This is a hybrid role; only local candidates will be considered. The Senior IAM (Identity and Access Management) Engineer will support the Texas Department of Public Safety (TxDPS). This role manages the agency's enterprise IAM ecosystem, including the design and implementation of a centralized identity provider framework using SAML 2.0 and OIDC for single sign-on (SSO) and multi-factor authentication (MFA). The engineer will develop lifecycle workflows, onboard applications through REST APIs, and establish Role-Based Access Control (RBAC). The role also supports Identity Governance and Administration (IGA), Access Management, and Privileged Access Services, including the deployment and ongoing maintenance of a privileged access management solution. The engineer will collaborate with security and IT teams to maintain consistent IAM practices across the agency. Responsibilities Design and implement a centralized identity provider framework using SAML 2.0 and OIDC to support SSO and MFA. Develop identity lifecycle workflows and automate user provisioning and reporting using PowerShell and Python. Onboard and integrate business applications with IAM systems through REST APIs. Establish RBAC models, enforce separation of duties, and design access certification campaigns. Integrate IAM solutions across platforms and support IGA, Access Management, and Privileged Access Services. Deploy a privileged access management solution featuring secure credential vaulting, automated password rotation, and just-in-time provisioning. Perform long-term system maintenance, including performance tuning and troubleshooting provisioning errors and connection failures. Collaborate with security and IT teams to maintain consistent IAM practices. Assess IAM technologies regularly and maintain technical documentation. Provide support for Directory and IAM services, servers, and databases. Requirements Minimum Qualifications 8 years of experience in IAM platform governance, engineering, lifecycle automation, and scripting. 8 years of experience in application onboarding and integrating business applications with IAM systems. 5 years of experience designing and implementing RBAC models, enforcing separation of duties, and designing certification campaigns. 5 years of experience managing a centralized identity provider and configuring SSO and MFA. 3 years of experience with SailPoint Identity Security Cloud. 3 years of experience implementing user access reviews with SailPoint Identity Security Cloud. 3 years of experience integrating applications with SailPoint Identity Security Cloud. 3 years of experience using Privileged Access Management. 3 years of experience automating user provisioning and reporting using PowerShell and Python. Preferred Qualifications 2 years of experience working with a state government agency. Additional Requirements Candidates must currently live within 50 miles of the Austin, Texas work location. Work outside normal business hours, including weekends, evenings, and holidays, may be required as requested. Work Location and Schedule Location: 5805 N. Lamar Blvd, Austin, TX 78752. Schedule: Monday through Friday, 8:00 AM to 5:00 PM, excluding State holidays. Work Arrangement: Hybrid (on-site and telework).

Air InfoSec is an Austin, Texas based cybersecurity consulting and staffing firm specialized in pairing military veterans, veteran spouses, and transitioning service members with government agency employment opportunities. Air InfoSec can identify and deliver process improvements and meaningful savings within cybersecurity. We often look for talented individuals to join our team on a remote basis. If you are interested or would like additional information, please contact us.