Jobs Companies Greenberg Traurig Identity and Security Engineer

Sobre este puesto de Identity and Security Engineer en Greenberg Traurig

Greenberg Traurig · Presencial · Atlanta Center of Excellence

Greenberg Traurig (GT), a global law firm with locations across the world in 15 countries, has an exciting employment opportunity for you. We offer competitive compensation and an excellent benefits package, along with the opportunity to work within an innovative and collaborative environment.

 

Join our Technology Team as an Identity and Security Engineer located in various offices.

 

We are seeking a professional who thrives in a fast-paced, deadline-driven environment. The ideal candidate possesses strong problem-solving and decision-making abilities, ensuring efficiency and accuracy in every task. With a dedicated work ethic and a can-do attitude, you will take initiative and approach challenges with confidence and resilience. Excellent communication skills are essential for collaborating effectively across teams and delivering exceptional client service. If you are someone who demonstrates initiative, adaptability, and innovation, we invite you to join our team.

 

This role can be based in various offices, on a hybrid basis. This role reports to the Enterprise Monitoring and Systems Management Supervisor.

 

Position Summary

 

The Identity & Security Engineer is responsible for the engineering, architecture, security and monitoring of the firm’s core identity services and hybrid integrations, primarily within Microsoft cloud ecosystems, with a growing presence in AWS and GCP. The engineer designs and implements enterprise identity and access management solutions, leads the design of secure authentication and authorization frameworks, drives automation and engineering best practices, performs root cause analysis on complex identity-based incidents, and ensures secure access to applications and resources at scale.

The Identity & Security Engineer serves as a lead technical resource for complex identity systems and leads engineering efforts related to Active Directory Domain Services, Entra ID, Single Sign-On, privileged access management, identity protection, lifecycle automation, and enterprise access controls.

This role requires deep technical expertise, strong architectural thinking, and the ability to lead identity modernization efforts across on-premise and cloud environments. This role requires individuals who are trustworthy, reliable, and uphold strict ethical standards in all professional dealings. This position requires the ability to work flexible hours and participate in on-call rotation.

 

Key Responsibilities

  • Designs, implements, optimizes, and maintains enterprise identity platforms (e.g. Active Directory Domain Services, Entra ID, SSO, MFA), including architecture, capacity planning, and lifecycle management
  • Architects, implements, and improves secure identity frameworks across on-premise and cloud environments, including role-based access control (RBAC), least privilege access models, just-in-time (JIT) access models, conditional access policies, and access lifecycles to reduce over-privilege
  • Defines and improves identity role design to reduce over-privilege
  • Establishes governance for non-human identities (service accounts, automation identities, app registrations) and implements guardrails that prevent unmanaged credentials and high-risk identities
  • Builds integrations between identity platforms and business systems and applications
  • Collaborates with technology teams, including security, compliance, application, DevOps, and infrastructure to implement and ensure secure identity practices across on-premises and cloud environments
  • Leads PKI design standards, hardening, modernization efforts and certificate-based authentication risk reduction
  • Designs, deploys, and maintains vendor remote access and privileged access management systems
  • Engineers detection logic, monitoring, and auditing capabilities to identify and evaluate anomalous user and identity behavior
  • Leads detection engineering and incident response for identity and access threats using ITDR, EDR, and SIEM tools, and develops playbooks for containment and remediation
  • Partners with Information Security on identity threat detection and response
  • Provides Tier 3 escalation support and guidance, and leads root cause analysis for complex identity issues impacting privileged access and authentication across on-prem and cloud environments
  • Implements and maintains security configurations to protect against unauthorized access and other security threats against the firm’s on-prem infrastructure and cloud-based platforms
  • Develops, maintains, and reviews automation frameworks, scripts, and infrastructure-as-code to drive process improvement and reduce manual administrative and routine tasks
  • Partners with information security and compliance teams to design controls and engineer evidence collection that demonstrate compliance with industry standards
  • Leads project delivery and execution of tasks related to areas of identity responsibility, including requirements, design, implementation, testing, rollout, and operational transition
  • Evaluates and recommends emerging technologies, trends, and best practices in identity and access management, identity protection and governance
  • Authors design documentation, runbooks, and standards, and enforces identity governance procedures across the team

 

Qualifications

 

Skills & Competencies

  • Deep expertise in AD DS, Entra ID, ADCS, and Single Sign-On
  • Expert knowledge of identity and access management and role-based access controls
  • Expertise designing and engineering federation and multifactor authentication solutions
  • Expertise in authentication and authorization protocols and flows (Kerberos, SAML, OAuth 2.0, and OIDC, SAML, LDAP)
  • Good working knowledge of public key infrastructure (PKI) and certificate lifecycle management
  • Strong understanding of Zero Trust security principles
  • In-depth knowledge of Microsoft Windows operating systems
  • Good working knowledge of basic networking concepts, including TCP/IP, DNS, and DHCP
  • Advanced automation and scripting skills (PowerShell, Microsoft Graph API, Python, Terraform, or similar)
  • Fundamental understanding of AI model infrastructure and AI agent security
  • Strong analytical, critical thinking, and problem-solving skills
  • Ability to troubleshoot and resolve complex system, application, security, and performance issues
  • Strong communication, interpersonal, and cross-functional collaboration skills
  • Ability to articulate issues, risks, and proposed solutions to various levels of technology staff, management, and non-technical audiences
  • Strong attention to detail and accuracy
  • Ability to document and maintain security and monitoring policies, procedures, and configurations
  • Ability to multitask efficiently yet prioritize and organize competing work demands
  • Demonstrated integrity and commitment to strict ethical standards in all professional dealings
  • Proven record of reliability and dependability
  • Candidate must be a self-starter and independent, yet function as an integral part of a team
  • Proven ability to work independently and collaboratively in a fast-paced, and security-conscious environment
  • Candidate must demonstrate a high degree of initiative and motivation
  • Ability to work flexible hours and be on-call

 

Education & Prior Experience

  • Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent work experience
  • 8+ years of professional experience designing and engineering medium-to-large enterprise Microsoft Windows AD DS environments, preferably in a law firm or professional services environments
  • 5+ years of hands-on experience with Microsoft Entra ID in hybrid environments
  • Extensive hands-on experience with Active Directory Domain Services design and operations
  • Strong hands-on experience with Microsoft Entra Suite architecture
  • Strong hands-on experience with federation and SSO integrations
  • Hands-on experience with identity platforms such as Okta, Ping Identity, or similar
  • Experience managing multifactor authentication solutions
  • Experience engineering and managing Privileged Access Management platforms
  • Experience with AD CS design/hardening or certificate-based authentication modernization
  • Strong experience with automation (PowerShell required, API experience strongly preferred)
  • Experience with ITDR platforms such as Microsoft Defender for Identity, Entra ID Protection, and Microsoft Defender XDR, or similar
  • Familiarity with AWS and GCP cloud environments are a plus
  • Relevant Microsoft certifications: Azure Security Engineer Associate and Identity and Access Administrator Associate, or equivalent are preferred
  • Relevant professional cybersecurity certifications, such as CISSP, are a plus

GT is an EEO employer with an inclusive workplace committed to merit-based consideration and review without regard to an individual’s race, sex, or other protected characteristics and to the principles of non-discrimination on any protected basis. 

¿Listo para postularte en Greenberg Traurig?
Postúlate en Greenberg Traurig

Sobre Greenberg Traurig

Greenberg Traurig (GT) is committed to ensuring a safe and transparent recruitment process. Please be advised of the following: Official Job Listings : All legitimate job opportunities with GT are posted here on our official website . GT job advertisements found outside our verified accounts with Lateral Hub, LinkedIn, Glassdoor, and Indeed should be treated with caution. No Fees Required : GT will never ask for payment for work equipment or network access . Also, there are no application fees. We do not ask for bank information or any form of monetary or financial compensation during the recruitment process. All job offers will be preceded by an interview with our hiring team. Verified Comm

Ver todos los empleos en Greenberg Traurig →

Empleos similares

Greenberg Traurig
Cloud Security Engineer
Greenberg Traurig
⚡ Postúlate pronto Miramar Presencial
● Nuevo 👁 Visto ✓ Postulado hace 4 meses
Neko Health
Information Security Engineer Lead
Neko Health
⚡ Postúlate pronto Stockholm Híbrido
● Nuevo 👁 Visto ✓ Postulado hace 1m
HackerOne
Senior Security Engineer, Detection and Response
HackerOne
⚡ Postúlate pronto London · restringido por ubicación £100,000–£110,000
● Nuevo 👁 Visto ✓ Postulado hace 4m
Back Market
Staff Engineer - Cybersecurity Architect
Back Market
⚡ Postúlate pronto Paris Híbrido
● Nuevo 👁 Visto ✓ Postulado hace 9m
Roblox
Senior Offensive Security Engineer
Roblox
⚡ Postúlate pronto San Mateo, CA, United States Presencial $196,750–$243,290
● Nuevo 👁 Visto ✓ Postulado hace 40m
Roblox
Principal Security Software Engineer, IAM
Roblox
⚡ Postúlate pronto San Mateo, CA, United States Presencial $326,060–$385,050
● Nuevo 👁 Visto ✓ Postulado hace 41m
Okta
Senior Site Reliability Engineer - Security and Data Systems (Federal)
Okta
⚡ Postúlate pronto Bellevue, Washington Presencial $147,000–$202,400
● Nuevo 👁 Visto ✓ Postulado hace 1h
Okta
Staff Site Reliability Engineer, Security- GCP
Okta
⚡ Postúlate pronto Bengaluru, India Presencial
● Nuevo 👁 Visto ✓ Postulado hace 1h
Okta
Staff Security Engineer, TDI
Okta
⚡ Postúlate pronto San Francisco, California Presencial $134,000–$184,800
● Nuevo 👁 Visto ✓ Postulado hace 1h

Regístrate para recibir sugerencias adaptadas a los empleos que abres y las búsquedas que guardas.

Más empleos en Greenberg Traurig

Ver todos los empleos en Greenberg Traurig →

Postúlate ahora
🤖

Un momento — para

JobsRadar se creó para personas reales que están pasando un mal momento en su búsqueda de empleo — no para solicitudes automatizadas. Estás haciendo clic demasiado rápido y ahora estás bloqueado temporalmente.

Vuelve más tarde. Si de verdad estás buscando empleo, cuentas con nosotros — solo compórtate como una persona.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Toma ventaja en tu búsqueda de empleo.

Únete a nuestro canal de Telegram para lo que te ayuda a conseguir el puesto — referencias salariales, el pulso semanal del mercado y avisos de nuevas funciones. Sin spam, solo señal.

Únete al canal — es gratis