Jobs Companies Relativity Advanced Security Engineer (IAM)

À propos de ce poste Advanced Security Engineer (IAM) chez Relativity

Relativity · Sur site · Illinois

Posting Type

Remote

Job Overview

The Advanced IAM Engineer is a technically deep, hands-on practitioner who forms the operational backbone of the enterprise IAM function. Treating identity as the primary control plane in a defense-in-depth program, this engineer designs, deploys, and optimizes AI-enabled identity technologies across the workforce, customer, and non-human (machine and agent) identity domains. Partnering with the Manager of Enterprise Security and cross-functional teams, the role reduces Relativity's identity attack surface and improves detection and response times for identity-based threats.

Job Description and Requirements

Role Responsibilities  

Continuous Adaptive Trust & Identity Operations

  • Implement and operate identity controls spanning workforce, machine, and workload identity as part of a layered defense-in-depth model.

  • Operate continuous adaptive trust mechanisms, including continuous access evaluation (CAE), risk-based step-up authentication, and session revocation, that re-verify identity against real-time posture and behavioral signals rather than at the access gate alone.

  • Configure ZTNA, least-privilege access, phishing-resistant MFA/FIDO2, and JIT access across access paths.

  • Implement SSO, federation, and authentication standards (SAML, OAuth 2.0, OIDC, SCIM, Kerberos, LDAP) across SaaS and multi-cloud environments.

  • Apply hardening standards to identity infrastructure using CIS Benchmarks/DISA STIGs with automated compliance validation.

Identity Lifecycle, Governance & PAM

  • Build and maintain identity lifecycle automation (joiner/mover/leaver) integrating HR systems, directories, and downstream applications.

  • Operate identity governance and administration (IGA) workflows: access reviews, certification campaigns, and segregation-of-duties checks.

  • Administer privileged access management (PAM) including credential vaulting, JIT elevation, and session monitoring.

  • Maintain governance of non-human identities (service accounts, workloads, secrets) using drift detection and policy-as-code.

Detection, Response & Collaboration

  • Feed identity telemetry into the detection stack (SIEM/SOAR, UEBA) to support detection of credential abuse, privilege escalation, and lateral movement.

  • Execute identity-focused IR playbook steps for account takeover, credential compromise, and session hijacking.

  • Implement identity checks in CI/CD pipelines (secret scanning, IaC identity analysis), acting on AI-generated fix recommendations in PR workflows.

  • Track identity hygiene metrics and support audits, certifications, and e-discovery requirements alongside GRC.

Minimum qualifications: 

  • Must be able to obtain and maintain the required Public Trust clearance for this role

  • Bachelor's in Computer Science, Information Security, or equivalent experience.

  • 5+ years of hands-on experience in enterprise IAM or security engineering, with a focus on identity, authentication, and access domains, or a Master's degree in Cybersecurity or a relevant field.

  • Hands-on experience with common identity tools such as IdP/SSO (Okta, Entra ID/Azure AD, Ping), IGA (SailPoint, Saviynt), PAM (CyberArk, BeyondTrust), and directory services, plus intermediate knowledge of authentication and federation protocols (SAML, OIDC, OAuth 2.0, SCIM, LDAP, Kerberos).

  • Basic knowledge of industry-standard security benchmarks and frameworks (MITRE, NIST 800-63, Zero Trust).

  • Proficiency in at least one scripting/automation language (Python, Bash, or PowerShell) applied to modern containerized services, CLI-based commands, and/or identity-specific use cases (API-driven provisioning, policy-as-code).

  • Ability to communicate technical findings clearly to both engineering peers and non-technical stakeholders.

Preferred qualifications: 

  • Familiarity with AI-enabled identity operations (UEBA, ML-based access-risk scoring, or AI-assisted access-review and threat-hunting workflows).

  • Basic knowledge of common cloud environments (AWS, Azure, or GCP) and their native identity services (IAM, RBAC, workload identity).

  • Working knowledge of the software development lifecycle, software engineering practices, or infrastructure-as-code environments: contributing identity and access controls (secrets management, workload identity, policy-as-code) to CI/CD pipelines.

  • Experience with non-human, workload, and AI-agent identity, secrets management, and machine-to-machine authentication.

  • Experience supporting compliance and audit requirements (SOC 2, ISO 27001, FedRAMP, HIPAA) from an identity and access control perspective.

  • Relevant certifications such as SC-300 (Microsoft Identity and Access Administrator), AZ-500 (Azure Security Engineer), Okta Certified Professional/Administrator, SailPoint IdentityIQ, SEC+, CISSP, CISA, or equivalent.

 

Relativity is committed to competitive, fair, and equitable compensation practices.

This position is eligible for total compensation which includes a competitive base salary, an annual performance bonus, and long-term incentives.

The expected salary range for this role is between following values:

$104 000 and $156 000

The final offered salary will be based on several factors, including but not limited to the candidate's depth of experience, skill set, qualifications, and internal pay equity. Hiring at the top end of the range would not be typical, to allow for future meaningful salary growth in this position. 

Required Skills:

Endpoint Security, Network Security, Penetration Testing, Security Architecture Design, Security Automation, Security Information, Security Information and Event Management (SIEM), Security Operations, Threat Modeling, Vulnerability Management
Prêt à postuler chez Relativity ?
Postuler chez Relativity

Comment se compare ce salaire pour Security Engineer

Ce poste paie $130,000/yren dessous de la fourchette habituelle pour les postes Security Engineer.

$122,804 la médiane $162,000 $226,350

Fourchette typique $144,900–$185,500/yr, à partir de 75 annonces Security Engineer comparables sur JobsRadar (rémunération annualisée en USD). Voir les aperçus de salaire pour Security Engineer →

À propos de Relativity

We’re solving big data challenges in the legal tech industry, and we’re always looking for more people to join us on the journey. At Relativity, you'll learn cross-functional skills to grow your career and have the chance to make a big impact on our customers, our industry, and our communities. We admire and value our employees, so it’s no surprise that our hiring process is designed to help us really get to know you – and for you to get to know us, too.

Voir tous les emplois chez Relativity →

Emplois similaires

Early Warning Services
Staff Platform Security Engineer - Cloud/AWS/Kubernetes
Early Warning Services
⚡ Postuler tôt Scottsdale Hybride $132,000–$165,000
● Nouveau 👁 Vu ✓ Postulé il y a 1 j
Zscaler
Principal Specialist Sales Engineer, Data Security - Enterprise, Central
Zscaler
⚡ Postuler tôt Remote - Illinois, USA; Remote... · lieu restreint $154,875–$221,250
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Beyond Finance
Senior Cloud Security Engineer
Beyond Finance
⚡ Postuler tôt Remote · lieu restreint $140,000–$165,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Beyond Finance
Senior Application Security Engineer
Beyond Finance
⚡ Postuler tôt Remote · lieu restreint $140,000–$165,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Beyond Finance
Staff Security Engineer
Beyond Finance
⚡ Postuler tôt Remote · lieu restreint $160,000–$195,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Pinterest
Sr. Security Software Engineer, Application Security
Pinterest
⚡ Postuler tôt Chicago, IL, US; Remote, US · lieu restreint $155,584–$320,320
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Iterable
Senior Cloud Security Engineer
Iterable
⚡ Postuler tôt Atlanta, Georgia; Austin, Texa... · lieu restreint $141,000–$221,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Upside
Staff Application Security Engineer
Upside
⚡ Postuler tôt DC · lieu restreint $214,000–$245,000
● Nouveau 👁 Vu ✓ Postulé il y a 2 j
Mondelez International
Platform Engineer, SAP Security
Mondelez International
⚡ Postuler tôt United States (Remote) · lieu restreint $86,900–$119,515
● Nouveau 👁 Vu ✓ Postulé il y a 3 j

Inscrivez-vous pour des suggestions adaptées aux emplois que vous ouvrez et aux recherches que vous enregistrez.

Plus d’emplois chez Relativity

Voir tous les emplois chez Relativity →

Postuler maintenant
🤖

Doucement — un instant

JobsRadar a été conçu pour de vraies personnes qui traversent une période difficile dans leur recherche d’emploi — pas pour des requêtes automatisées. Vous cliquez beaucoup trop vite et vous êtes maintenant temporairement bloqué.

Revenez plus tard. Si vous cherchez réellement un emploi, nous sommes de votre côté — agissez simplement comme un être humain.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Prenez une longueur d’avance dans votre recherche d’emploi.

Rejoignez notre canal Telegram pour ce qui vous aide à décrocher le poste — références salariales, le pouls hebdomadaire du marché et les annonces de nouveautés. Pas de spam, que du signal.

Rejoindre le canal — c’est gratuit