OPT Iam Engineer Jobs
IAM Engineer jobs are a strong fit for F-1 OPT students with backgrounds in cybersecurity, computer science, or information systems. Most roles qualify as STEM OPT extensions, giving you up to 36 months of work authorization. Employers frequently sponsor H-1B visas for this specialty occupation.
Find OPT Iam Engineer JobsOverview
Showing 5 of 24+ Iam Engineer jobs










See all Iam Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Iam Engineer roles.
Get Access To All Jobs
INTRODUCTION
Resource Innovations is seeking a highly skilled and motivated Microsoft IAM Engineer to join our growing team. We are seeking an experienced Microsoft IAM Engineer to lead the administration, governance, security, and operational maturity of our enterprise identity and access management environment. This role will serve as a technical leader responsible for Microsoft Entra ID (formerly Azure Active Directory), identity lifecycle management, authentication services, access governance, and enterprise application integrations.
A key focus of this role is the integration and synchronization between Microsoft Entra and Workday, ensuring accurate and automated identity provisioning, role assignment, and deprovisioning processes across the organization. This role will also support cloud identity and access governance initiatives across Microsoft Azure environments, helping secure enterprise infrastructure, SaaS applications, and cloud-native services. The ideal candidate combines deep technical expertise in identity management with strong operational discipline, automation capabilities, and cross-functional collaboration skills.
Resource Innovations (RI) is a women-led energy transformation firm focused on impact. Building on our expertise in energy efficiency, we're constantly expanding our portfolio of clean energy solutions to guide utilities through increasingly complex, connected challenges. Load flexibility. Electrification. Carbon reduction. With every step, we're leading the charge to power change.
Duties and Responsibilities
- Administer and support enterprise identity and access management services across Microsoft Entra ID, Azure environments, and on premises Active Directory environment.
- Manage user lifecycle processes including onboarding, transfers, role changes, and offboarding.
- Configure and maintain authentication and access controls including Single Sign-On (SSO), Multi-Factor Authentication (MFA), Conditional Access, passwordless authentication, self-service password reset (SSPR), Role-Based Access Control (RBAC), Privileged Identity Management (PIM), and Managed Identities.
- Manage enterprise applications, application registrations, API permissions, and federated authentication integrations utilizing SAML, OAuth, OpenID Connect, and SCIM provisioning.
- Administer privileged access controls and role-based security models while supporting least-privilege and Zero Trust security principles.
- Support identity governance initiatives including access reviews, entitlement management, administrative role governance, and identity-based access policies.
- Manage identity integrations and access controls for cloud-native, SaaS, and Microsoft 365 platforms.
- Support Azure tenant governance including subscriptions, management groups, administrative roles, and security policies.
- Monitor and optimize identity security posture across Microsoft Azure, Microsoft Entra ID, and Microsoft 365 environments.
- Assist with governance and operational oversight of Azure Virtual Machines, Storage, Networking integrations, Key Vault, and Platform-as-a-Service (PaaS) resources.
- Partner with Security Operations, Infrastructure, and Cloud Engineering teams to support secure cloud adoption, modernization, and operational excellence initiatives.
- Develop automation solutions and operational efficiencies utilizing PowerShell, Microsoft Graph API, Azure Automation, and Infrastructure-as-Code methodologies.
- Participate in incident response, troubleshooting, root cause analysis, and operational escalations.
- Other duties as assigned.
Requirements
- Bachelor’s degree in Information Technology, Computer Science, or related field (or equivalent experience).
- At least 3+ years of experience in Identity and Access Management (IAM) administration required; 5 years preferred.
- At least 3+ years of hands-on experience administering Microsoft Entra / AD required; 5 years preferred.
- Experience integrating and supporting Workday with identity platforms.
- Experience supporting and administering Microsoft Azure environments.
- Strong understanding of identity lifecycle management, SSO and federation technologies, Conditional Access, MFA, Role-Based Access Control (RBAC), and Privileged Identity Management (PIM).
- Experience with hybrid identity environments and Active Directory synchronization.
- Advanced PowerShell scripting and automation experience.
- Experience supporting enterprise-scale identity operations.
- ServiceNow or other ticketing system experience and ability to work from a queue.
Benefits
Resource Innovations offers competitive salaries based on a candidate's skills, experience and qualifications for the position. The compensation range for the base salary for this position is $75,000-$115,000. In addition to base pay, employees may be eligible for a discretionary annual bonus. The stated salary represents the expected compensation for this position. Final compensation will be determined based on factors such as the candidate's experience, education and location.
At Resource Innovations, we believe supporting our people is essential to delivering impact. We offer a comprehensive benefits package designed to promote health, financial security, and work-life balance. This includes three weeks of paid vacation annually, paid holidays, a 401(k) retirement plan with employer match, medical, dental and vision coverage, parental leave, an employee assistance program, commuter benefits, and additional supplemental offerings.
Employment with Resource Innovations is contingent upon the successful completion of a comprehensive background check and reference check. If applicable to the position, a pre-employment drug screen may also be required.
The above job description and job requirements are not intended to be all inclusive. Resource Innovations retains the right to make changes or adjustments to job descriptions and/or job requirements at any time without notice.
Resource Innovations is an Equal Opportunity Employer, committed to ensuring equal employment opportunities for all job applicants and employees without regard to race, color, religion, national origin, gender, age, disability, marital status, genetics, protected veteran status, sexual orientation, or any other protected status. In addition to federal law requirements, Resource Innovations complies with applicable state and local laws governing non-discrimination in employment in every location in which the company does work.
See all OPT Iam Engineer Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new OPT Iam Engineer Jobs.
Get Access To All JobsTips for Finding OPT Sponsorship as an Iam Engineer
Lead with your technical stack
IAM hiring managers care about specific tools. Highlight experience with Okta, SailPoint, CyberArk, Azure AD, or AWS IAM in your resume summary. Employers who see direct tool alignment are more likely to move forward with OPT candidates.
Target STEM-designated employers first
IAM Engineer roles almost always qualify under the STEM OPT extension. Focus on employers registered with E-Verify, which is required for STEM extensions. This gives you 36 months total and significantly more time to secure H-1B sponsorship.
Frame OPT as a low-risk trial
Some hiring managers hesitate on sponsorship. Explain that your OPT period lets them evaluate you before committing to H-1B sponsorship. Framing it as a trial period reduces perceived risk and opens doors that might otherwise stay closed.
Certifications strengthen your specialty occupation case
Certifications like CISSP, CompTIA Security+, or vendor-specific IAM credentials reinforce that your role is a specialty occupation. This matters when your employer later files for H-1B. They signal professional-level expertise beyond general IT support.
Get your OPT start date right before applying
Apply to IAM roles within 90 days of your OPT start date. Employers need enough runway to evaluate and onboard you. Starting the search too late compresses your timeline and limits your ability to negotiate sponsorship after proving yourself.
Prepare a clear answer on your authorization timeline
Recruiters will ask about your work authorization status early. Know your OPT end date, STEM extension eligibility, and the H-1B cap lottery timeline. Candidates who explain this clearly signal maturity and reduce friction in the hiring process.
Iam Engineer OPT: Frequently Asked Questions
Does an IAM Engineer role qualify for the STEM OPT extension?
Yes. IAM Engineer positions typically qualify under CIP codes tied to computer science, information assurance, or cybersecurity, all of which are on the STEM Designated Degree Program list. To use the 24-month STEM extension, your employer must be E-Verify enrolled and you must file Form I-765 before your initial OPT expires.
Will IAM Engineer employers typically sponsor H-1B visas?
IAM Engineer roles qualify as specialty occupations under H-1B rules because the position normally requires at least a bachelor's degree in a specific technical field. Employers in financial services, healthcare, and large tech firms sponsor H-1B visas for this role regularly. Use Migrate Mate to filter for IAM Engineer jobs posted by verified H-1B sponsoring employers.
What degree fields are accepted for IAM Engineer OPT jobs?
Most IAM Engineer roles accept degrees in computer science, cybersecurity, information systems, or information assurance. Some employers also consider electrical engineering or software engineering backgrounds, particularly if your coursework covered network security or access control systems. The key is demonstrating a direct connection between your degree field and the IAM function.
Can I start an IAM Engineer job before my OPT EAD card arrives?
No. You cannot begin work until you have your physical EAD card in hand, even if USCIS has approved your application. Plan to apply for OPT at least 90 days before your intended start date. Some employers will hold an offer for a few weeks, but most cannot wait indefinitely, so apply as early as your DSO allows.
What happens to my OPT authorization if I'm laid off from an IAM Engineer role?
F-1 OPT students can accumulate up to 90 days of unemployment on standard OPT and up to 150 days total if you have an approved STEM extension. Losing your IAM Engineer position does not immediately end your status, but the clock starts immediately. Notify your DSO and begin searching for a new role as quickly as possible to protect your remaining authorized period.