Staff IAM Engineer

Ironclad
San Francisco
Workplace: HybridFull timeUSD 170,000 - 190,000 annuallyFunction: Software EngineeringExperience: 4+ yearsSkills: ["Communication","Problem-solving","Ownership"]

Implement and operate identity governance, access controls, and security infrastructure to protect Ironclad’s people, systems, and data. You’ll design RBAC policies, enhance authentication (SSO/MFA), integrate new SaaS apps into SSO/MFA, and collaborate with IT, Security and Compliance to support audits, device trust, and endpoint security in a hybrid, San Francisco–based role.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Ironclad
Ironclad
5 months ago

Staff IAM Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 23 hours agoStatus: Live

Job Summary

Implement and operate identity governance, access controls, and security infrastructure to protect Ironclad’s people, systems, and data. You’ll design RBAC policies, enhance authentication (SSO/MFA), integrate new SaaS apps into SSO/MFA, and collaborate with IT, Security and Compliance to support audits, device trust, and endpoint security in a hybrid, San Francisco–based role.
Location: San Francisco
Workplace: Hybrid
Employment Type: Full time
Job Function: Software Engineering

Key Responsibilities

  • •Support implementation and operations of our Identity Governance & Administration (IGA) platform to ensure employees gain appropriate access for their role, approvals are captured, and access is revoked efficiently upon separation
  • •Access control design as a security control by defining and enforcing RBAC standards for sensitive systems
  • •Continuous improvement of identity controls by reducing standing privileges and hardening authentication policies (SSO, MFA)
  • •Lead the integration of new SaaS applications into our SSO (Single Sign-On) and MFA (Multi-Factor Authentication) ecosystem, providing security oversight for business systems implementations and operations
  • •Evolve our corporate device trust program so only compliant devices can access corporate and production systems

Pay and Benefits

Salary: USD 170,000 - 190,000 annually
Equity and Bonus:Equity
Perks:EquityHealth Insurance401kParental Leave

Key Requirements

  • •4+ years of experience in security-focused software engineering, corporate engineering, IT, and/or program management
  • •Strong understanding of IAM protocols and standards, including SAML 2.0, OIDC, SCIM, LDAP, OAuth, and X.509
  • •Experience with IdP and identity tooling (e.g., Okta, AD, Google Workspace) and RBAC across enterprise applications
  • •Familiarity with endpoint engineering for macOS and Windows
  • •SW Eng/DevOps proficiency: Python and/or Go, Terraform, GAM scripting, PowerShell, JSON, JavaScript
Experience:4+ yearsCybersecurity
Skills:CommunicationProblem-solvingOwnership
Languages:English
Tech Stack:SAML 2.0OIDCSCIMLDAPOAuthX.509OktaActive DirectoryGoogle WorkspaceMacOSWindowsPythonGoTerraformGAM scriptingPowerShellJSONJavascript

Company Brief

Ironclad
Provides a contract lifecycle management platform that automates contract creation, negotiation, approval, and analytics for legal and business teams. Integrates with enterprise systems to streamline contracting workflows and reduce legal bottlenecks.
Industry: LegalTech
Company Size: Large (251 to 1,000 employees)
Growth: Scaleup
Valuation: Unicorn (USD 1B+)
Funding: Series E+
Headquarters: San Francisco, United States
Founded: 2014
WebsiteLinkedIn