Identity And Access Management Engineer Jobs
Identity And Access Management Engineer jobs are open across financial services, healthcare, government contracting, and enterprise technology, from junior engineer to principal and architect, with specializations in privileged access management, identity governance, and zero-trust implementation. Find a role that fits from the openings below and apply directly.
Find JobsOverview
Showing 5 of 187+ Identity And Access Management Engineer jobs











The Opportunity:
Support enterprise identity and access management (IAM) programs by designing, implementing, and sustaining secure identity lifecycle capabilities across various client environments. Apply your experience in identity governance, authentication, authorization, and directory services to help clients modernize and strengthen their IAM posture. Work closely with stakeholders, cyber teams, and engineering partners to ensure identities, credentials, and entitlements are properly managed and continuously protected. Perform identity lifecycle activities, including provisioning, de‑provisioning, access request workflows, and access reviews, and conduct troubleshooting and root‑cause analysis for identity, credential, or access issues across hybrid environments. Participate in the definition and continuous improvement of IAM processes, patterns, and documentation. Collaborate with cyber, infrastructure, and application teams to ensure effective integration of IAM capabilities into mission workloads. Support governance activities, including access certifications, entitlement analysis, and policy compliance.
You Have:
3+ years of experience in information security
2+ years of experience in identity and access management
Experience with Identity Governance and Administration (IGA), including identity-governance platforms such as SailPoint or APDS
Experience with Single Sign-On (SSO) Federated Identity Management, including Okta, Microsoft Entra ID, or PingIdentity
Experience configuring and integrating IAM tools such as CyberArk, Microsoft Identity Manager (MIM), or Ping Identity
Experience supporting directory, authentication, and federation services such as SAML, OIDC, and OAuth, ensuring seamless identity flow between systems
Experience with directory services, identity federation, and synchronization
Knowledge of access control models such as RBAC and ABAC, credential management, identity governance, information security management, and enterprise security architecture
Public Trust
HS diploma or GED
Nice If You Have:
Experience with IAM operations, guidelines, or enterprise-class IAM implementations
Experience with privileged access management, including CyberArk PAM
Experience working in fast-paced environments with competing priorities
Knowledge of identity security metrics, digital signatures, or reporting, including KPIs
Possession of excellent interpersonal, communication, and stakeholder engagement skills
IAM or Security Certification such as Security+, CISSP, or CISM Certification
Vetting:
Applicants selected will be subject to a government investigation and may need to meet eligibility requirements of the U.S. government client; Public Trust determination is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen’s benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual’s particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $86,800.00 to $198,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen’s total compensation package for employees. This posting will close within 90 days from the Posting Date.Identity Statement
As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Candidate AI Usage Policy
AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided.
Work Model
Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings.
Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility.
Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility.
Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Identity And Access Management Engineer Jobs by Experience Level
See All 187+ Identity And Access Management Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsIdentity And Access Management Engineer Job Market
Who's Hiring



Top Industries Hiring
- Technology & Software20
- Healthcare & Medical Services4
- Banking & Financial Services3
- Insurance2
- Media & Entertainment2
What Employers Look For
The qualifications that appear most often in identity and access management engineer jobs.
- Experience with IAM platforms such as SailPoint, Okta, CyberArk, or Azure AD
- Proficiency in writing scripts or automation using PowerShell, Python, or similar languages
- Knowledge of directory services including Active Directory and LDAP
- Familiarity with compliance frameworks such as SOX, HIPAA, or FedRAMP access controls
- Relevant certification such as CISSP, Microsoft SC-300, or a vendor-specific IAM credential
- Bachelor's degree in computer science, information security, or a related technical field
Tips for Your Identity And Access Management Engineer Job Search
Tailor your resume to the stack
IAM roles vary sharply by toolset. If the job listing names CyberArk, SailPoint, or Okta, mirror that exact product name in your resume's experience bullets. Hiring managers filter on specific platforms, not general identity experience.
Lead with your certifications up front
Certifications like CISSP, SC-300, or CIST carry real weight in IAM screening. Put them in a dedicated section near the top of your resume, not buried in education, so recruiters and applicant tracking systems catch them immediately.
Apply early to roles that fit
Migrate Mate lists identity and access management engineer openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Filter by compliance framework in job descriptions
Many IAM openings are tied to SOX, HIPAA, or FedRAMP compliance programs. When you spot those frameworks in a posting, your application should explicitly connect your past access governance work to that regulatory context.
Prepare a technical scenario for role-based access control
Almost every IAM interview includes a scenario question on designing or auditing RBAC or ABAC policies. Before your interview, draft a concise example from your own work showing how you scoped entitlements and handled privilege creep.
Negotiate using your on-call and escalation scope
IAM engineers who own incident response for access provisioning outages carry more operational risk than the title suggests. When negotiating your offer, make the breadth of your on-call obligations explicit so compensation reflects the actual responsibility.
Identity And Access Management Engineer Jobs: Frequently Asked Questions
Which companies are hiring the most identity and access management engineers?
The companies hiring the most identity and access management engineers right now include Amazon Web Services, TikTok, and Providence, with the largest share of openings in California, Texas, and Illinois, based on current listings on Migrate Mate as of September 2026. Financial services firms, defense contractors, and large healthcare systems consistently account for a significant portion of demand.
How many identity and access management engineer jobs are remote?
About 76% of identity and access management engineer openings are fully remote or hybrid as of September 2026, reflecting strong demand for distributed security teams. Roles focused on cloud identity, SSO configuration, and identity governance tend to be the most remote-friendly, while on-premises directory services and privileged access work tied to classified environments typically require an on-site presence.
How do you become an identity and access management engineer?
Start by building foundational knowledge in networking, directory services such as Active Directory, and core security concepts. Gain hands-on experience through a systems administration or IT security analyst role, then specialize in an IAM platform like Okta or SailPoint. Earning a certification such as CISSP or a vendor-specific credential strengthens your candidacy, and contributing to access governance or provisioning projects gives you concrete examples to discuss in interviews.
Can I get hired as an identity and access management engineer with little experience?
Yes, entry-level IAM roles exist, particularly at managed security service providers and larger enterprises with dedicated identity teams. Candidates with a background in help desk, systems administration, or directory services have the strongest footing. Building a home lab to practice provisioning workflows in a free-tier cloud identity tool and earning a foundational certification helps demonstrate initiative when your professional experience in the specialty is still limited.
What does the identity and access management engineer interview process look like?
Most IAM interview processes include an initial recruiter screen, a technical phone interview covering directory services and IAM concepts, and at least one practical scenario round where you walk through an access governance problem or a role-based access control design. Final rounds often involve a panel with security architects or compliance leads who probe how you handle entitlement reviews, privilege escalation incidents, and integration between identity platforms and downstream applications.
Where can I find and apply to identity and access management engineer jobs?
You can find and apply to identity and access management engineer jobs on Migrate Mate, which lists current openings from across the United States. Search the listings to find roles that match your experience level, preferred industry, and location, then apply directly to each one that fits.
See All 187+ Identity And Access Management Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs