Full Time

Identity and Access Management ("IAM") Engineer - Cooley - Palo Alto, CA

Cooley

Palo Alto, CA
Posted 10 days ago

Identity and Access Management ("IAM") Engineer

Cooley is seeking an IAM Engineer to join the Security team.

Position summary: Cooley Technology embraces a culture of customer service excellence, and all members of the department are expected to move this agenda forward. To that end, the Technology Identity and Access Management ("IAM") Engineer works independently and serves as a key contributor in designing, implementing, and operating secure, compliant, and scalable identity services. This role supports the firm's IAM program across Entra ID (Azure AD), Privileged Access Management, Active Directory, SSO/MFA/Conditional Access, Identity Governance processes, Cloud Identity (AWS), and Certificate Lifecycle Management. The position partners closely with Cybersecurity, Innovation and Technology teams, HR, as well as business stakeholders to deliver reliable identity capabilities that protect firm data and enable business operations. Specific duties include, but are not limited to, the following:

Position responsibilities:

Deliver and operate IAM capabilities across provisioning, authentication, authorization, and identity lifecycle processesAdminister and improve Microsoft Entra ID (Azure AD) and on-prem Active Directory including account lifecycle management, group/role administration, delegations, and directory hygieneImplement and support Single Sign-on (SSO), Multi Factor Authentication (MFA), and Conditional Access controls, ensuring authentication standards are applied consistently and exceptions are documented and governedEngineer and maintain identity integrations for SaaS and on-prem applications, including federation and enterprise application configurationsSupport the Privileged Access Management (PAM) program by onboarding privileged identities, implementing credential protection and rotation workflows, supporting access approvals and break-glass proceduresExecute identity governance workflows such as joiner/mover/leaver workflows, access reques