
Principal IT Production Engineer - Identity & Access Management (IAM)
- Seattle, WA
- $134,505-170,494 per year
- Permanent
- Full-time
- Work with the Identity Architect to implement strong Identity Management processes.
- Collaborate effectively with the other Principal Engineers to assure a robust IAM environment while also looking to the future to improve workflows and systems where needed.
- Keep up with the ever-changing IAM landscape by tracking all changes to the technologies in use as well as the security ramifications involved.
- Implement technology roadmaps.
- Troubleshoot complex system issues and coordinate progress with customers and stakeholders, while collaborating with vendors, and KCIT cross-functional teams.
- Create standard operating procedures, establish processes, and documentation, maintain services, write automation scripts, and implement work tasks.
- Collaborate with vendors, colleagues and business partners to design and implement solutions and enhance services that meet business requirements.
- Drive automation and best practices to improve consistency and customer experience.
- Establish and support system documentation and cross-train team members on technical systems.
- Act as technical lead for application projects, overseeing KCIT technical requirements for systems while coordinating and collaborating with customers, stakeholders, vendors and KCIT cross-functional teams.
- Lead change management, conceptual design review, architectural review, and risk mitigation processes as the owner, ownership of project-based technology aspects.
- Utilize organizational and time management skills while balancing multiple ongoing projects and system maintenance.
- Continuously learn about and apply knowledge on technologies and systems being utilized within KCIT.
- Possess a minimum of five (5) years of professional experience in Information Technology, with demonstrated expertise in IAM systems, protocols, and operational support or a combination of education and experience that meets the requirements.
- Expert level knowledge on the inter-workings of Active Directory and Entra ID.
- Thorough understanding of Public Key Infrastructure, Certificate Management and HSMs.
- Background in managing Enterprise Applications and Registrations.
- Good working knowledge of Privileged Access\Identity Management.
- Expert level knowledge of DNS and DHCP.
- Full understanding of Modern authentication, particularly related to Azure (SSO, Tokens, MFA, API permissions, etc.)
- Full understanding of Group and Identity lifecycle management.
- Experience with AD Connect, Cloud Sync, and Access Reviews.
- MIM experience required.
- Azure Arc, Defender XDR, MS Graph, and KQL experience for auditing and troubleshooting Identity issues.
- Intune and SCCM Device Management and Compliance Policies.
- Solid understating of networking concepts, Border segments, Trusts, and Policies.
- Application proxy competency.
- History with Guest access and B2C a plus.
- Technical certifications related to information security, risk or compliance, information technology such as network, server, database, cloud infrastructure or engineering, project management methodologies, leadership or other relevant certifications.
- Excellent medical, dental, and vision coverage options: King County provides eligible employees with options, so they can decide what's best for themselves and their eligible dependents
- Life and disability insurance: employees are provided basic coverage and given the opportunity to purchase additional insurance for both the employee and eligible dependents
- Retirement: eligible King County employees may participate in a pension plan through the Washington State Department of Retirement Systems and a 457(b) deferred-compensation plan
- Transportation program and ORCA transit pass
- 12 paid holidays each year plus two personal holidays
- Generous vacation and paid sick leave
- Paid parental, family and medical, and volunteer leaves
- Flexible Spending Account
- Wellness programs
- Onsite activity centers
- Employee Giving Program
- Employee assistance programs
- Flexible schedules and telecommuting options, depending on position
- Training and career development programs