Engineer II, Information Security Assurance & Response
CardWorks Servicing ("CWS") is one of the largest privately-held provider of outsourcing services for bankcard-related products to banks and non-bank lenders in North America. CWS offers management expertise across the credit spectrum and supports both MasterCard and Visa accounts as well as a variety of private label debit, credit, stored value, and customer bankcards.
Position Summary:
The Identity and Access Management (IAM) Engineer II will work in the Merrick Bank and CardWorks security team. They will be involved in day-to-day activities regarding identity and access creation, risk-based access control, attribute-based access control, role-based access control, privileged access management, access modifications and access terminations. They will engage in the support of tools and services within and external to the information security team. The IAM Engineer will design solutions, engineer integrations, set-up processes, provide reporting, instruct other teams on said processes and integrations and manage tools and data.
They implement, operate, monitor, and improve information security processes and systems that protect the Companies data, customers, and computer systems from business disruption, data/identity compromise, cyber fraud, and regulatory criticism.
Essential Functions:
- Utilize information security tools and develop processes.
- Perform identity and access tasks based on daily process and or procedure.
- Participate in identity and access planning, design and feedback.
- Support application integrations with IAM suite of applications and tools.
- Create APIs where necessary to automate lifecycle management.
- Investigate, troubleshoot and fix issues and errors generated by IAM tools.
- Use a variety of tools to monitor tool operations, outages, errors, data integrity, etc.
- Work with others to assist with gathering information during penetration testing, incident handling/digital forensics, identity theft, and other types of identity or access concerns.
- Assist and/or Implement tools, processes, and communications that support information security initiatives.
- Participate in tactical projects as they arise to clarify and respond to identified security risks across different technical domains.
- Collaborate with engineers to implement standardized practices and follow routine processes to promote secure systems and proper visibility.
- Assists in the development of security policies and procedures.
- Provide metrics and reporting.
- Work on user access recertifications as needed.
Education and Experience:
- 3+ years of work experience in IAM, cybersecurity engineering, and IAM tools.
- Bachelor’s degree in computer or cybersecurity-related studies, or equivalent broad experience required, five (5) years of related and equivalent experience accepted in lieu of education requirement.
- CISSP, CCSK, CompTIA Cloud+, GCSA, CCSP, AWS Security Certification, CIST, CIAM, CIMP, CAMS or other recognized certifications are also desirable
- Experience as a security or IT system administrator preferred, including day-to-day operations, troubleshooting, access administration, updating/patching, etc.
- Familiarity highly-regulated industries, and specifically the banking industry (including PCI, SOX, and FDIC regulations) is desirable.
Summary of Qualifications:
- Ability to support integrations into Sailpoint and AzureAD/EntraID with strong skill set for API development and integration.
- Ability to analyze, interpret and correct data inconsistencies, errors, gaps, and inaccuracies for impact.
- Strong understanding of IAM principles including details for joiner, mover, leaver operations.
- Strong understanding of workflows from systems of record through many different layers of IAM to application use.
- Strong understanding of Azure AD including lifecycle management for all account types.
- Strong knowledge of AWS.
- Knowledge of client-server applications, multi-tier web applications, relational databases, and cloud IAM and security tools.
- Strong understanding of SSO, oauth, OpenID and SAML.
- Experience with Workday integrations
We offer a total rewards package comprised of a competitive base rate of pay, variable pay incentive programs based on the role, and a comprehensive benefit suite. Offered rates of pay are determined based on job-related knowledge, relevant experience, skills, certifications, and geographic location. Our benefits offerings include medical, dental, vision, life insurance, 401(k) plan with company match, paid vacation time, sick time, as well as other benefits and programs to meet the needs of our employees. Further details will be shared during the interview or offer process, as appropriate and applicable.
We are an equal opportunity employer, and we evaluate qualified applicants without regard to race, color, religion, sex, national origin, disability, veteran status or any other legally protected characteristic. We will conduct a thorough background check for all hires in compliance with applicable law which includes (but may not be limited to) a review of factors including the applicant’s personal credit history, drug testing, and employment/personal references.
Other details
- Pay Type Salary
- CardWorks Servicing, 100 Colonial Center Parkway, Lake Mary, Florida, United States of America
- CardWorks Servicing, 10705 South Jordan Gateway, South Jordan, Utah, United States of America
- CardWorks Servicing, 225 W Station Square Drive, Pittsburgh, Pennsylvania, United States of America
- CardWorks Servicing, 9200 SouthPark Center Loop, Orlando, Florida, United States of America