Iam Engineer Jobs in New York
Iam Engineer jobs in New York are among the most active in the country, concentrated in financial services, healthcare, and large-scale technology operations where identity and access management is a core security function, with openings at every level from junior IAM analyst through principal engineer. Most hiring is anchored in New York City, with additional demand in Albany and Buffalo, where employers such as JPMorgan Chase, Citigroup, and New York-Presbyterian Hospital maintain substantial security engineering teams. Cloud identity platforms, privileged access management, and zero-trust architecture are the specialties drawing the strongest interest from New York hiring managers right now. Find a role that fits below and apply directly.
Find Iam Engineer JobsOverview
Showing 5 of 7+ Iam Engineer jobs











INTRODUCTION
Join New Era Technology, where People First is at the heart of everything we do. With a global team of over 3,000 professionals, we're committed to creating a workplace where everyone feels valued, empowered, and inspired to grow. Our mission is to securely connect people, places, and information with end-to-end technology solutions at scale. At New Era, you'll join a team-oriented culture that prioritizes your personal and professional development. Work alongside industry-certified experts, access continuous training, and enjoy competitive benefits. Guided by our core attributes — putting people first, embracing continuous learning, and thriving through collaboration and inclusion — we nurture our people to deliver exceptional customer service. If you want to make an impact in a supportive, growth-oriented environment, New Era is the place for you. Apply today and help us shape the future of work—together.
JOB SUMMARY
New Era Technology is seeking an experienced Senior IAM Engineer to support enterprise Identity and Access Management operations, cloud access governance, RBAC modernization, privileged access, application identity integrations, and identity security initiatives within a mature hybrid and multi-cloud environment. The ideal candidate will have strong hands-on experience with Microsoft Entra ID/Azure AD, Azure RBAC, Privileged Identity Management (PIM), application federation/SSO, least-privilege access, IAM operations, automation, Splunk-based identity monitoring, and Identity Threat Detection and Response (ITDR).
KEY RESPONSIBILITIES
- Design, maintain, and optimize Azure RBAC across subscriptions, management groups, resource groups, and Azure services.
- Define enterprise role taxonomy and implement governed access using groups, roles, and approved assignments.
- Administer Microsoft Entra ID/Azure AD, on-premises Active Directory, hybrid identity, and workforce, partner, guest, service, and application identities.
- Implement Microsoft Entra PIM, Just-in-Time (JIT) privileged access, MFA, Conditional Access, break-glass procedures, privileged access monitoring, and audit evidence.
- Design, implement, and troubleshoot SAML, OIDC, OAuth, Entra SSO, enterprise applications, app registrations, service principals, claims, groups, and application roles.
- Promote managed identities, govern service principals, support credential rotation, and improve CI/CD secret management.
- Support the Saviynt-to-SailPoint transition, including identity, entitlement, role, certification, policy, procedure, and control documentation.
- Support IAM monitoring, logging, alerting, investigation, and ITDR use cases using Azure-native tools and Splunk.
- Support AWS IAM, GCP IAM, and multi-cloud identity governance where required.
- Support FedRAMP-relevant access controls, configuration baselines, change control, audit readiness, and privileged access governance.
- Develop automation and scripting to improve IAM workflows, reporting, documentation, access reviews, runbooks, and operational efficiency.
- Identify opportunities to responsibly use AI tools for IAM analysis, reporting, documentation, and workflow optimization.
- Collaborate with Information Security, infrastructure, cloud, application, DevOps, audit, and other technical stakeholders.
REQUIRED TECHNICAL SKILLS
- Strong hands-on experience with Microsoft Entra ID/Azure AD administration.
- Strong knowledge of Azure RBAC, security groups, role assignments, management groups, subscriptions, and resource-level access.
- Experience with Microsoft Entra PIM, JIT privileged access, MFA, Conditional Access, and privileged authentication.
- Strong understanding of Active Directory and hybrid identity.
- Enterprise experience with SAML, OIDC, OAuth, SSO, Entra Enterprise Applications, app registrations, managed identities, service principals, claims, and application roles.
- Experience with least-privilege access design, access reviews, access certification, identity/entitlement inventory, credential management, and secret hygiene.
- Experience with Azure monitoring/logging and Splunk or comparable SIEM platforms.
- Understanding of Identity Threat Detection and Response (ITDR).
- Experience with IAM automation/scripting and CI/CD identity controls.
- Strong IAM documentation skills, including policies, standards, procedures, runbooks, and audit evidence.
PREFERRED SKILLS
- SailPoint Identity IQ or Identity Now experience.
- Experience supporting Saviynt-to-SailPoint migrations.
- Broadcom/Symantec PAM or comparable PAM platforms such as CyberArk, Beyond Trust, or Delinea.
- Cisco Splunk detection content or dashboard development.
- AWS IAM, GCP IAM, workload identity governance, and multi-cloud IAM.
- FedRAMP control support or audit readiness.
- Experience in financial services, banking, or other highly regulated enterprise environments.
- DevOps, CI/CD, SDLC identity controls, application resiliency, IAM dependency management, and vulnerability management integration.
- AI-assisted workflow automation, reporting, documentation, and operational analysis.
REQUIRED QUALIFICATIONS
- 7+ years of Identity and Access Management experience preferred.
- 4+ years of Microsoft Entra ID/Azure AD experience preferred.
- 3+ years of Azure RBAC, privileged access, or cloud access governance experience preferred.
- Hands-on enterprise application federation and SSO experience required.
- Financial services, banking, or regulated enterprise experience strongly preferred.
- Bachelor's degree in Information Security, Computer Science, Information Technology, or equivalent practical experience.
KEY COMPETENCIES
- Strong understanding and practical implementation of RBAC and least-privilege access at enterprise scale.
- Strong troubleshooting skills for authentication, federation, SSO, privileged access, and identity monitoring.
- Ability to work effectively across IAM, Security, Cloud, Infrastructure, Applications, DevOps, and Audit teams.
- Strong communication, documentation, analytical, and problem-solving skills.
- Ability to work within disciplined change control, audit, compliance, and operational stability environments.
- Strong ownership, accountability, initiative, and delivery focus.
- Ability to balance security requirements with technical and business needs.
ENGAGEMENT DETAILS
- Engagement: Full-time, 12-month staff augmentation contractor
- Work Schedule: Standard full-time hours; weekend work may be required for scheduled change management activities.
- Environment: Hybrid identity, multi-cloud, enterprise SSO, PAM, IGA, SIEM, regulated financial services environment.
Physical Requirements
- Regular use of a computer, keyboard, mouse, and standard office equipment.
- Ability to work for extended periods using computer screens and participate in remote meetings.
- Ability to communicate effectively through phone and video conferencing.
New Era Technology, LLC., and its subsidiaries ("New Era" "we", "us", or "our") in its operating regions worldwide are committed to respecting your privacy and recognize the need for appropriate protection and management of any Personal Data that you may provide us. In this, we are also committed to providing you with a positive experience on our websites and while using our products, services and solutions ("Solutions").
We never ask candidates to pay any fees at any point in our hiring process. If you are ever asked to provide payment for training, certification, equipment, or any other purpose, it is not from our company. Only communications from our official company channels should be trusted. Please note our official email domain is @neweratech.com. If you suspect fraudulent activity, please contact us immediately at privacy@neweratech.com.
See All 7 Iam Engineer Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find Iam Engineer JobsIam Engineer Jobs by City in New York
Where New York roles are concentrated, by current openings.
Iam Engineer Job Market in New York
A snapshot from current New York openings, updated as new roles post.
Who's Hiring



Top Industries Hiring
- Insurance
- Technology & Software
What New York Employers Look For
The qualifications that appear most often in iam engineer jobs across New York.
- Bachelor's degree in computer science, information security, or a related technical field
- Hands-on experience with enterprise IAM platforms such as SailPoint, Okta, or CyberArk
- Proficiency in directory services including Active Directory, LDAP, and Azure AD
- Experience designing or implementing single sign-on and multi-factor authentication solutions
- Familiarity with regulatory compliance frameworks such as SOX, HIPAA, or NYDFS cybersecurity requirements
- Strong scripting skills in Python, PowerShell, or a comparable language for IAM automation
Iam Engineer Jobs in New York: Frequently Asked Questions
How do you become a iam engineer in New York?
The most direct path into an iam engineer role in New York starts with a bachelor's degree in computer science, cybersecurity, or information systems, followed by vendor certifications such as SailPoint IdentityNow Certified Engineer, Okta Certified Professional, or CyberArk Defender. New York has no state-issued license specific to iam engineers, so employers weigh certifications, demonstrated platform experience, and a portfolio of identity governance or privileged access projects heavily when evaluating candidates.
Which companies hire iam engineers in New York?
Employers hiring iam engineers in New York right now include CLEAR, Centene, and Optimum, based on current listings on Migrate Mate as of August 2026. New York's concentration of global financial institutions, major hospital networks, and large technology firms means demand for iam engineers is consistent year-round rather than cyclical.
Which New York cities have the most iam engineer jobs?
The cities with the most iam engineer openings in New York are New York and Bethpage. New York City dominates the distribution because the financial services sector headquartered in Manhattan requires mature identity governance programs at scale, while Albany and Buffalo contribute openings through state government agencies and regional healthcare systems that have expanded their cybersecurity functions.
Are there remote iam engineer jobs in New York?
Yes, and more than most technical fields, since iam engineer work is largely configuration, policy, and platform administration that does not require physical presence. About 75% of iam engineer openings tied to New York are remote or hybrid as of August 2026, reflecting how broadly distributed IAM tools are managed. The roles most commonly offered fully remote are those focused on cloud identity platforms and identity governance administration rather than on-premise directory management.
How can I get hired as a iam engineer in New York with little or no experience?
The most realistic entry path is moving into IAM from an adjacent IT or security role such as help desk analyst, systems administrator, or junior security analyst, which many large New York employers including major banks and hospital systems treat as natural feeders into identity teams. Pursuing an entry-level certification such as CompTIA Security+ alongside a SailPoint or Okta fundamentals credential signals readiness. New York's financial sector and agencies like the New York State Office of Information Technology Services also post associate-level IAM roles that do not require prior dedicated IAM experience.
Where can I find and apply to iam engineer jobs in New York?
You can find and apply to iam engineer jobs in New York on Migrate Mate, which lists current New York openings updated in real time. Search the listings to find roles that match your experience and specialization, then apply directly to the ones that fit.
See All 7 Iam Engineer Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find Iam Engineer Jobs