This is a remote position.
Position Title: Identity and Access Management (IAM) Engineer
$75,000 to $125,000 annually DOE
Comprehensive health benefits include - medical, dental, vision, 401k, flexible spending account, paid
sick leave and paid time off, parental leave, quarterly performance bonus, training, career growth and
education reimbursement programs.
At Ziply Fiber, our mission is to elevate the connected lives of our communities every day. We are
delivering the fastest home internet in the Northwest, with a focus on areas traditionally underserved by
mainstream internet companies. And as our state-of-the-art fiber network expands in WA, OR, ID and MT,
so does our need for team members who can help us grow and realize our goals.
We may be building internet, but we are reaching real people. We strive to build relationships and provide
customers and communities with refreshingly great experiences.
We emphasize our values in all our interactions:
Genuinely Caring: Our customers and colleagues are people, and quite possibly our neighbors. We put
ourselves in their shoes and give them our full attention.
Empowering You: We empower our customers to choose the products that best meet their needs, and
we support our employees to implement solutions that elevate the experiences of our customers and
coworkers.
Innovation and Improvement: We always look for ways to make the experiences of our customers –
and each other – better.
Earning Your Trust: We earn trust by communicating simply and transparently as real people, not as a
corporation.
Job Summary
The Identity and Access Management (IAM) Engineer is responsible for the automation, support,
documentation, development and evolution of the company’s Identity and Access services. These
services include authentication / authorization / auditing, access request automation,
onboarding/offboarding automation, SSO, MFA, privileged access management and the design and
implementation of entitlement models.
Essential Duties and Responsibilities:
The Essential Duties and Responsibilities listed below are a range of duties performed by the employee
and not intended to reflect all duties performed.
- Implement and maintain IAM systems, including a PAM solution.
- Create and maintain Identity and Access processes.
- Implement and maintain role-based access control.
- Implement and maintain Single Sign On (SSO) and Multi Factor Authentication (MFA) systems.
- Implement automated solutions between the IAM system and target apps/systems, using out-ofthebox
and custom connectors.
- Develop, enhance, test, document and manage Identity Management automation processes to
support daily operations and to improve business functions via automation.
- Perform vendor account attestations and maintain a process to identify and deactivate stale
accounts.
- Analyze, understand and document existing workflows and how they interface with other
systems.
- Manage and document onboarding, offboarding, entitlement automation and approval workflows.
- Identify and run SQL queries to obtain information and reports as needed.
- Identify and correct problems uncovered by testing or end user feedback.
- Manage the operation of IAM products and keep systems updated as updates are released.
- Work with peers to reduce manual processes through automation.
- Manage, audit and document User Identity lifecycle.
- Maintain appropriate security access and protection, in compliance with existing security policies
and best practices. Ensure IAM systems are in compliance with security requirements.
- Collaborate and cross-train Physical Security, Active Directory and Collaboration Engineers as
needed.
- Serve as escalation POC for automation issues related to onboarding and offboarding.
- Must be available to work regular business hours Pacific Standard Time.
- Must also be available to work on-call, evenings and weekends as needed.
- Performs other duties as required to support the business and other Security Engineers, such as
responding to threat detections in the identity and endpoint protection platforms.
Qualifications:
- High school diploma or GED required.
- Bachelor’s Degree in Information Security, Computer Science, Information Systems, Software
Engineering, or related field preferred.
- Minimum of three (3) years’ experience managing One Identity products is preferred, with an
emphasis on Identity Manager and Safeguard products required.
- Minimum of three (3) years’ experience automating IAM systems required.
- Minimum of three (3) years’ experience implementing and administrating Privileged Access
Management required.
- Microsoft Entra experience preferred, especially relating to Conditional Access and Authentication
Methods.
- Scripting Skills – PowerShell, Quest cmdlets, SQL, HTML.
- Experience with IIS or other web servers.
- Experience with basic maintenance and troubleshooting of Windows Server preferred.
- Microsoft SQL Server Experience preferred.
- Active Directory experience.
- Experience querying AD, LDAP, SQL and generating reports.
- Experience managing identities and roles within LDAP and Active Directory.
- Hands-on experience with Exchange Online and M365 preferred.
- Experience with creation/modification/deletion of user accounts, both manually and via
automation preferred.
- Experience with Request management workflows preferred.
Knowledge, Skills, and Abilities:
- Understanding of application-level security models, including identities, roles, permissions and
how they apply to identity and access management (IAM).
- Ability to troubleshoot and resolve problems in IAM workflows, especially relating to One Identity
products.
- Ability to document business requirements, use cases, flows, and diagrams.
- Basic understanding of Exchange Online, IIS and Group Policy Objects (GPO).
- Understanding of principle of least privilege (PoLP) security model and how to apply.
- Desire to understand the details of existing applications/processes, workflows and how they
integrate with other applications.
- Interest in understanding customer perspective and business need to aid in development of the
solution.
- Ability to work independently and apply sound judgment and reasoning skills to a variety of
situations.
- Ability to multi-task and collaborate effectively with other personnel to meet deadlines.
- Strong verbal and written communication, attention to detail and organizational skills.
- Ability to work within critical deadlines.
- Ability to adjust to rapidly changing priorities and schedules.
- Ability to provide excellent customer service.
Work Authorization
Applicants must be currently authorized to work in the US for any employer. Sponsorship is not available
for this position.
Physical Requirements
The physical demands described here are representative of those that must be met by an employee to
successfully perform the essential functions of this job. Reasonable accommodation may be made to
enable individuals with disabilities to perform the essential functions.
Essential and marginal functions may require maintaining the physical condition necessary for bending,
stooping, sitting, walking, or standing for prolonged periods of time; most of the time is spent sitting in a
comfortable position with frequent opportunity to move about. The employee must occasionally lift and/or
move up to 25 pounds. Specific vision abilities required by the job include close vision, distance vision,
color vision, peripheral vision, depth perception, and the ability to adjust focus.
Work Environment
Work is performed in an office setting with exposure to computer screens and requires extensive use of a
computer, keyboard, mouse, and multi-line telephone system. The work is primarily a modern office
setting.
At all times, Ziply Fiber must be your primary employer. Unless otherwise prohibited by law, employees
may not hold outside employment nor be self-employed without obtaining approval in writing from Ziply
Fiber. In holding outside employment or self-employment, employees should ensure that participation
does not conflict with responsibilities to Ziply Fiber or its business interests.
Diverse Workforce / EEO:
Ziply Fiber is an equal opportunity employer. Ziply Fiber will consider all qualified candidates regardless of
race, color, religion, national origin, gender, age, marital status, sexual orientation, veteran status, and the
presence of a non-job-related handicap or disability or any other legally protected status.
Ziply Fiber requires a pre-employment background check as conditions of employment. Ziply Fiber may
require a pre-employment drug screening.
Ziply Fiber is a drug free workplace.