Identity and Access Management (IAM) Engineer
Charlotte, NC - USA
Job Summary
Thank you for your interest in a career at Regions. At Regions we believe associates deserve more than just a job. We believe in offering performance-driven individuals a place where they can build a career --- a place to expect more opportunities. If you are focused on results dedicated to quality strength and integrity and possess the drive to succeed then we are your employer of choice.
Regions is dedicated to taking appropriate steps to safeguard and protect private and personally identifiable information you submit. The information that you submit will be collected and reviewed by associates consultants and vendors of Regions in order to evaluate your qualifications and experience for job opportunities and will not be used for marketing purposes sold or shared outside of Regions unless required by law. Such information will be stored in accordance with regulatory requirements and in conjunction with Regions Retention Schedule for a minimum of three years. You may review modify or update your information by visiting and logging into the careers section of the system.
At Regions the Identity and Access Management (IAM) Engineer is responsible for working cross-functionally across the organization with business and IT partners as well as external service partners to deliver the Identity Governance and Administration (IGA) capabilities across Regions. This role includes role-based access controls (RBAC) attribute-based access controls (ABAC) access review/certification automated provisioning and de-provisioning and access requests.
Primary Responsibilities
- Designs develops and tests Identity and Access Management (IAM) systems and solutions
- Ensures that solutions protect information resources against unauthorized use inappropriate degrees of access disclosure damage and/or loss
- Analyzes data to ensure projects deliver on time
- Ensures the maintenance patching operating and monitoring of IAM systems
- Troubleshoots and supports system incidents problems and changes
- Designs reusable strategies decisions service components libraries and frameworks to support enterprise-level IAM services
- Tests new applications and creates custom workflows rules and reports based on business requirements
- Creates documentation of process guidelines standards technical specifications as well as drawing network & system architecture diagrams
- Leverages bash scripting to maintain the night processing script
- Meets with project teams to communicate project status development issues/roadblocks and requirements feasibility
- Ensures compliance with risk management programs rules and regulations and cybersecurity practices; identifies opportunities for and supports process improvements; applies disciplined change management practices
This position is exempt from timekeeping requirements under the Fair Labor Standards Act and is not eligible for overtime pay.
Requirements
- Bachelors degree and two (2) years of experience in a related field
Preferences
- Basic understanding of UNIX security as it relates to user access and provisioning
- Experience with Agile methodology and SDLC concepts/tools (Git Atlassian stack)
- Experience with Linux/Unix Windows scripting (with programming languages such as Bash PowerShell or Perl) SQL LDAP and web services
- Experience with one or more programming languages such as Java C# C/C Python or JavaScript
- Experience with role-based access controls and configuring automated provisioning and deprovisioning
- Experience with SailPoint (version 7.0 or later) or another IGA/IAM platform
- Recognized security industry certifications (CISSP CIAM etc.)
- Technical experience in systems integration or software engineering of identity and access management (IAM) solutions (such as BeyondTrust CyberArk AWS Duo OIM Ping Identity RadiantLogic SailPoint Okta Active Directory RACF)
Skills and Competencies
- Ability to interpret and ensure compliance with applicable rules regulations and industry guidance
- Ability to multi-task to be self-initiated and work independently
- Effective time management skills
- Effective written and verbal communication skills
- Good customer service and interpersonal skills
- Knowledge and skill in technical problem resolution
- Strong attention to detail and outstanding analytical skills
- Strong organizational research analytical and/or problem-solving skills to evaluate situations make recommendations and take effective action
Preferred Qualifications:
- Experience implementing and operating enterprise-grade secrets management platforms (e.g. CyberArk HashiCorp Vault) with a strong focus on securely managing application and workload identities.
- Proven ability to design and scale automated secrets lifecycle workflows (provisioning rotation revocation) integrated into CI/CD pipelines Kubernetes and cloud-native environments.
- Strong background in driving automation and standardization for secrets consumption (APIs dynamic secrets sidecars/agents) enabling secure high-scale access patterns across distributed systems.
This position is intended to be onsite now or in the near future. Associates will have regular work hours including full days in the office three or more days a week. The manager will set the work schedule for this position including in-office expectations. Regions will not provide relocation assistance for this position and relocation would be at your expense. The locations available for this role are Birmingham AL Atlanta GA Nashville TN or Charlotte NC.
Position Type
Full timeCompensation Details
Pay ranges are job specific and are provided as a point-of-market reference for compensation decisions. Other factors which directly impact pay for individual associates include: experience skills knowledge contribution job location and most importantly performance in the job role. As these factors vary by individuals pay will also vary among individual associates within the same job.
The target information listed below is based on the Metropolitan Statistical Area Market Range for where the position is located and level of the position.
Job Range Target:
Minimum:
Median:
Incentive Pay Plans:
This job is not incentive eligible.Benefits Information
Regions offers a benefits package that is flexible comprehensive and recognizes that one size does not fit all for benefits-eligible associates. Listed below is a synopsis of the benefits offered by Regions for informational purposes which is not intended to be a complete summary of plan terms and conditions.
Paid Vacation/Sick Time
401K with Company Match
Medical Dental and Vision Benefits
Disability Benefits
Health Savings Account
Flexible Spending Account
Life Insurance
Parental Leave
Employee Assistance Program
Associate Volunteer Program
Please note benefits and plans may be changed amended or terminated with respect to all or any class of associate at any time. To learn more about Regions benefits please click or copy the link below to your browser.
Required Experience:
IC
About Company
Need a commercial lending partner for affordable housing projects? Call our Real Estate Banking team for help with construction loans and equity financing.