Sr Staff Identity and Access Management Engineer

GEICO GEICO · Insurance · Bethesda, MD +3

Senior Staff Engineer focused on Identity and Access Management (IAM) platforms and applications, ensuring secure authorization to data assets. Responsibilities include leading the adoption of modern authentication/authorization mechanisms, owning application integrations with IGA platforms, and implementing tokenization solutions. Requires experience in security protocols, cloud architecture, and building scalable systems.

What you'd actually do

  1. Lead execution and adoption of modern authentication and authorization mechanisms (SAML, OIDC/OAUTH2)
  2. Own the complete project lifecycle for application integrations of both on-premises and SaaS applications with our IGA platform.
  3. Collaborate with application team to implement tokenization solutions that reduce sensitive data exposure, thereby enhancing data security and minimizing the risk of unauthorized access
  4. Stay at the forefront of emerging identity trends, technologies, and best practices, and apply this knowledge to enhance GEICO’s data protection strategies
  5. Build resilient and scalable architecture, driving innovation and cost efficiency

Skills

Required

  • Identity Directory Services
  • modern authentication and authorization mechanisms (SAML, OIDC/OAUTH2)
  • IGA platform integration
  • tokenization solutions
  • security protocols and products (Active Directory, Kerberos, LDAP, SAML, OAuth, OIDC)
  • DevOps Concepts
  • Cloud Architecture
  • Software Development Lifecycle
  • continuous delivery
  • infrastructure as code
  • micro-services oriented architecture
  • extensible REST APIs
  • Datacenter structure
  • Azure platform
  • Java, Go, or Python
  • cryptographic protocols
  • digital certificates
  • encryption standards (X.509, Transport Layer Security (TLS), Advanced Encryption Standard (AES))
  • problem-solving abilities
  • mitigating security risks and vulnerabilities
  • communication skills

Nice to have

  • open-source frameworks
  • AWS, GCP, Azure, or another cloud service
  • people management experience

What the JD emphasized

  • zero-downtime platforms
  • highest standards of compliance
  • secure authorization
  • reduce sensitive data exposure
  • minimizing the risk of unauthorized access
  • security risks and vulnerabilities