Sr. IAM Cybersecurity Engineer, Enterprise Identity
Workday - Pleasanton, CA
Hiring: Sr. IAM Cybersecurity Engineer, Enterprise Identity Company: Workday Location: Pleasanton, CA Job Posted Time: 2026-09-12 12:09:58 Employment Type: Remote Target Skills & Keywords : Design System, Encryption, IAM, OIDC, Okta, Regulatory Compliance, SAML, Workday, Zero Trust About the job Experience: •7+ years (with a BS degree) or 4+ years (with an MS degree) of related IT or information security experience Required Skills: •As a Sr. IAM Cybersecurity Engineer on the Enterprise Identity team, you will play a key role in designing and supporting the security of employee and client identities for a global technology leader. This role is essential to ensuring Workday's identity security program remains comprehensive and forward-looking across IAM, ILM, IGA, and PAM. •Working with key business leaders and partners to understand business needs and anticipate threats against the organization •Assisting with cybersecurity risk identification, assessment, and evaluation of projects across the enterprise, collaborating with partners to drive informed decision-making •Leading and helping maintain a comprehensive Identity program (IAM, ILM, IGA, and PAM), architecting Zero Standing Privileges (ZSP) frameworks and dynamic, contextual-based authorization models •Championing the shift toward Zero Standing Privileges (ZSP) by implementing Just-In-Time (JIT) provisioning, risk-adaptive policies, and contextual access evaluations to eliminate persistent elevated access •Supporting security and access control processes, elements, and workflows that align enterprise security architecture frameworks and standards with overall business and security strategy •Collaborating with product owners to develop secure business requirements, support security architecture, and integrate contextual authorization into enterprise identity and governance platforms •Leading the ongoing evaluation and development of security policies and procedures, driving revisions for modern identity and least-privilege approaches as needed Qualifications: •Bachelor's degree or higher in a relevant field such as Computer Science, Cybersecurity, Information Security, or a related discipline •Proficiency across areas of information security, with familiarity with regulatory compliance requirements •Information Security: Deep understanding of information security concepts, including the ability to implement effective security policies, conduct assessments, and ensure compliance with data protection regulations. You bring hands-on experience protecting data from unauthorized access, disclosure, and disruption across the enterprise. •Security Engineering: Experience in designing and implementing systems, procedures, and protocols to protect information and data. This includes understanding encryption, authentication, intrusion detection, and the ability to assess potential risks and vulnerabilities within identity platforms. •Security by Design: A proactive approach to integrating security measures into the design and architecture of identity systems from the outset, including understanding security principles and controls, risk assessment methodologies, and the ability to design systems that can resist and recover from security breaches. •Threat and Vulnerability Management: Familiarity with identifying, assessing, and mitigating potential risks and weaknesses in identity security infrastructure, including understanding threat landscapes, conducting assessments, and staying current with the latest cybersecurity trends and threats. •Solid understanding of and experience with Zero Trust and Identity concepts and how they can improve security for all areas of identity management •Broad knowledge of identity access management technologies such as MFA, SSO, SAML, OIDC, and LDAP •Excellent verbal and written communication skills, with the ability to adapt your style to different audiences and collaborate across teams •Solid understanding of identity management principles and standard processes Compensation: •Flexible work environment (work from home / hybrid options) •Competitive benefits and rewards package Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!