Identity and Access Management (IAM) Linux Engineering

Posted 2 hours ago
$126K - $168K / year

Are you applying to the internship?

Job Description

Identity and Access Management (IAM) Linux Engineering – AVP | Mitsubishi UFJ Financial Group

The Tone:
This is a full-time, hybrid role for Mitsubishi UFJ Financial Group, with work split between office/client sites and remote, primarily in the New York / New Jersey area. MUFG is a leading global financial group that strives to make a difference for clients and communities by building trusted relationships and fostering shared growth. This role is crucial for maintaining secure and compliant Linux access controls, directly supporting MUFG Bank’s governance, safety, and soundness objectives within the Identity and Access Management domain.

The TL;DR
• Role: Full Time
• Type: Hybrid
• Location: Hybrid – New York / New Jersey Area
• Pay: $126000–$168000 yearly
• Mission: Ensure IAM Linux capabilities align with regulatory requirements, industry standards, internal policies, and established risk tolerances.
• Tech Stack: Centrify, CyberArk Endpoint Privilege Manager (EPM), CyberArk, CA ePAM, Microsoft Entra ID, AWS, Microsoft Azure, Google Cloud Platform, Active Directory, Kerberos, LDAP, PowerShell, Python, Bash

What You’ll Actually Do
• Security Controls: Implement and maintain Centrify least-privilege access controls and role-based access models.
• Automation: Automate operational and control processes using scripting to streamline processes and controls.
• Policy Enforcement: Enforce Identity and Access Management policies across Linux, Active Directory, and cloud-integrated environments.
• System Support: Support Centrify upgrades, patching, troubleshooting, and disaster recovery activities to ensure system stability.
• Compliance & Documentation: Maintain clear documentation for Centrify processes and support audits by providing accurate evidence.

The Must-Haves
• Background: AVP level. Bachelor’s degree in a related field or equivalent work experience, with an interest in broadening their Identity and Access Management skillset across IGA, Microsoft Entra ID, and privileged access technologies.
• Experience: 5+ years of Linux system administration or engineering experience including Name Service Switch (NSS), Pluggable Authentication Modules (PAM), and SUDO policy management, along with 5+ years supporting Active Directory or cloud bridging solutions like Centrify or CyberArk Endpoint Privilege Manager (EPM). This includes 5+ years automating tasks with PowerShell, Python, Bash, or similar scripting languages.
• Skills: Strong Linux system administration (NSS, PAM, SUDO), Active Directory bridging and Linux authentication issue resolution, and proficiency in scripting for automation. The role requires a self-motivated individual who takes ownership, drives tasks independently, identifies gaps or risks, and proactively learns new IAM technologies.
• Bonus: Experience with Privileged Access Management (PAM) platforms such as CyberArk or CA ePAM, knowledge of Active Directory authentication, Kerberos, and LDAP, familiarity with IAM and PAM industry standards and best practices, and experience integrating with cloud service providers like AWS, Microsoft Azure, or Google Cloud Platform. Experience managing Microsoft Entra ID capabilities (SSO, Conditional Access, Access Packages) and operating within a financial services company are also desired, alongside excellent communication skills.

Related Jobs