Technical Security Analyst, IAM

Shopify

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
Posted
2 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

How this pay compares to similar roles

Similar $159k
$111k most similar roles pay here $204k

This listing doesn't post a salary. Most similar roles pay $128,825–$189,300.

Based on 240 similar postings.

Employer

About Shopify

Shopify is a leading global commerce platform that enables businesses of all sizes to start, grow, and manage their retail operations online and in-person. It provides tools for storefronts, payments, shipping, and marketing to millions of merchants worldwide.

Shopify currently has 22 open roles on FindRole.

Most-posted roles

View all roles at Shopify

At a glance

TL;DR · Technical Security Analyst, IAM

The Technical Security Analyst, IAM joins the Identity and Access Management team to operate, monitor, and improve security systems and workflows governing corporate identities and access. This role involves managing access controls, responding to incidents, automating repetitive security workflows, and creating playbooks for control monitoring. The analyst will perform audits, analyze risk, and use data and metrics to evaluate program health while collaborating with cross-functional teams like engineering and compliance. Key skills include a deep understanding of information security fundamentals, privacy principles, and compliance standards. Candidates should have experience with corporate identity providers at scale, AI tools for automation, and technical control assessments. The role focuses on reducing identity risk across global operations and infrastructure by hardening IAM security, managing access policies, and ensuring seamless, secure workflows for employees within a complex technology stack.

What you'll do

  • Monitor, audit, and improve access controls governing corporate identities across global operations.
  • Respond to IAM-related incidents and coordinate remediation actions with engineering and IT partners.
  • Analyze existing IAM controls to identify security gaps and implement risk reduction strategies.
  • Automate repetitive security workflows to reduce manual toil and improve operational efficiency.
  • Develop and maintain playbooks for access reviews, control monitoring, and incident response.
  • Use data and metrics to track program health and communicate the impact of security improvements.
  • Perform technical audits to ensure security controls function effectively and meet compliance standards.
  • Create detailed documentation regarding decision rationale, control evidence, and workflow updates.

What we're looking for

  • Understanding of information security fundamentals, privacy principles, and compliance standards.
  • Experience working with corporate identity providers at scale.
  • Ability to use AI tools to accelerate analysis, automate workflows, and solve technical security problems.
  • Strong communication skills to translate complex technical configurations and risks into clear recommendations.
  • Experience using metrics or dashboards to analyze systems, controls, or security program health.
  • Experience performing technical or security control assessments and creating remediation plans.
  • Experience writing, reviewing, or improving access policies, standards, or procedures.
  • Experience monitoring security controls mapped to common frameworks or compliance requirements.
  • Proven track record of synchronizing identity data across HRIS, directories, SaaS ecosystems, and security tooling (preferred).
  • Deep familiarity with zero-trust architectures and their implementation in workforce identity management (preferred).
  • Experience establishing health metrics for security controls, SLIs, and indicators for operational risk (preferred).
  • Hands-on knowledge of cloud-native IAM frameworks within AWS or Google Cloud Platform (preferred).
  • History of successful collaboration with legal, privacy, compliance, and internal audit partners (preferred).
  • Ability to perform root-cause analysis to transform security incidents into permanent control enhancements (preferred).
  • Skilled at optimizing security workflows while maintaining a low-friction experience for employees (preferred).
  • Active interest in the evolution of identity threats and defensive innovations (preferred).

More like this

Similar roles

Information Security Risk Analyst

Lam Research

Tualatin, OR 74 days ago
SIEM Microsoft Sentinel Splunk KQL SPL SQL Python PowerShell MITRE ATT&CK UEBA Azure AWS Cloud Platform Entra ID Logic Apps STIX/TAXII MISP Threat Hunting Incident Response
Hybrid

Information Security Risk Analyst

Lam Research

Tualatin, OR 74 days ago
SIEM KQL SPL SQL Python PowerShell Microsoft Sentinel Splunk Exabeam Securonix Microsoft Defender XDR Entra ID Azure AWS Cloud Platform MITRE ATT&CK UEBA STIX/TAXII MISP Logic Apps

Information Security Risk Analyst

Lam Research

Tualatin, OR 64 days ago
SIEM Microsoft Sentinel Splunk KQL SPL SQL Python PowerShell MITRE ATT&CK UEBA Azure AWS Cloud Platform Entra ID Logic Apps MISP STIX/TAXII Threat Hunting Incident Response

IAM Security Engineer

Cloudflare, Inc

Austin, TX 7 days ago
IAM SAML OIDC OAuth SCIM RBAC ABAC Python TypeScript Bash Kubernetes Terraform Ansible Zero Trust LLMs Infrastructure as Code ITDR PAM IGA
Hybrid

Senior Security IAM Engineer

Adobe

Seattle, WA +2 25 days ago $214,100$310,100
Entra ID Active Directory Okta LDAP 389DS Python PowerShell SaaS Security Posture Management Grafana Splunk PowerBI Public Key Infrastructure MFA Zero Trust Linux Unix Windows Mac