FreshRemote.Work

Sr Security Engineer - IAM

Chicago - 20 S. Wacker, United States

Position is Hybrid and requires to work 2 days per week in the Chicago office.

We cannot support fully remote or out of state employment.

The Sr. Security Engineer - IAM provides technical expertise across a broad range of Identity & Access Management (IAM) activities and initiatives. This function will implement technical solutions while maintaining and adhering to IAM standards, procedures, and audit requirements.  The person in this role is expected to leverage their technical experience to design and implement identity solutions as well as support them efficiently.

Key Responsibilities:

  • Contribute to the access management function: federation technologies and protocols, identity directories, multi-factor authentication and traditional and ephemeral secrets management

  • Contribute to the identity management function: identity provisioning (including joiner, mover, and leaver scenarios); IAM governance (including access certifications); role-based access control; audit/compliance activities 

  • Advance the IAM operational support capability by collecting actionable metrics and introducing tools and procedures to make the team more efficient

  • Support the development of IAM-related IaaS and SaaS security requirements and controls

  • Focus on process improvements via innovative methods to assist in the automation of manual tasks.

  • Participate in on-call rotation and DR exercises, and develop solutions and processes to eliminate or reduce off hours support calls

Minimum Requirements: knowledge, skills and abilities:

  • 3+ years in an IAM role at a large enterprise, preferably in financial services or other highly regulated industry

  • Experience with common identity protocols including: SAML, oAuth, OIDC, FIDO, SCIM, LDAP

  • Understanding of IGA concepts including identity lifecycle management and JML workflows

  • Proven ability to automate repetitive tasks; especially with programming/scripting languages like Powershell or Python

  • Experience with public cloud platforms, cloud security concepts and cloud platform IAM (ideally in GCP) 

  • Ability to recognize and implement security best practices for SaaS applications 

  • Understanding of general IT architecture infrastructure: Unix/Windows Servers, networking devices, databases, and virtualization

  • Ability to work both independently and in a team-oriented, collaborative environment

  • Ability to work across a broad range of technologies to deliver solutions to complex challenges

  • Strong familiarity with security issues surrounding Identity Access Management and experience in implementation of security systems and controls. Must have a deep knowledge of security components, principles, practices, and procedures

  • Advanced skillset in collaboration and can lead team-oriented projects effectively without the need for guidance or support across all situations


 

Personal Attributes:

  • Strong analytical, problem-solving, and fact-based troubleshooting skills

  • Highly self-motivated and directed with keen attention to detail

  • Effective time management skills demonstrated by successful and timely completion of projects

  • Strong analytical, problem-solving, and troubleshooting skills

  • Team player that supports a collaborative environment to negotiate and build consensus

  • Positive attitude, self-starter, with effective communication and interpersonal skills

  • Desire to help create a world-class IAM support organization

Formal Education & Certification:

  • A Bachelor's degree in Computer Science or Information Systems or related discipline or equivalent work experience

  • Security certifications are a plus (e.g., CISSP, CISM, CGEIT, SSCP, Security+, etc.) 

#LI-Hybrid
#LI-DS
#dice
 

CME Group is committed to offering a competitive total rewards package for our employees that recognizes their contributions to the business and reflects our long-term investment in their future. The salary range for this role is $113,600-$189,400. Actual salary offered will be dependent on a wide array of factors including but not limited to: relevant experience, skills, education and comparison to internal employees (where relevant). Our compensation program also includes an annual target bonus opportunity for all employees, as well as the opportunity to become an owner in the company through our broad-based equity program. Through our Benefits program, we strive to offer flexibility, value and choice. From comprehensive health coverage, to a retirement package that includes both a 401(k) and an active Pension Plan, to highly competitive education reimbursement provisions, paid time off and a mental health benefit, CME Group offers a holistic Benefits package for our team and their dependents.

CME Group : Where Futures are Made

CME Group is the world’s leading and most diverse derivatives marketplace. But who we are goes deeper than that. Here, you can impact markets worldwide. Transform industries. And build a career by shaping tomorrow. We invest in your success and you own it – all while working alongside a team of leading experts who inspire you in ways big and small. Problem solvers, difference makers, trailblazers. Those are our people. And we’re looking for more.

Apply

Job Profile

Regions

North America

Countries

United States

Restrictions

Hybrid position No out of state employment Not fully remote

Benefits/Perks

Competitive total rewards package Hybrid work

Tasks
  • Automate tasks
  • Develop IAM security requirements
  • Implement IAM solutions
  • Participate in on-call rotation
  • Support IAM governance
Skills

Access Management Cloud Security Databases FIDO GCP IAM Identity Lifecycle Management Identity Management IGA JML Workflows LDAP Networking OAUTH OIDC PowerShell Python SAML SCIM UNIX Virtualization Windows

Experience

3 years

Education

Bachelor's degree Computer Science Information Systems Related discipline

Certifications

CGEIT CISM CISSP Security+ SSCP

Timezones

America/Anchorage America/Chicago America/Denver America/Los_Angeles America/New_York Pacific/Honolulu UTC-10 UTC-5 UTC-6 UTC-7 UTC-8 UTC-9