Iam Engineer Green Card Jobs
IAM Engineer roles qualify for EB-2 and EB-3 green card sponsorship through the PERM labor certification process, which requires your employer to document that no equally qualified U.S. worker is available. Identity and access management sits firmly within specialty occupation territory, making employer-sponsored permanent residency a realistic path for credentialed foreign professionals in this field.
See All Iam Engineer JobsOverview
Showing 5 of 73+ Iam Engineer jobs


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?


Have you applied for this role?
See all 73+ Iam Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Iam Engineer roles.
Get Access To All Jobs
Requisition ID
93876
Department
Tech Data AI Ventures
Job Function
Tech Data AI Ventures
Location
Remote, New York, United States
Role Location Designation
Hybrid - 3 days per quarter Location Designation: Hybrid - 3 days per quarter
As part of Technology, you'll have the opportunity to contribute to groundbreaking initiatives that shape New York Life's digital landscape. Leverage cutting-edge technologies like Generative AI to increase productivity, streamline processes, and create seamless experiences for clients, agents, and employees. Your expertise fuels innovation, agility, and growth driving the company's success.
The IAM Engineer will play a key role in designing, engineering, and maintaining NYL’s Identity & Access Management solutions across all IAM domains: Identity Governance & Administration (IGA), Privileged Access Management (PAM), Directory Services, and Web Access Management (WAM). This role blends hands-on engineering with solution architecture, ensuring that IAM capabilities are robust, scalable, secure, and aligned with enterprise standards. The IAM Engineer will support both on-premises and cloud environments, working with a mix of commercial, SaaS, and custom platforms.
Experience in SailPoint, CyberArk, Ping, Entra and Active Directory is strongly preferred. The ideal candidate will bring technical depth, a strong learning mindset, and genuine enthusiasm for advancing their craft. We are building the identity foundation for a more connected, AI-enabled, and technology-driven future so curiosity, adaptability, and readiness to embrace new capabilities will be essential.
What You’ll Do:
- Engineer, configure, and maintain IAM solutions across IGA, PAM, Directory, and WAM domains.
- Collaborate with architecture teams to design IAM solutions that integrate securely with on-premises and cloud applications (AWS, SaaS, hybrid models).
- Develop and maintain workflows, connectors, policies, and scripts to automate identity lifecycle and access management processes.
- Integrate IAM solutions with enterprise authentication and authorization frameworks, including MFA, passwordless authentication, and emerging NHI standards (e.g., SPIFFE, DCR, PKCE).
- Partner with Information Security, Application, and Infrastructure teams to ensure IAM solutions meet security, compliance, and audit requirements.
- Troubleshoot and resolve complex IAM-related incidents, performance issues, and integration challenges.
- Support roadmap delivery for IAM initiatives, including cloud adoption, Zero Trust enablement, and modernization of legacy IAM services.
- Contribute to solution design reviews, platform upgrades, and security hardening initiatives.
- Explore and implement AI/ML-based anomaly detection for identity risk scoring and adaptive authentication.
- Build automation scripts (Python, PowerShell, Java) to enhance IAM workflows.
- Collaborate on introducing AI-driven decision-making for access governance, identity-based threat detection, and identity intelligence.
- Stay engaged with emerging identity, cloud, and AI-related technologies; bring forward ideas to evolve IAM for the future.
What You’ll Bring:
- Bachelor’s degree in Computer Science, Information Systems, or equivalent experience.
- 10+ years of hands-on engineering experience across multiple IAM domains.
- Strong knowledge of and experience with SailPoint, CyberArk, PingOne, PingFederate, Ping Directory, Entra and Active Directory.
- Proven experience integrating IAM solutions in hybrid (cloud + on-premises) environments.
- Familiarity with identity protocols such as SAML, OAuth 2.0, OIDC, SCIM, LDAP, SPIFFE, DCR, and PKCE.
- Strong scripting skills (e.g., PowerShell, Python, Java) for automation and integration.
- Understanding of IAM-related compliance and regulatory requirements (e.g., NYS DFS, NIST).
- Ability to work effectively in a team-oriented, collaborative environment, with strong problem-solving skills.
Preferred Qualifications
- Experience with cloud identity platforms (e.g., Azure AD, AWS IAM).
- Exposure to Zero Trust architectures, modern authentication strategies, and AI-enabled security capabilities.
- Prior experience in a large enterprise or financial services environment.
- IAM vendor certifications (e.g., SailPoint IdentityNow Engineer, CyberArk Trustee/Defender, Ping Identity Certified Professional).
Pay Transparency
Salary Range: $124,000-$177,000
Overtime eligible: Exempt
Discretionary bonus eligible: Yes
Sales bonus eligible: No
Actual base salary will be determined based on several factors but not limited to individual’s experience, skills, qualifications, and job location. Additionally, employees are eligible for an annual discretionary bonus. In addition to base salary, employees may also be eligible to participate in an incentive program.
Company Overview
At New York Life, our 180-year legacy of purpose and integrity fuels our future. As we evolve into a more technology-, data-, and AI-enabled organization, we remain grounded in the values that drive lasting impact.
Our diverse business portfolio creates opportunities to make a difference across industries and communities—inviting bold thinking, collaborative problem-solving, and purpose-driven innovation. Here, you’ll find the rare balance of long-standing stability and forward momentum, supported by an inclusive team that honors tradition while embracing progress.
As a Fortune 100 mutual company, we offer a place to grow your skills, contribute to meaningful work, and deliver solutions that matter. Your ideas drive what’s next, and your growth powers it.
Our Benefits
We provide a full package of benefits for employees – and have unique offerings for a modern workforce, including leave programs, adoption assistance, and student loan repayment programs. Based on feedback from our employees, we continue to refine and add benefits to our offering, so that you can flourish both inside and outside of work.
Our Commitment to Inclusion
At New York Life, fostering an inclusive workplace is fundamental to who we are and how we serve our communities. We have a longstanding commitment to creating an environment where individuals can contribute their best and succeed together. This foundation is rooted in our core values of humanity and integrity, ensuring that every employee feels valued and supported. By embracing a broad range of perspectives and experiences, we achieve greater success and fulfill our promise of providing financial security and peace of mind to families across all communities.
Recognized as one of Fortune’s World’s Most Admired Companies, New York Life is committed to improving local communities through a culture of employee giving and volunteerism, supported by the Foundation. We're proud that due to our mutuality, we operate in the best interests of our policy owners.
Job Requisition ID: 93876

Requisition ID
93876
Department
Tech Data AI Ventures
Job Function
Tech Data AI Ventures
Location
Remote, New York, United States
Role Location Designation
Hybrid - 3 days per quarter Location Designation: Hybrid - 3 days per quarter
As part of Technology, you'll have the opportunity to contribute to groundbreaking initiatives that shape New York Life's digital landscape. Leverage cutting-edge technologies like Generative AI to increase productivity, streamline processes, and create seamless experiences for clients, agents, and employees. Your expertise fuels innovation, agility, and growth driving the company's success.
The IAM Engineer will play a key role in designing, engineering, and maintaining NYL’s Identity & Access Management solutions across all IAM domains: Identity Governance & Administration (IGA), Privileged Access Management (PAM), Directory Services, and Web Access Management (WAM). This role blends hands-on engineering with solution architecture, ensuring that IAM capabilities are robust, scalable, secure, and aligned with enterprise standards. The IAM Engineer will support both on-premises and cloud environments, working with a mix of commercial, SaaS, and custom platforms.
Experience in SailPoint, CyberArk, Ping, Entra and Active Directory is strongly preferred. The ideal candidate will bring technical depth, a strong learning mindset, and genuine enthusiasm for advancing their craft. We are building the identity foundation for a more connected, AI-enabled, and technology-driven future so curiosity, adaptability, and readiness to embrace new capabilities will be essential.
What You’ll Do:
- Engineer, configure, and maintain IAM solutions across IGA, PAM, Directory, and WAM domains.
- Collaborate with architecture teams to design IAM solutions that integrate securely with on-premises and cloud applications (AWS, SaaS, hybrid models).
- Develop and maintain workflows, connectors, policies, and scripts to automate identity lifecycle and access management processes.
- Integrate IAM solutions with enterprise authentication and authorization frameworks, including MFA, passwordless authentication, and emerging NHI standards (e.g., SPIFFE, DCR, PKCE).
- Partner with Information Security, Application, and Infrastructure teams to ensure IAM solutions meet security, compliance, and audit requirements.
- Troubleshoot and resolve complex IAM-related incidents, performance issues, and integration challenges.
- Support roadmap delivery for IAM initiatives, including cloud adoption, Zero Trust enablement, and modernization of legacy IAM services.
- Contribute to solution design reviews, platform upgrades, and security hardening initiatives.
- Explore and implement AI/ML-based anomaly detection for identity risk scoring and adaptive authentication.
- Build automation scripts (Python, PowerShell, Java) to enhance IAM workflows.
- Collaborate on introducing AI-driven decision-making for access governance, identity-based threat detection, and identity intelligence.
- Stay engaged with emerging identity, cloud, and AI-related technologies; bring forward ideas to evolve IAM for the future.
What You’ll Bring:
- Bachelor’s degree in Computer Science, Information Systems, or equivalent experience.
- 10+ years of hands-on engineering experience across multiple IAM domains.
- Strong knowledge of and experience with SailPoint, CyberArk, PingOne, PingFederate, Ping Directory, Entra and Active Directory.
- Proven experience integrating IAM solutions in hybrid (cloud + on-premises) environments.
- Familiarity with identity protocols such as SAML, OAuth 2.0, OIDC, SCIM, LDAP, SPIFFE, DCR, and PKCE.
- Strong scripting skills (e.g., PowerShell, Python, Java) for automation and integration.
- Understanding of IAM-related compliance and regulatory requirements (e.g., NYS DFS, NIST).
- Ability to work effectively in a team-oriented, collaborative environment, with strong problem-solving skills.
Preferred Qualifications
- Experience with cloud identity platforms (e.g., Azure AD, AWS IAM).
- Exposure to Zero Trust architectures, modern authentication strategies, and AI-enabled security capabilities.
- Prior experience in a large enterprise or financial services environment.
- IAM vendor certifications (e.g., SailPoint IdentityNow Engineer, CyberArk Trustee/Defender, Ping Identity Certified Professional).
Pay Transparency
Salary Range: $124,000-$177,000
Overtime eligible: Exempt
Discretionary bonus eligible: Yes
Sales bonus eligible: No
Actual base salary will be determined based on several factors but not limited to individual’s experience, skills, qualifications, and job location. Additionally, employees are eligible for an annual discretionary bonus. In addition to base salary, employees may also be eligible to participate in an incentive program.
Company Overview
At New York Life, our 180-year legacy of purpose and integrity fuels our future. As we evolve into a more technology-, data-, and AI-enabled organization, we remain grounded in the values that drive lasting impact.
Our diverse business portfolio creates opportunities to make a difference across industries and communities—inviting bold thinking, collaborative problem-solving, and purpose-driven innovation. Here, you’ll find the rare balance of long-standing stability and forward momentum, supported by an inclusive team that honors tradition while embracing progress.
As a Fortune 100 mutual company, we offer a place to grow your skills, contribute to meaningful work, and deliver solutions that matter. Your ideas drive what’s next, and your growth powers it.
Our Benefits
We provide a full package of benefits for employees – and have unique offerings for a modern workforce, including leave programs, adoption assistance, and student loan repayment programs. Based on feedback from our employees, we continue to refine and add benefits to our offering, so that you can flourish both inside and outside of work.
Our Commitment to Inclusion
At New York Life, fostering an inclusive workplace is fundamental to who we are and how we serve our communities. We have a longstanding commitment to creating an environment where individuals can contribute their best and succeed together. This foundation is rooted in our core values of humanity and integrity, ensuring that every employee feels valued and supported. By embracing a broad range of perspectives and experiences, we achieve greater success and fulfill our promise of providing financial security and peace of mind to families across all communities.
Recognized as one of Fortune’s World’s Most Admired Companies, New York Life is committed to improving local communities through a culture of employee giving and volunteerism, supported by the Foundation. We're proud that due to our mutuality, we operate in the best interests of our policy owners.
Job Requisition ID: 93876
See all 73+ Iam Engineer jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Iam Engineer roles.
Get Access To All JobsTips for Finding Green Card Sponsorship as an Iam Engineer
Align your credentials to EB-2 requirements
A master's degree in computer science, cybersecurity, or information systems strengthens an EB-2 filing. If your highest degree is a bachelor's, document five years of progressive IAM-specific experience to support an advanced-degree equivalency argument during PERM.
Target employers with active PERM filing history
Filter your job search to organizations that have filed PERM applications for IAM or identity management roles before. Employers already familiar with the labor certification process move faster and make fewer procedural errors that delay your green card timeline.
Use Migrate Mate to find sponsoring employers
Search for IAM Engineer roles with verified green card sponsorship history directly on Migrate Mate. The platform surfaces employers who have sponsored similar positions, saving you from applying to companies with no PERM filing infrastructure in place.
Benchmark your salary against OFLC prevailing wages
Before your employer files the PERM labor certification, verify that your offered salary meets the DOL prevailing wage for your specific IAM role and work location. Use the OFLC Wage Search to confirm the wage level, since underpayment is a common PERM denial trigger.
Clarify the job description before PERM is filed
The duties listed on your PERM application must match your actual day-to-day IAM responsibilities. Vague or inflated job descriptions invite DOL audit requests. Work with your employer to ensure role-specific tasks like provisioning, access governance, and identity lifecycle management are accurately documented.
Understand priority dates before accepting an offer
If you were born in India or China, your EB-2 or EB-3 priority date determines how long before you can adjust status. Ask prospective employers about their willingness to file the I-140 promptly, since an earlier filing date locks in your place in the queue.
Iam Engineer jobs are hiring across the US. Find yours.
Find Iam Engineer JobsIam Engineer Green Card Sponsorship: Frequently Asked Questions
Does an IAM Engineer role qualify for EB-2 or EB-3 green card sponsorship?
IAM Engineer positions typically qualify for both EB-2 and EB-3. EB-2 applies when the role requires a master's degree or equivalent, which is common for senior identity architecture and privileged access management positions. EB-3 applies to roles requiring a bachelor's degree. Your employer's job description and your credentials determine which category USCIS accepts, and most employers file under whichever category best fits the posted requirements.
How does the green card process for IAM Engineers differ from H-1B sponsorship?
H-1B is a temporary status requiring renewal every three years with no path to permanency on its own. The EB-2 and EB-3 green card process through PERM leads directly to lawful permanent residency. There is no annual lottery at the EB-3 level, and while the PERM and I-140 process takes longer to initiate than an H-1B petition, you're building toward permanent status rather than managing recurring visa cycles.
What does the PERM labor certification process involve for an IAM Engineer role?
Your employer must conduct a supervised recruitment campaign, typically lasting 60 to 90 days, to demonstrate that no qualified U.S. worker is available for the IAM Engineer position. DOL then reviews the application, which can take several months. A well-documented job description tied specifically to identity and access management functions, not generic IT skills, reduces the risk of an audit or denial.
Where can I find IAM Engineer jobs where the employer is already set up to sponsor green cards?
Migrate Mate lets you search specifically for IAM Engineer roles at employers with documented green card sponsorship history. This matters because not every company that posts an IAM role has the HR infrastructure or legal counsel in place to execute a PERM filing. Targeting employers with prior PERM experience shortens the path from offer letter to approved I-140.
How does my birth country affect my IAM Engineer green card timeline?
Nationals of most countries face no significant wait after PERM and I-140 approval before adjusting status. For candidates born in India or China, per-country limits create backlog at the EB-2 and EB-3 levels, which can extend the wait by years. Filing the I-140 as early as possible establishes your priority date and locks in your position regardless of future demand increases in your preference category.
See which Iam Engineer employers are hiring and sponsoring visas right now.
Search Iam Engineer Jobs