Senior Identity & Access Management Systems Engineer (IAM)
Coupang
108k - 232k USD/year
Office
Seattle, USA
Full Time
We exist to wow our customers. We know we’re doing the right thing when we hear our customers say, “How did we ever live without Coupang?” Born out of an obsession to make shopping, eating, and living easier than ever, we’re collectively disrupting the multi-billion-dollar e-commerce industry from the ground up. We are one of the fastest-growing e-commerce companies that established an unparalleled reputation for being a dominant and reliable force in South Korean commerce.
We are proud to have the best of both worlds — a startup culture with the resources of a large global public company. This fuels us to continue our growth and launch new services at the speed we have been since our inception. We are all entrepreneurs surrounded by opportunities to drive new initiatives and innovations. At our core, we are bold and ambitious people that like to get our hands dirty and make a hands-on impact. At Coupang, you will see yourself, your colleagues, your team, and the company grow every day.
Our mission to build the future of commerce is real. We push the boundaries of what’s possible to solve problems and break traditional tradeoffs. Join Coupang now to create an epic experience in this always-on, high-tech, and hyper-connected world.
Role Overview:
The Identity and Access Management team is responsible for the operation of critical IAM technologies, which facilitate secure software development, secure infrastructure delivery, and compliance with regulatory commitments. We are seeking an experienced operator for our Privileged Access Management (PAM) initiatives, who will also contribute to our modern authentication ecosystem.
As a Security Engineer in Security Operations, the successful candidate will possess extensive hands-on experience in the design, implementation, and operation of PAM solutions such as Netwrix, CyberArk, or BeyondTrust. In this capacity, the individual will enhance our security posture by focusing on the control, monitoring, and auditing of access to our most sensitive systems. While PAM is the primary focus, strong proficiency in SSO, MFA, and modern identity protocols is also essential for this role.
What You Will Do:
- Lead the design, implementation, and daily operations of our enterprise-wide Privileged Access Management (PAM) solutions.
- Develop and enforce PAM policies for credential vaulting, session isolation, privileged command monitoring, and just-in-time (JIT) access.
- Integrate critical applications and infrastructure into both our PAM and SSO platforms, ensuring secure and seamless access for privileged users.
- Utilize DevOps practices and Infrastructure-as-Code (IaC) tools like Terraform and Ansible to automate the deployment and management of PAM and other IAM systems.
- Provide Tier 3 operational support for PAM, SSO, and MFA platforms, serving as the subject matter expert for troubleshooting complex privileged access issues.
- Investigate and respond to security incidents related to compromised credentials and privileged access abuse.
- Collaborate with IT, infrastructure, and security teams to drive the evolution of our Zero Trust architecture by strengthening privileged access controls and implementing principles of least privilege.
- Document PAM architecture, engineering standards, and operational procedures (SOPs) for both technical teams and end-users.
- Participate in a 24x7 on-call rotation as an L3 engineer for critical IAM and PAM systems.
- Bachelor’s degree in IT, Information Security, Computer Science, or equivalent experience
- 2+ years of hands-on experience in Identity & Access Management, with a focus on Privileged Access Management (PAM)
- Hands on experience in designing, deploying, and managing enterprise PAM solutions such as Netwrix, CyberArk, Beyond Trust, or similar platforms.
- Deep understanding of PAM concepts including privileged session management, credential vaulting and rotation, endpoint privilege management, and just-in-time (JIT) access.
- Comprehensive knowledge of modern authentication standards and technologies, including SAML, OIDC, OAuth, MFA, and JSON Web Token (JWT).
- Strong understanding of core enterprise technologies including Windows and Unix/Linux OS, databases, directory services (Active Directory, LDAP), and cloud platforms (AWS, Azure, GCP).
- Proficiency with DevOps automation/orchestration tools (Ansible, Terraform, CircleCI) and scripting/programming experience (Python, Java, JavaScript).
- Familiarity with security standards and frameworks such as NIST, ISO 27001, and their application to both privileged and standard access management.
- Experience with Identity Governance and Administration (IGA) products (SailPoint, Saviynt).
- Experience with Cloud Infrastructure Entitlement Management (CIEM) tools.
- Okta Certified Professional, Administrator, or Consultant certification.
- Hold a CISSP certificate.
- Medical/Dental/Vision/Life, AD&D insurance
- Flexible Spending Accounts (FSA) & Health Savings Account (HSA)
- Long-term/Short-term Disability
- Employee Assistance Program (EAP) program
- 401K Plan with Company Match
- 18-21 days of the Paid Time Off (PTO) a year based on the tenure
- 12 Paid Holidays
- XX weeks of Paid Parental leave
- Pre-tax commuter benefits
- MTV - [Free] Electric Car Charging Station
Senior Identity & Access Management Systems Engineer (IAM)
Office
Seattle, USA
Full Time
108k - 232k USD/year
September 5, 2025