2

Entry Level Identity And Access Management Consultant Jobs

The Identity & Access Management Engineer will provide Identity and Access Management consulting and engineering services supporting customer identity platform configuration, integration, migration ...

Identity Access Professional

Glens Falls, NY ยท On-site

$75K - $85K/yr

The Identity Access Professional is responsible for safeguarding organizational assets by managing and overseeing IAM systems. This position ensures the right individuals have appropriate access to ...

next page

Showing results 1-20

Entry Level Identity And Access Management Consultant information

See salary details

$31.5K

$65.2K

$116.5K

How much do entry level identity and access management consultant jobs pay per year?

As of Aug 7, 2026, the average yearly pay for entry level identity and access management consultant in the United States is $65,224.00, according to ZipRecruiter salary data. Most workers in this role earn between $46,000.00 and $85,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an entry level Identity and Access Management consultant, and why are they important?

To thrive as an Entry Level Identity and Access Management Consultant, you need a foundational understanding of cybersecurity principles, identity management concepts, and a relevant degree in computer science or information technology. Familiarity with IAM tools like Okta, Microsoft Azure AD, and basic scripting or programming skills, as well as certifications such as CompTIA Security+ or Microsoft Certified: Security, Compliance, and Identity Fundamentals, are often required. Strong analytical thinking, attention to detail, and effective communication help you assess risks and collaborate with technical and non-technical stakeholders. These skills ensure secure access controls, regulatory compliance, and the protection of organizational data.

What are some common challenges faced by entry level Identity and Access Management consultants, and how can they be overcome?

Entry Level IAM Consultants often face challenges such as quickly learning diverse IAM tools, understanding complex organizational policies, and managing evolving security requirements. Collaboration with cross-functional teams is essential, as IAM solutions impact IT, HR, and compliance departments. To overcome these challenges, new consultants should seek mentorship from experienced colleagues, actively participate in training sessions, and stay updated on industry best practices. Effective communication and a willingness to ask questions can also help build confidence and foster successful project outcomes.

What does an entry level Identity and Access Management consultant do?

An Entry Level Identity and Access Management (IAM) Consultant assists organizations in implementing and maintaining systems that control user access to digital resources. Their responsibilities typically include managing user accounts, setting up permissions, ensuring secure authentication, and helping to enforce compliance with security policies. They work with IT teams to troubleshoot access issues, support onboarding or offboarding processes, and may help with the deployment of IAM tools and technologies. As entry-level professionals, they often receive training and mentorship while gaining experience in cybersecurity best practices.
What cities are hiring for Entry Level Identity And Access Management Consultant jobs? Cities with the most Entry Level Identity And Access Management Consultant job openings:
What are the most commonly searched types of Identity And Access Management Consultant jobs? The most popular types of Identity And Access Management Consultant jobs are:
What states have the most Entry Level Identity And Access Management Consultant jobs? States with the most job openings for Entry Level Identity And Access Management Consultant jobs include:

IAM (Identity Access Management)

Wise Skulls

Plano, TX โ€ข On-site

Contractor

Posted 14 days ago


Job description

Title: IAM (Identity Access Management)
Location: Plano, TX OR Bethpage, NY (Hybrid)
Duration: 6+ months
Implementation Partner: Infosys
End Client: To be disclosed
JD
  • Need Customer Identity Engineers with experience migrating legacy customer-facing applications and custom identity databases to a centralized CIAM platform using Auth0 by Okta.
  • The Identity & Access Management Engineer will provide Identity and Access Management consulting and engineering services supporting customer identity platform configuration, integration, migration, and authentication modernization initiatives.

Responsibilities:
  • IDP Platform Administration & Configuration
  • Administer and configure the enterprise IDP tenant day-to-day: application integrations (OIDC, SAML), sign-on policies, MFA enrollment policies, network zones, and trusted origins.
  • Build and maintain Customer IDP schema - custom attributes, group rules, attribute mappings, and user profile transformations that support accurate identity data across all integrated systems.
  • Design and implement IDP Lifecycle Management configurations for automated provisioning and de-provisioning via SCIM 2.0 and Workflows, covering Joiner / Mover / Leaver events.
  • Develop and maintain workflows (no-code/low-code) and Event Hooks for automated identity orchestration, exception routing, and audit logging.
  • Manage IDP authorization servers: custom scopes, claims, access policies, and token lifetime configurations aligned to application security requirements.
  • Monitor platform health via system logs and integrated SIEM tooling; triage alerts, identify anomalies, and escalate or remediate per runbook.
  • Create and maintain platform operational documentation along with providing customer facing support teams tools, job aids and runbooks.
  • Authentication Modernization & Application Migration.
  • Execute the migration of applications from legacy authentication mechanisms to customer IDP SSO, working from migration playbooks defined by the IAM Manager and adapting them to eachapplication' s specific stack and constraints.
  • Perform OIDC and SAML application registrations in IDP: configure redirect URIs, response types, grant types, initiated login URIs, and post-logout behavior.
  • Test end-to-end authentication and authorization flows in development, staging, and production environments; document results and coordinate with application teams to resolve gaps before go-live.
  • Support the enablement of passwordless and phishing-resistant authentication.
  • Maintain the migration tracker and contribute status updates for leadership reporting on the application portfolio onboarding roadmap.
  • Application Team Enablement & Technical Support
  • Serve as a first-line technical advisor for application development teams integrating with IDP -answering questions on SDK selection, token design, scope modeling, and session management in office hours and async channels.
  • Write and maintain integration guides, code samples, and reference implementations (JavaScript, Java, Python, or Go) to help application teams onboard with minimal friction.
  • Diagnose and resolve complex authentication failures, token validation errors, and SCIM provisioning issues by reviewing system logs, HAR files, and application-side logs.
  • Participate in architecture reviews for new application integrations, flagging identity anti-patterns and recommending standards-compliant alternatives.
  • Contribute to the IAM community of practice: share knowledge through documentation, recorded demos, and team enablement sessions.
  • Security, Compliance & Identity Operations
  • Implement and validate authentication policy controls: step-up MFA triggers, adaptive access rules, session expiration, and assurance-level requirements aligned to data sensitivity classifications.
  • Support access certification campaigns by producing accurate user-application access reports from IDP data and coordinating with application owners on remediation.
  • Contribute to audit evidence collection for SOX, SOC 2, PCI-DSS, and privacy-related IAM controls; maintain accurate configuration documentation as a control artifact.
  • Participate in IAM incident response: diagnose authentication outages, credential compromise events, or misconfiguration issues; execute runbook remediation steps and contribute to post-incident reviews.
  • Apply and track IDP configuration hygiene: unused apps, dormant users, overly permissive policies, and API token rotation - following the team's security baseline standards.
  • Tooling, Automation & Continuous Improvement
  • Build and maintain automation scripts and Infrastructure-as-Code (IaC) configurations for repeatable configuration management using Terraform or equivalent.
  • Contribute to the IAM team's CI/CD pipeline for configuration deployments: write tests for policy changes, peer-review pull requests, and promote changes through dev/stage/prod environments.
  • Identify operational toil and propose automation or tooling improvements to reduce manual work for the team and for application teams onboarding to IDP.
  • Evaluate new IDP features and Identity Engine capabilities; prepare proof-of-concept implementations and recommendations for the Manager to consider for roadmap inclusion.

Qualifications Required
  • 3+ years of experience in Identity and Access Management, IT security, or a closely related technical discipline with hands-on platform administration responsibilities.
  • Demonstrated, hands-on experience administering customer IDP's in a production environment: application integrations, sign-on policies, MFA, Universal Directory, and Lifecycle Management.
  • Working knowledge of identity protocols and standards: OAuth 2.0, OpenID Connect (OIDC), SAML 2.0, and SCIM 2.0 - able to read and interpret protocol flows, tokens, and assertions.
  • Experience troubleshooting authentication and provisioning issues end-to-end using system logs, browser developer tools, and HAR file analysis.
  • Ability to read and write code in at least one modern language (JavaScript/Node.js, Python, Java, or Go) sufficient to build integrations, automation scripts, and code samples.
  • Comfortable working directly with application development teams in a consulting or enablement capacity - able to explain IAM concepts clearly to non-IAM engineers.
  • Familiarity with private cloud and cloud platforms (AWS, Azure, or GCP) and how identity integrates with cloud-native services (e.g., API Gateway authorizers, managed identity, cloud IAM roles).

Preferred
  • Certifications in customer identity platforms. (or willingness to obtain within 6 months of hire).
  • Experience with workflows for no-code/low-code identity orchestration.
  • Hands-on experience with FIDO2/WebAuthn or phishing resistant enrollments and policy configuration.
  • Experience managing IDP configuration as code using Terraform or similar IaC tools.
  • Familiarity with CIAM-specific patterns: progressive profiling, social login (Google, Apple, Facebook), consent and preference management, and customer-facing MFA enrollment UX.
  • Exposure to SIEM integration for identity telemetry, and experience writing alert logic or dashboards for IAM signals.
  • Understanding of Zero Trust principles and practical experience implementing device trust or continuous access evaluation policies.
  • Bachelor' s degree in Computer Science, Information Systems, Cybersecurity, or a related field; equivalent experience considered.