Access & Identity Management Engineer

Blackrock

Hybrid

Quick summary

Work type
Hybrid
Location
Atlanta, GAWilmington, DE
Salary
$120,000–$148,000 / yr
Posted
6 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $165k
This role $134k
$111k most similar roles pay here $207k

This role pays less than 74% of similar roles. Most pay $133,450–$195,900 — the shaded band above. At the midpoint, this role pays about $134k versus about $165k for comparable roles.

Based on 240 similar postings.

Employer

About Blackrock

BlackRock is the world''s largest asset management firm, providing investment management, risk management, and advisory services to institutional and retail clients through its Aladdin technology platform. Industry: Asset Management & Financial Services

Blackrock currently has 86 open roles on FindRole.

Listed pay typically runs $148,000–$190,000 across 83 roles with salary data.

Most-posted roles

View all roles at Blackrock

At a glance

TL;DR · Access & Identity Management Engineer

The Cloud Identity & Access Management (IAM) Cloud Associate role within the Global Information Security group at BlackRock is a technical position focused on supporting IAM functions across Microsoft Azure and AWS environments. This includes managing user access, creating non-human accounts, and maintaining roles permissions to ensure secure operations for various business units. The associate will drive continuous improvement by implementing emerging security technologies and best practices, collaborating with IT teams to define IAM requirements, and utilizing automation tools like CI/CD pipelines, Terraform, and Python scripts to enhance IAM infrastructure in Azure, AWS, and GCP. Required skills include hands-on experience with Azure RBAC role assignments via Privileged Identity Management (PIM), proficiency in PowerShell and Python scripting for task automation, and a strong understanding of cloud security governance practices. The ideal candidate has 5+ years of IAM experience, including extensive work with Azure and AWS environments, and possesses excellent communication skills to train team members on Cloud IAM topics.

What you'll do

  • Drive continuous improvement by introducing and implementing emerging IAM security technologies.
  • Create and enhance automation scripts for IAM roles, SPNs, and IaC configurations in Azure and AWS.
  • Manage user and non-human access through Azure RBAC role assignments via Privileged Identity Management (PIM).
  • Handle IAM users, policies, and roles in AWS to ensure secure access control.
  • Identify gaps and recommend solutions to enhance operational efficiencies across IAM processes.

What we're looking for

  • 5+ years of proven experience in Access and Identity Management.
  • Extensive experience (2-4 years) working with IAM in Microsoft Azure and AWS environments.
  • Hands-on experience creating, modifying, and maintaining user access via PIM in Azure.
  • Proficient in assigning entitlements using RBAC and managing non-human account permissions.
  • Strong understanding of AWS CLI, IAM users, policies, roles, and Terraform for resource deployment.
  • Demonstrated knowledge of cloud security governance practices and IAM policy preparation.
  • Proficiency in PowerShell and Python scripting for task automation.

More like this

Similar roles

Associate, Application Engineer

Blackrock

New York 29 days ago $132,500$162,000
Java Spring Framework Spring Boot React Vue.js Angular Maven Git Unit testing Integration testing Mocking frameworks SQL NoSQL Python Golang Azure DevOps AWS Google Cloud Docker Kubernetes CI/CD REST gRPC Messaging brokers Relational databases Microservices DevOps
Hybrid

Associate, Application Engineer

Blackrock

San Francisco, CA 8 days ago $161,637$162,000
Python Java Agile Terraform HashiCorp Vault Kubernetes Linux C++ Golang Test-Driven Development CI/CD
Hybrid

Senior Network Engineer

Lockheed Martin

Hanover, MD 4 days ago $85,500$150,765
OSI_model IP_addressing_and_subnetting Risk_Management_Framework Windows_OS Linux_OS VMware vSphere vCenter WSUS SCCM Splunk ACAS SCAP HBSS NESSUS DISA_STIGs LAN_WAN_connections network_hardware routers switches firewalls