2

Remote Identity Access Management Engineer Jobs in California

IAM Architect

Berkeley, CA · On-site +1

$280K - $310K/yr

Extend zero-trust capabilities beyond current SASE remote access to broader infrastructure ... of experience in identity and access management, security engineering, or infrastructure ...

AI IAM Architect

San Diego, CA · Remote

$153K - $255K/yr

We are seeking an experienced Identity and Access Management (IAM) Architect with a strong AI and ... The AI IAM Architect partners across AI/platform engineering, IAM, security, and enterprise ...

User Access Management Analyst

Newport Beach, CA · On-site +1

$125K/yr

This is a hybrid role, working in the office 4 days per week/1 day remote. Standard business hours ... Implement corrective actions to overcome any identified IT Security Access and Control Policy ...

Senior Backend Engineer

Palo Alto, CA · Remote

$150K - $180K/yr

... Access, Remote Privileged Access Management, and CPS Secure Remote Access Named in Forrester ... Identity & Access Security Solution in the 2024 American Business Awards Named a 25 Hottest Edge ...

Principal Solution Engineer

Los Angeles, CA · On-site +1

$120K - $240K/yr

Principal Solution Engineer Department: Technology & Software Employment Type: Full Time Location ... Identity Access Management * Working knowledge of security infrastructure is a plus. * Strong ...

next page

Showing results 1-20

Remote Identity Access Management Engineer information

What is the difference between Remote Identity Access Management Engineer vs Remote Security Analyst?

AspectRemote Identity Access Management EngineerRemote Security Analyst
Required CredentialsCertifications like CISSP, CISA, or vendor-specific IAM certificationsCertifications such as CompTIA Security+, CISSP, or GIAC Security certifications
Work EnvironmentFocus on designing, implementing, and managing identity access systemsMonitoring security threats, analyzing vulnerabilities, and incident response
Employer & Industry UsageTech companies, financial institutions, healthcare organizationsFinancial services, government agencies, large enterprises

The Remote Identity Access Management Engineer primarily focuses on managing user identities and access controls within organizations, ensuring secure authentication and authorization processes. In contrast, the Remote Security Analyst monitors and analyzes security threats to protect organizational assets. While both roles require security certifications and work in similar environments, their core responsibilities differ significantly, with the IAM Engineer specializing in identity systems and the Security Analyst in threat detection and response.

What are the most commonly searched types of Identity Access Management Engineer jobs in California? The most popular types of Identity Access Management Engineer jobs in California are:
What job categories do people searching Remote Identity Access Management Engineer jobs in California look for? The top searched job categories for Remote Identity Access Management Engineer jobs in California are:
What cities in California are hiring for Remote Identity Access Management Engineer jobs? Cities in California with the most Remote Identity Access Management Engineer job openings:
Infographic showing various Remote Identity Access Management Engineer job openings in California as of July 2026, with employment types broken down into 1% As Needed, 70% Full Time, 22% Part Time, and 7% Contract. Highlights an 96% Physical, 1% Hybrid, and 3% Remote job distribution.
Senior Identity Access Management Engineer

Senior Identity Access Management Engineer

Roku

San Jose, CA • Remote

$158K - $279K/yr

Other

Medical, Life, PTO

Posted 11 days ago


Job description

About role

Roku is seeking a senior-level Identity Engineer to enhance its Zero-Trust architecture, drive standardization initiatives, and optimize its Microsoft-centric identity platform for a geographically distributed workforce. The ideal candidate has hands-on experience in identity and access management (IAM) and securing cloud environments within the Microsoft ecosystem, with deep expertise in Azure Entra ID. Equally important is a strong automation mindset-designing, scripting, and building repeatable workflows. The role also requires the ability to communicate complex technical concepts clearly to both technical and non-technical audiences. 

For California Only - The estimated annual salary for this position is between $158,000 - $279,000 annually.  Compensation packages are based on factors unique to each candidate, including but not limited to skill set, certifications, and specific geographical location. This role is eligible for health insurance, equity awards, life insurance, disability benefits, parental leave, wellness benefits, and paid time off.

What you'll be doing
  • Lead enterprise-wide IAM standardization, including identity lifecycle, access governance, and policy enforcement across global regions.
  • Drive automation across IAM to streamline administration and deliver a smoother user experience.
  • Support enterprise applications onboarding into Azure Entra ID, including SSO, Conditional Access, and role-based access control (RBAC).
  • Enhance privileged access management and implement scalable monitoring, alerting, and auditability solutions to support a secure, geographically distributed workforce.
  • Collaborate with IT, Networking, and Security teams to troubleshoot identity-related issues and support global infrastructure initiatives.
  • Advance Zero Trust Identity Fabric principles like continuous verification, least-privilege access, and identity-aware policy enforcement across users, devices, workloads, and non-human identities.
  • Build identity automation with a DevOps mindset, writing scripts, developing pipelines, and engineering tooling from scratch rather than just configuring them.
We're excited if you have
  • 8+ years of hands-on experience with identity and access management and automating cloud technologies, particularly within the Microsoft ecosystem.
  • Strong analytical skills and attention to detail, with the ability to troubleshoot complex infrastructure and identity-related issues.
  • Excellent communication skills, with the ability to clearly explain technical concepts to both technical and non-technical stakeholders.
  • Deep experience with Microsoft Entra ID, including Conditional Access, Identity Governance, and Privileged Identity Management.
  • Familiarity with Microsoft 365 services: Exchange Online, Defender, Purview, Sentinel, Intune, and related platforms.
  • Automation and scripting skills using PowerShell, Azure CLI, and Microsoft Graph API; working knowledge of Azure services such as Function Apps and Logic Apps.
  • Experience in onboarding and managing enterprise applications in Azure Entra ID.
  • Advanced knowledge of Azure Single Sign-On (SSO) login methods, including OAuth2, OpenID Connect, and SAML, and their integration with enterprise applications.
  • Knowledge of privileged access tools (Azure PIM, CyberArk, etc), secrets management (HashiCorp or Azure Key Vault), and workload identity patterns SPIFEE & SPIRE.
  • Familiarity with NHI governance concepts for service accounts and AI agents, and exposure to OPA / Rego or similar policy-as-code frameworks.
  • Good to have familiarity with Microsoft Purview for DLP and data classification.
  • Strong understanding of multi-factor authentication and FIDO2.
  • Familiarity with IT security frameworks and compliance standards.
  • Knowledge of logging, monitoring, and alerting practices for identity and access events.
  • Basic understanding of email security and DNS.
  • Experience with backup and recovery strategies for identity-related services.
  • Understanding of Zero Trust Architecture principles.
  • Familiarity with Jira and Confluence.
  • B.S. in Computer Science, Information Technology, Engineering, or equivalent experience. 
#LI-RN1