires hands-on technical development with AWS, Azure, Teleport, and Terraform, and a strong understanding of security judgment and risk mitigation. While the company is an AI platform, this specific role is focused on the security infrastructure supporting it, not on building AI models or agents themselves.

What you'd actually do

  1. Be the technical developer to drive IAM application development: Code, design, and implement solutions with extensive knowledge in AWS, Azure, Teleport, and Terraform. Enabling robust and reliable solutions to keep our engineering teams active.
  2. Drive IAM projects end-to-end: Take ambiguous access problems, understand and have the ability to define requirements, architect solutions, and own the rollout/operationalization (not just the design).
  3. Develop with secure access models in mind: Continuously develop role design improvements and access assignment patterns across AWS, Kubernetes, SaaS apps, and internal systems to reduce unnecessary privileges, minimize manual grants, and create scalable “safe baseline” access that covers routine work without daily elevation.
  4. Develop on operationalizing logging and metrics: Ensure access changes are observable in our Security Information and Event Management (SIEM) tool; build repeatable reporting that surfaces risky access and drift.
  5. Run and improve user access reviews (UAR): Develop, execute and design a UAR process & solution that meets compliance requirements while improving real security signal—minimizing approver burden through scoping, automation, and clear decision support.

Skills

Required

  • AWS
  • Azure
  • Teleport
  • Terraform
  • Identity and Access Management (IAM)
  • SIEM
  • logging
  • metrics
  • reporting
  • role design
  • access reviews
  • Kubernetes
  • SaaS applications

What the JD emphasized

  • hands-on technical developer
  • coding, designing, building, and scaling IAM solutions
  • own the development of IAM initiatives end-to-end
  • architecting secure, automated solutions and driving them into production
  • technical developer to drive IAM application development
  • extensive knowledge in AWS, Azure, Teleport, and Terraform
  • Drive IAM projects end-to-end
  • architect solutions, and own the rollout/operationalization
  • Develop with secure access models in mind
  • Develop on operationalizing logging and metrics
  • Run and improve user access reviews (UAR)
  • Develop technology to continuously de-risk
  • Operate with strong security judgment and high signal
  • Document and standardize the paved road