MRO logo
MRO

The Single Source for Smarter Data™

Senior Security Advisor, Identity

Security EngineerSecurity EngineerFull TimeRemoteSeniorTeam 1,001-5,000H1B SponsorCompany SiteLinkedIn

Location

Idaho

Posted

2 days ago

Salary

$115K - $155K / year

Seniority

Senior

Bachelor DegreeEnglishAzure

Job Description

Senior Security Advisor, Identity

MRO

• Define, own, and continuously evolve the enterprise identity and access management strategy, roadmap, and target architecture • Develop and maintain a prioritized backlog of identity initiatives, balancing risk reduction, and user experience • Present roadmap progress, risks, and recommendations to leadership and the CISO • Lead and participate in the design, configuration, and deployment of identity solutions using Okta and Microsoft Entra ID (Azure AD) • Drive the implementation and optimization of IGA capabilities including access certifications, role management, and joiner/mover/leaver processes • Oversee PAM tooling and processes, including privileged account provisioning, session management, and just-in-time access controls • Define and enforce identity standards, policies, and patterns for adoption across engineering and operations teams • Serve as the primary point of contact for identity platform vendors, managing contracts, escalations, and roadmap alignment • Build strong working relationships with clinical leads, IT operations, data governance, and HR to ensure identity controls support workforce needs • Communicate complex identity concepts in accessible terms to non-technical stakeholders across the organization

Job Requirements

  • Proven experience in a senior identity or IAM advisory role, ideally within a regulated industry
  • Experience with SCIM, SAML 2.0, OAuth 2.0, and OpenID Connect protocols
  • Deep hands-on expertise with Okta (Workforce Identity), including configuration, SSO, MFA, lifecycle management, and API access management
  • Strong working knowledge of Microsoft Entra ID / Azure AD, including conditional access, PIM, hybrid identity, and B2B federation
  • Solid understanding of IGA principles and tooling: access reviews, role-based access control (RBAC), and provisioning workflows
  • Practical experience with PAM solutions and privileged account governance
  • Ability to operate at both a strategic and technical level, equally comfortable writing a roadmap paper or reviewing an integration design
  • Strong stakeholder engagement skills with experience influencing senior decision-makers

Benefits

  • Medical insurance
  • Dental insurance
  • Vision insurance
  • Life insurance
  • 401(k) plan

Related Categories

Related Job Pages

More Security Engineer Jobs

NCC Group logo

AI Security Consultant

NCC Group

A global team at the heart of cyber innovation, together we create a more secure digital future

Full TimeRemoteTeam 1,001-5,000Since 1999H1B Sponsor

• Identify and mitigate risks in AI models, applications and data pipelines • Design and implement security protocols for AI/ML systems and infrastructure, models and data pipelines • Review applications and services using AI against both generic and AI specific threats • Conduct threat modeling and risk assessments • Monitor systems for anomalous behaviors • Assess and secure endpoints and APIs for model access and inference • Collaborate with stakeholders, engineers, data scientists and IT to integrate security into systems and infrastructure • Deliver client reports on AI security protocols and policies, and document best practices • Develop and implement AI security training for internal and external stakeholders

Washington
$125K - $175K / year
Packetlabs logo

Ethical Hacker – Hardware

Packetlabs

Ready to strengthen your security posture?

Full TimeRemoteTeam 51-200Since 2011H1B No Sponsor

• Plan and execute end-to-end hardware penetration tests on embedded and IoT devices, against a defined scope and rules of engagement • Identify, access, and exploit on-board debug interfaces: JTAG, SWD, UART, and similar, to gain code execution or memory access • Extract firmware via debug ports, in-circuit flash reads (SPI / I2C / NAND), or chip-off when required, and analyze it for vulnerabilities • Intercept and analyze data on common embedded buses (SPI, I2C, UART, CAN, USB) using logic analyzers and protocol decoders • Where in scope, perform side-channel analysis and fault injection (power analysis, voltage/clock glitching) to bypass secure boot, readout protection, or authentication • Reverse engineer firmware and embedded binaries (Ghidra, IDA, Binwalk, etc.) to find logic flaws, hardcoded secrets, and exploitable conditions • Assess physical attack surface, tamper resistance, and key/secret storage • Distinguish between theoretical and operationally relevant risk to keep findings actionable • Write high-quality technical reports and present findings to client stakeholders, both technical and non-technical • Advise on practical, prioritized remediation that clients can act on • Build client confidence through credibility, clear communication, and proven impact • Build and maintain lab tooling, test rigs, and internal methodology • Contribute to research, responsible disclosure, and internal knowledge-sharing • Stay current on hardware attack techniques, embedded architectures, and defensive controls

Texas
$80K - $120K / year
Full TimeRemoteTeam 51-200Since 2022H1B No Sponsor

• Define and enforce a coherent cloud architecture strategy • Own cloud cost strategy in partnership with Finance • Own Albert’s security posture end-to-end • Implement and evolve a Zero Trust architecture • Lead compliance and audit readiness • Own Azure interoperability strategy • Manage the ML/AI infrastructure platform • Drive infrastructure modernization • Build and lead a global SRE organization • Define and own the SLO framework • Establish incident response and disaster recovery programs • Manage vendor relationships • Develop and deliver cybersecurity awareness programs

California
Full TimeRemoteTeam 5,001-10,000Since 1969H1B No Sponsor

• Provide independent assessments of MARAD information systems in support of system authorization, reauthorization, and continuous monitoring activities. • Evaluate management, operational, and technical security controls in accordance with NIST Risk Management Framework (RMF) requirements. • Support Authority to Operate (ATO) decisions. • Develop assessment documentation and reports. • Collaborate with MARAD, DOT, and cybersecurity stakeholders to ensure compliance, risk visibility, and mission assurance. • Assess MARAD systems in one of three states: System Authorization: Initial Authorization, Reauthorization, or Continuous Monitoring Assessment (CMA). • Provide annual assessment support to the NSMV and MARAD CIO programs. • Conduct independent assessments of specified MARAD information systems following the System Authorization process. • Execute and conduct analysis of network and systems to validate appropriate security control implementation. • Develop security assessment plans and assessment reports compliant with latest revisions of NIST Special Publication 800-53A Recommended Security Controls. • Develop security assessment executive summary documents including summative presentation further providing an overview of activities, findings, risks and mitigation recommendations.

United States