Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Sr. Security Engineer (IAM) image - Rise Careers
Job details

Sr. Security Engineer (IAM)

Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as we continue to shape the future of cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and data everywhere. We are currently seeking a dynamic Senior Security Engineer (IAM) to contribute to the success of our rapidly growing business.You would act as a Sr. Security Engineer for the Corporate Information Security team. This highly technical role is an integral part of the Fortinet Corporate Information Security that is responsible for driving Identity and Access Management related global-scale projects within the organization.As a Senior Security Engineer, your responsibilities will include:• Serve as a subject matter expert and trusted advisor in support of the implementation of the Identity and Access Management program.• Design, implement, and scale identity and access management solutions for Fortinet’s internal workforce and workloads• Work with internal teams to integrate IAM solutions into our applications and systems.• Engage in information security projects that evaluate existing security controls and propose changes based corporate policies.• Collaborate with cross-functional teams (IT, Security, Compliance) to ensure IAM program aligns with business goals.• Stay current with industry best practices, regulations, and compliance standards related to IAM, such as FedRamp, SOX, GDPR, PCI, and NIST.• Evaluate new and emerging IAM security products and technologies• Proactively research new attack vectors that may affect Fortinet applications and infrastructure.• Work collaboratively with IAM and product teams on the implementation of product enhancements and help developing the product roadmap.• Be part of a global distributed team to share knowledge, workload and assignments. Strong sense of teamwork is required. Coach peers in IAM security concepts and best practices.We are looking for:• 7+ years of work of experience in network/system engineering, cloud engineering, security engineering or operations roles.• 2+ years of work experience in IAM related role• Strong understanding of identity federation (SAML, OAuth, OpenID Connect, etc.)• Solid Experience with LDAP and/or Active Directory• Strong understanding on passwordless authentication and FIDO2 standard.• Experience implementing Zero Trust controls• Experience with Identity and Access Management policy application and enforcement• Experience working with Identity Threat Detection & Response (ITDR)• Demonstratable experience in one or more of the following IAM domains:• Identity Governance & Administration tools such as SailPoint, One Identity, or Forge Rock IDM.• Privileged Access Management technologies such as CyberArk, FortiPAM, or BeyondTrust.• Access Management technologies such as Microsoft Entra ID, Okta, or FortiAuthenticator.• Strong foundation in computer and network security, authentication & authorization, security protocols and applied cryptography• Solid understanding on OWASP TOP 10 vulnerabilities and technologies like OAuth and JWT.• Experience with public cloud services providers (AWS, GCP, Azure) and their IAM capabilities is a big plus.• Ability to analyze access patterns and identify potential security risks or inefficiencies that include risky user behavior patterns and events.• Experience developing and implementing IAM strategies and solutions, including single sign-on (SSO), multi-factor authentication (MFA), identity federation, and privileged access management (PAM)• Working knowledge of operating systems including Linux/Unix and Windows• A self-starter with experience proactively identifying problems, determining practical solutions, identifying and obtaining needed resources, and executing with little or no supervision• Proven ability to manage multiple projects and workstreams concurrently and successfully• Ability to organize & communicate effectively, both written and verbal, with technical and non-technical people across functional teams• A BS degree in Computer Science, Cyber Security, other tech-related degree, or equivalent experience.• Experience in at least one programming or scripting languageDesired Skills• Experience working with infrastructure as code and configuration management tools like Terraform, Ansible, etc is a plus.• Strong understanding on Cloud-Native application architecture, microservices, containerization technologies, secure deployment and implementation issues• Experience in application penetration testing is a plus• Certifications like CISSP and or other IAM certifications is a plus.About Our Team:Join our team, known for its collaborative ethos, working seamlessly with global customers, internal engineering teams and product development groups. Our team culture emphasizes continuous learning, innovation, and a strong commitment to customer satisfaction. We embrace Fortinet’s core values of openness, teamwork and innovation, fostering an environment where team members support each other, share knowledge, and leverage AI to solve complex technical challenges. Our inclusive and dynamic team thrives on collaboration and is driven by the shared goal of maintaining Fortinet’s high standards of excellence in cybersecurity solutions.Why Join Us:We encourage candidates from all backgrounds and identities to apply. We offer a supportive work environment and a competitive Total Rewards package to support you with your overall health and financial well-being.Embark on a challenging, enjoyable, and rewarding career journey with Fortinet. Join us in bringing solutions that make a meaningful and lasting impact to our 660,000+ customers around the globe.The US base salary range for this full-time position is $175,000-$200,000. Fortinet offers employees a variety of benefits, including medical, dental, vision, life and disability insurance, 401(k), 11 paid holidays, vacation time, and sick time as well as a comprehensive leave program.Wage ranges are based on various factors including the labor market, job type, and job level. Exact salary offers will be determined by factors such as the candidate's subject knowledge, skill level, qualifications, experience, and geographic location.All roles are eligible to participate in the Fortinet equity program, Bonus eligibility is reviewed at time of hire and annually at the Company’s discretion.#GD

Average salary estimate

$187500 / YEARLY (est.)
min
max
$175000K
$200000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Sr. Security Engineer (IAM), Fortinet

Join Fortinet, a cybersecurity pioneer with over two decades of excellence, as our Senior Security Engineer (IAM) located in Sunnyvale, CA. At Fortinet, we’re on a mission to safeguard people, devices, and data everywhere, and your expertise will play a vital role in this journey. In this dynamic role, you'll be part of the Corporate Information Security team, focusing on Identity and Access Management (IAM) projects that make a real difference. You’ll serve as a subject matter expert, designing, implementing, and scaling IAM solutions for our internal workforce. Collaboration is key—working with internal teams, you will integrate IAM solutions into various applications and systems while staying up-to-date with industry standards and compliance regulations. Additionally, you’ll evaluate new technologies and proactively research potential security threats to help fortify our defenses. If you're a self-starter with 7+ years of experience in security engineering or a related field, and have hands-on experience with IAM technologies like SAML, OAuth, and Privileged Access Management, we would love to have you on our team. Your innovative thinking and team spirit will thrive in our collaborative environment where continuous learning is encouraged, and your ideas are valued. With a competitive salary and a comprehensive benefits package, your career at Fortinet will not only be rewarding but also impactful, empowering you to work with a diverse, inclusive team committed to excellence in cybersecurity.

Frequently Asked Questions (FAQs) for Sr. Security Engineer (IAM) Role at Fortinet
What responsibilities does a Senior Security Engineer (IAM) at Fortinet have?

As a Senior Security Engineer (IAM) at Fortinet, you'll be responsible for driving Identity and Access Management (IAM) projects that enhance our cybersecurity posture. Your primary duties will include designing and implementing IAM solutions for Fortinet's internal workforce, collaborating with various departments to integrate these solutions, staying current with compliance regulations, and researching emerging security threats. Essentially, you'll play a vital part in ensuring secure access and identity management across the organization.

Join Rise to see the full answer
What qualifications are needed for the Senior Security Engineer (IAM) position at Fortinet?

To qualify for the Senior Security Engineer (IAM) role at Fortinet, candidates should possess over 7 years of experience in security engineering or related roles, alongside a minimum of 2 years focusing specifically on IAM. A strong understanding of identity federation, experience with IAM tools like SailPoint or Okta, knowledge of Zero Trust principles, and familiarity with cloud services like AWS or Azure are crucial. Additionally, candidates should have a background in computer and network security protocols and ideally hold a BS degree in a tech-related field.

Join Rise to see the full answer
How does the Senior Security Engineer (IAM) contribute to Fortinet's mission?

The Senior Security Engineer (IAM) at Fortinet plays a critical role in furthering our mission to protect people, devices, and data worldwide. By implementing effective identity and access management solutions, you contribute to a secure environment where organizational assets are safeguarded from unauthorized access. Your expertise in security controls and collaboration with cross-functional teams ensures Fortinet stays ahead of potential threats, reinforcing our reputation in the cybersecurity landscape.

Join Rise to see the full answer
What skills are emphasized for the Senior Security Engineer (IAM) role at Fortinet?

Key skills for a Senior Security Engineer (IAM) at Fortinet include a deep understanding of identity federation protocols like SAML and OAuth, hands-on experience with IAM technologies, and proficiency in managing and implementing security policies. Candidates will also need strong analytical skills to assess access patterns and identify potential security risks, as well as the ability to communicate effectively with both technical and non-technical stakeholders, ensuring seamless project execution.

Join Rise to see the full answer
What benefits can a Senior Security Engineer (IAM) expect at Fortinet?

At Fortinet, a Senior Security Engineer (IAM) can anticipate a comprehensive benefits package that includes competitive salary, medical, dental, vision insurance, a 401(k) plan, paid holidays, vacation time, and sick leave. Additionally, Fortinet promotes a supportive work atmosphere, encouraging professional development and continuous learning, making it a fantastic environment for career growth and personal wellness.

Join Rise to see the full answer
Common Interview Questions for Sr. Security Engineer (IAM)
Can you explain your experience with IAM technologies and how it applies to the role?

To effectively respond to this question, outline your hands-on experience with different IAM solutions, emphasizing specific technologies you've worked with like SailPoint, CyberArk, or Okta. Discuss the scope of projects you've managed, detailing your role in integrating IAM solutions in an organization. Highlight any successful outcomes, such as improvements in access control or compliance adherence, showcasing how those experiences position you as a strong candidate for the Senior Security Engineer (IAM) role at Fortinet.

Join Rise to see the full answer
How do you stay updated with the latest trends and threats in cybersecurity, particularly in IAM?

In your answer, demonstrate your commitment to continuous learning. Mention the resources you regularly consult, such as cybersecurity blogs, webinars, industry reports, and certifications. Share examples of how you’ve applied this knowledge to improve security protocols or IAM processes in your previous roles, making it clear that you prioritize staying ahead of the curve in an ever-evolving landscape.

Join Rise to see the full answer
Describe a challenging project you worked on related to identity and access management.

When prompted about challenges, choose an impactful IAM project where you faced significant obstacles. Describe the project’s objectives, the challenges you encountered—like resistance from other teams or technical roadblocks—and how you overcame them. Emphasize your problem-solving skills and collaboration with cross-functional teams to successfully implement the IAM solution, ultimately benefiting the organization.

Join Rise to see the full answer
Can you explain the concept of Zero Trust and its relevance in IAM?

Responding to this question, clarify that Zero Trust means verifying every access attempt, regardless of the user's location. Emphasize its importance in IAM by explaining how it minimizes the risk of unauthorized access, especially in today’s hybrid environments. Provide examples of how you've implemented Zero Trust principles in previous roles, such as using multi-factor authentication (MFA) or the principle of least privilege.

Join Rise to see the full answer
What experience do you have with identity governance and administration?

Discuss your familiarity with IAM tools designed for identity governance and administration, such as SailPoint or One Identity. Provide details regarding your previous responsibilities involving setting up user role management, ensuring compliance with regulatory requirements, and implementing efficient processes for managing user entitlements. Highlight any specific successes where your initiatives led to enhanced security and streamlined user access.

Join Rise to see the full answer
How do you approach evaluating new IAM technologies?

When discussing your approach, emphasize your systematic evaluation process. Describe your criteria for assessing IAM solutions, such as compatibility with existing systems, scalability, user experience, and how well they address current security needs. Provide insights into any formal methodologies you use, including proof-of-concept testing or stakeholder feedback, to make informed decisions that enhance security posture at Fortinet.

Join Rise to see the full answer
What role does communication play in your work as a Senior Security Engineer?

Communication is paramount in collaboration with technical teams and non-technical stakeholders. Explain how you tailor your communication style to fit your audience, whether it's technical documentation for IT teams or broader updates for executive leadership. Emphasize your experience in facilitating discussions around security protocols and IAM policies, ensuring transparency and maintaining alignment across teams.

Join Rise to see the full answer
Can you give an example of how you've improved IAM processes in a previous position?

Choose a specific instance where you've streamlined IAM workflows, perhaps through the automation of access requests or enhancing user provisioning processes. Detail the initial state, the improvements you implemented, and the results achieved—such as a reduction in processing time or improved security metrics. This approach will demonstrate your capability to drive efficiency and effectiveness in IAM roles.

Join Rise to see the full answer
How do you approach security incident response related to IAM?

In your response, outline your protocol for responding to IAM-related security incidents. Mention your experience in conducting incident response assessments, identifying compromised accounts, and implementing corrective actions. Highlight your collaborative nature, stressing the importance of keeping all stakeholders informed and how you analyze incidents to prevent future occurrences.

Join Rise to see the full answer
What is your experience with cloud-based IAM solutions?

Describe your practical experience with cloud IAM solutions, detailing specific services you’ve used such as AWS IAM, Azure Active Directory, or Google Cloud IAM. Discuss the projects where these tools were implemented, highlighting their benefits in terms of scalability, managing user access, and integrating with other cloud-native services. Show how your familiarity with cloud IAM technologies will help Fortinet tackle contemporary security challenges.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 5 days ago
Photo of the Rise User
Customer-Centric
Startup Mindset
Collaboration over Competition
Family Medical Leave
Maternity Leave
Paternity Leave
Flex-Friendly
Social Gatherings
Pet Friendly
Fitness Stipend
Medical Insurance
Dental Insurance
Vision Insurance
Life insurance
Disability Insurance
Learning & Development
Bias Training
Equity
Employee Resource Groups
Unlimited Vacation
Paid Time-Off
Photo of the Rise User
Posted 11 days ago
Photo of the Rise User
Posted 10 days ago
Photo of the Rise User
Posted 14 days ago
Inclusive & Diverse
Collaboration over Competition
Growth & Learning
Mission Driven
Transparent & Candid

To secure people, devices, and data everywhere.

45 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
December 20, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!