CybersecurityJobs.io
← Back to all jobs

Job Description

Moody’s Identity Engineering team is seeking a Senior Cybersecurity Engineer focused on Identity and Access Management (IDAM) to support workforce identity programs across enterprise and regulated environments. In this onsite role in Charlotte, NC, you will own end-to-end engineering, configuration, operations, and audit evidence spanning Moody’s Okta and Microsoft Entra ID ecosystems.

This position emphasizes secure authentication, identity lifecycle automation, and governance that holds up during SOX and FedRAMP audits, while partnering with Cybersecurity Governance and Audit stakeholders to produce audit-ready documentation.

What you’ll do

  • Own end-to-end engineering, configuration, and administration of Moody’s workforce identities in Okta tenants, including FedRAMP workforce, non-production, and Customer Identity and Access Management tenants, applying established standards and requirements
  • Design and maintain Single Sign-On and application integrations using SAML, OIDC, and SCIM
  • Engineer authentication and multi-factor authentication policy to enforce a phishing-resistant assurance level
  • Own identity lifecycle workflows (joiner, mover, leaver) and provisioning automation, including Okta Workflows
  • Monitor and respond to identity risk signals and threats
  • Design and administer groups, custom admin roles, and least-privilege access models
  • Produce and maintain SOX and FedRAMP audit evidence, working with Cybersecurity Governance and Audit teams
  • Provide engineering coverage for Microsoft Entra ID, including Conditional Access policy design and hybrid identity management configuration
  • Support hybrid identity operations and coordinate with the Entra/Active Directory engineering owner for shared administrative responsibilities under the team’s admin-ownership model

What you bring

  • 3+ years of hands-on access management engineering experience, including workforce identity configuration, administration, and lifecycle management (Okta preferred)
  • Strong depth in Identity and Access Management and SSO/app integration patterns, including SAML, OIDC, and SCIM
  • Hands-on experience engineering authentication and multi-factor authentication policy using phishing-resistant methods
  • Experience operating identity lifecycle and provisioning automation workflows
  • Experience in regulated, audited environments (SOX/ITGC, FedRAMP, or equivalent), including producing audit evidence and control documentation
  • Working knowledge of identity governance concepts such as access requests, certifications, and separation of duties (Okta Identity Governance preferred)
  • Familiarity with Microsoft Entra ID administration, including Conditional Access policy engineering and hybrid identity management (preferred)
  • Strong written communication skills to produce audit-ready documentation and evidence packages
  • Ability to independently drive end-to-end engineering from requirements through operational support
  • Demonstrated proficiency in artificial intelligence concepts, with hands-on experience using AI tools to streamline workflows and improve operational efficiency, along with growing awareness of AI risk management and a commitment to responsible, ethical AI use

Tools and technologies

  • Okta, SAML, OIDC, SCIM, multi-factor authentication, Okta Workflows
  • SOX, ITGC, FedRAMP
  • Microsoft Entra ID, Conditional Access, Active Directory

Compensation and location

  • Location: Charlotte, NC (onsite)
  • Salary: USD 116,500 - 192,300 per year

Benefits

  • Eligible for incentive compensation
  • Medical, dental, vision
  • Parental leave
  • Paid time off
  • 401(k) plan with employee and company contribution opportunities
  • Life insurance, disability insurance, accident insurance
  • Discounted employee stock purchase plan
  • Tuition reimbursement

Certifications and education

  • Bachelor’s degree or equivalent qualification in Computer Science, Information Technology, Cybersecurity, Engineering, or related fields
  • Advanced technical certifications preferred, such as Okta Certified Administrator/Professional (Consultant a plus), Microsoft Certified: Identity and Access Administrator (SC-300), CISSP, or equivalent identity/security certifications
  • Prior FedRAMP or US federal identity/compliance experience preferred

About the team: The Identity Engineering team designs, builds, and operates the identity and access management platforms that secure access across Moody’s enterprise and regulated environments. The work supports phishing-resistant authentication, identity governance, and audit-ready operations within a global financial services context, including a focus on enabling secure, trusted identity foundations for innovation, automation, and responsible AI adoption.

Similar Jobs