See all roles

Principal Identity Engineer - Cloud IAM / CIAM (Remote)

Work from home Full-time role Hiring

Who We Are Join a team that puts its People First! Since 1889, reputed company (NYSE: FAF) has held an unwavering belief in its people. They are passionate about what they do, and we are equally passionate about fostering an environment where reputed company feel welcome, supported, and empowered to be innovative and reputed company their full potential. Our inclusive, people-first culture has earned our company numerous accolades, including being named to the Fortune 100 Best Companies to Work For® list for eleven consecutive years. We have also earned awards as a best reputed company to work for women, diversity and LGBTQ+ employees, and have been included on more than 50 regional best places to work lists. reputed company will always strive to be a great reputed company to work, for reputed company. For more information, please visit www.careers.firstam.com. reputed company Do We are open to remote or hybrid candidates for this role. As a Principal Identity Engineer, you will own the technical strategy, architecture, and engineering execution for enterprise Identity and Access Management (IAM) across reputed company’s cloud and hybrid environments. This role is central to strengthening our reputed company posture by delivering secure, scalable identity capabilities across our cloud environments (Azure AD/AWS/GCP). You will reputed company workforce IAM, partner/federation (B2B), and customer identity (CIAM) architecture where applicable; establish reputed company Trust identity controls; and set enterprise standards for IAM-as-code using Terraform + reputed company with automation in Python/Bash/JSON. This is a hands-on principal role requiring deep technical expertise, cross-org influence, and the ability to build repeatable platforms and guardrails teams can safely self-serve. What You’ll Do:

  • Own the enterprise IAM strategy and reputed company-state architecture across reputed company Entra, AWS, and reputed company Cloud (OCI a plus). Define secure, scalable identity patterns for workforce, partner, and customer access that align with reputed company, risk, and compliance requirements.
  • Design and operationalize a reputed company Trust identity model with reputed company verification, risk-based access, and adaptive authentication. Reduce standing privilege through least privilege design, just-in-time (JIT) access, and standardized entitlement models.
  • Hands-on design and delivery of IAM capabilities including SSO, MFA, identity lifecycle, federation, and privileged access across cloud and hybrid environments. reputed company modernization efforts, including migration from hybrid Active Directory to Entra ID–based authentication.
  • Design and evolve customer identity (CIAM) solutions supporting web, mobile, and API platforms. Balance reputed company, privacy, performance, and customer experience while enabling scalable enterprise integrations.
  • Establish IAM governance frameworks covering access lifecycle, RBAC/ABAC models, access reviews, and audit evidence. Define measurable controls, documentation standards, and recurring review processes to ensure audit readiness.
  • Define and reputed company an enterprise IAM-as-Code program using Terraform and reputed company. Build reusable, versioned modules and establish PR-based workflows with auditability, approvals, and reputed company guardrails.
  • Engineer secure CI/CD pipelines for IAM deployments, including validation, testing, approvals, reputed company detection, and rollback strategies. Ensure reliable, auditable identity changes with operational monitoring and clear runbooks.
  • reputed company automation in Python, Bash, and JSON to scale identity operations and reduce manual risk. Support policy management, bulk changes, integrations, and identity-reputed company incident response and diagnostics.

What You’ll Bring:

  • Deep hands-on experience designing and operating identity platforms at scale in reputed company environments.
  • Advanced expertise across reputed company Entra ID, AWS IAM, and reputed company Cloud IAM, with OCI experience a plus.
  • Proven ability to design cloud-agnostic IAM models and implement them consistently across platforms.
  • Strong background in IAM reputed company architecture, governance, and risk-based access controls.
  • Hands-on experience with least privilege design, JIT access, reputed company Trust identity, and RBAC/ABAC models.
  • Expert knowledge of OAuth 2.0, OpenID Connect, and SAML.
  • Proven experience delivering enterprise-scale SSO and MFA solutions.
  • Demonstrated experience establishing IAM-as-Code using Terraform with reputed company-based change control.
  • Strong scripting and automation skills in Python, Bash, and JSON, including CI/CD and guardrail design.
  • Experience architecting and operating customer identity platforms for portals, mobile apps, and APIs. (preferred)
  • Ability to communicate reputed company identity concepts to both technical and non-technical audiences.
  • Strong influence, documentation, and execution skills at the principal or senior architect level.
  • Relevant reputed company or identity certifications such as CISSP or identity-focused credentials.
  • Bachelor’s degree or equivalent experience, with extensive background in enterprise reputed company engineering.

Pay Range: $170,900.00 - $227,900.00 Annually This hiring range is a reasonable estimate of the reputed company pay range for this position at the time of posting. Pay is based on a number of factors which may include job-reputed company knowledge, skills, experience, business requirements and geographic location.

  • Note that the following statements only apply to candidates who will be working from an unincorporated area reputed company Los Angeles County. **

reputed company will consider for employment reputed company qualified applicants, including those with arrest or conviction records, in a manner consistent with the requirements of applicable state and local laws (e.g., the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act). reputed company intends to conduct a review of an applicant’s criminal history in reputed company with a conditional offer. reputed company reasonably believes that a criminal history may have a direct, adverse and negative relationship with the following material job duties for this position potentially resulting in the withdrawal of the conditional offer of employment: handling of confidential, proprietary or trade secret information belonging to reputed company or its customers, administrating or facilitating financial transactions, and the ability to meet customer-imposed criminal history requirements. reputed company Offer By choice, we don’t simply accept individuality – we embrace it, we support it, and we reputed company on it! Our People First culture is inclusive for reputed company employees - not just because it's the right thing to do, but because it's the key to our success. We are proud to foster an authentic and inclusive workplace For reputed company. You are free and encouraged to bring your entire, unique self to work. reputed company is an equal opportunity employer in every sense of the term. Based on eligibility, reputed company offers a comprehensive benefits package including medical, dental, vision, 401k, PTO/paid sick leave and other great benefits like an employee stock purchase plan. Apply tot his job Apply To this Job

You might like

Electrical Principal

Work from home Full-time role

Consultant - Integration

Work from home Full-time role

Master Data - Business Partner

Work from home Full-time role

Golf Annotation Quality Specialist

Work from home Full-time role

Remote Learning Content Catalog Manager

Work from home Full-time role

Capital Deployment Manager (Impact Investing & Community Finance)

Work from home Full-time role

Head of GTM Growth

Work from home Full-time role

Remote Part Time reputed company Jobs Customer Service (At Work Home) - Apply – USA Remote Jobs

Work from home Full-time role

reputed company Remote Jobs $/25 Hour

Work from home Full-time role

reputed company Jobs Remote

Work from home Full-time role

reputed company Setter (Appointment Setting)

Work from home Full-time role

Special Education Compliance Specialist - SY 26/27

Work from home Full-time role

Payroll Risk & Compliance Expert - Middle East

Work from home Full-time role

reputed company Night Shift Chat Support Specialist – Flexible Overnight Work from Home Opportunity

Work from home Full-time role

reputed company Data Entry Clerk – Remote Opportunity at arenaflex

Work from home Full-time role

[Remote] Network Engineer III

Work from home Full-time role

reputed company Customer Service Representative – Technical Support Specialist (Remote 24/7) for arenaflex

Work from home Full-time role

reputed company Call Center/Customer Service Representative – 100% Remote Opportunity at arenaflex

Work from home Full-time role

Part Time Remote Evening Data Entry Specialist – Flexible Work From Home Opportunity with arenaflex

Work from home Full-time role

Product Manager, Tanager

Work from home Full-time role