Share this Job

IT Security Engineer Senior, IAM & PAM | Hybrid

Job Level:  Professional

Minneapolis, MN, US, 55416-1297

Due Date:  ASAP
Area of Expertise:  IT & Tech Engineering
Unit:  Allianz Technology
Job Type:  Full-Time
Remote Job:  Not applicable
Employment Type:  Permanent
ID:  2424


What you do:

The Allianz Technology of America (ATA) drives North America IAM-PAM services through the Security Operations team. ATA IAM team works closely with its global Identity and Access Management (GIAM) & global privileged access management (GPAM) team out of Allianz Group, SE as a global service provider to Allianz entities and vendors.


The role of the PAM senior security engineer takes part in the continuous development process of the Allianz-operated global and regional solutions following Allianz policy guidelines. This role is part of the ATA IAM-PAM team, which uses the Quest One Identity Manager and CyberArk Privileged Management tools. The senior security engineer takes part in the continuous development process of the IAM and PAM services. This role evaluates the requirements as given in the assigned projects; estimates the effort needed and works on his assigned tasks during his/her assignment duration. This role stays in close contact with the global security operations team as well as with the IAM and PAM architects.

  • Responsible for setting up technical solutions regarding IAM & PAM services. Works in close alignment with the IAM architect and software developers when defining service offerings and changes and consults them from a technical and operational perspective.
  • Regular alignment with key stakeholders and customers regarding their requirements
  • Development of a new PAM Connector using CyberArk platform and processes for provisioning of access rights to various services
  • Build of IAM-PAM solutions (both services and infrastructure set-ups)
  • Collaborating with the ATA India IAM operations team
  • The role is part of the Security operations team which provides day-to-day support in Creating ID/Modifying ID/Grant Access/Revoke Access /Adding Roles/Deletion of roles/Resets in Active Directory or/and IAM Solution Platforms.
  • The role will be part of the ServiceNow ticket group to perform granting access to AD group, shared services roles, and applications.
  • Access provisioning/de-provisioning IDs in IAM tools/Systems and Local servers while co-ordination with Wintel and offshore support teams.
  • The role may assign a task to provide Admin access, unlock accounts, reset passwords, and Remote access to workstations.
  • Last Level Support for the ATA-operated IAM solution.


What you bring:

  • Candidates must be in commutable distance to these locations to be considered: Mill Valley, CA; Minneapolis, MN; Richmond, VA; Chicago, IL 
  • At least 5 years of working in the Identity and Access Management area, preferable in security engineering departments.
  • At least 3 years of working within large, preferable international operated IT environments.
  • University degree in informatics or related areas or comparable education
  • Good Know-how on IAM tools (preferred Quest One Identity Manager & CyberArk ) and Knowledge of Microsoft Active Directory.
  • Able to work effectively under pressure; organize multiple tasks and projects in an ever-changing environment
  • Effective problem solving and troubleshooting skills
  • Amongst the Allianz Competencies, Driving Change & Innovation is the most relevant


Allianz Group is one of the most trusted insurance and asset management companies in the world. Caring for our employees, their ambitions, dreams and challenges, is what makes us a unique employer. Together we can build an environment where everyone feels empowered and has the confidence to explore, to grow and to shape a better future for our customers and the world around us. We at Allianz believe in a diverse and inclusive workforce and are proud to be an equal opportunity employer. We encourage you to bring your whole self to work, no matter where you are from, what you look like, who you love or what you believe in. We therefore welcome applications regardless of ethnicity or cultural background, age, gender, nationality, religion, disability or sexual orientation.


Join us. Let's care for tomorrow.