Point your AI agent at freehire and let it find you a job.

Get the CLI →

Security Engineer, IAM

NewBe an early applicant

Summary

Designs, implements, and manages Identity & Access Management (SSO, MFA, RBAC, PAM) across Talent Systems' global stack as part of Corporate IT — handling user lifecycle, access reviews, compliance (SOC 2, GDPR), and integrations with identity providers like Okta/Entra ID, SaaS apps, and cloud IAM. In-office in Los Angeles 4 days/week.

Security Engineer, IAM
Title: Security Engineer, IAM
Level: IC-2
Location: Los Angeles, CA
Work setup: In-office (4 days a week)
Department: IT
Company
Talent Systems, LLC is the leading technology solution provider for casting and auditioning to the entertainment industry. Casting directors and agents worldwide use Talent Systems’ portfolio of products to source and manage talent across film, television, commercials, theater and digital projects, powering an unparalleled, global casting software ecosystem.
We are headquartered in Los Angeles and operate in the US, Canada, UK, Australia and India. Our portfolio brands include Casting Networks, Spotlight, Cast It Systems, Cast It Talent, Casting Frontier, Staff Me Up, Cast It Reach & Tagmin.
Job Description
The Security Engineer, IAM will design, implement, and manage Identity and Access Management systems across Talent Systems' global technology stack. This role sits within the Corporate IT team and is critical to ensuring that the right people have the right access to the right resources and that unauthorized access is proactively detected and prevented. You will work cross-functionally with Engineering, Product, Security, and HR teams to build scalable, secure, and compliance-aligned identity infrastructure that supports our global platforms and workforce.

Responsibilities

  • 4+ years of hands-on experience in IAM engineering, identity security, or a closely related field
  • Proficiency with IAM protocols: SAML, OAuth 2.0, OpenID Connect, LDAP, SCIM
  • Experience administering an enterprise identity provider (e.g., Okta, Azure AD / Entra ID, Google Workspace Identity, or equivalent)
  • Solid understanding of RBAC, least-privilege, and zero-trust principles
  • Familiarity with compliance frameworks including SOC 2 Type II, GDPR, and ISO 27001
  • Excellent written and verbal communication skills; able to explain complex identity concepts to non-technical stakeholders
  • Preferred: Experience with Privileged Access Management (PAM) tools (e.g., CyberArk, BeyondTrust, HashiCorp Vault)
  • Preferred: Demonstrated ability to script and automate IAM workflows using Python, PowerShell, Bash, or similar
  • Preferred: Hands-on experience with cloud IAM (AWS IAM, GCP IAM, or Azure RBAC)
  • Preferred: Background in SaaS or multi-tenant platform environments with complex user hierarchy management
  • Preferred: Exposure to entertainment, media, or marketplace platform security
  • Preferred: Experience working in a globally distributed team across multiple time zones

Requirements

IAM Architecture & Engineering
  • Design, deploy, and maintain IAM solutions including SSO, MFA, RBAC, and PAM across cloud and on-premise environments
  • Architect and manage identity federation using protocols such as SAML, OAuth 2.0, and OpenID Connect
  • Build and maintain lifecycle management processes for user provisioning, de-provisioning, and access reviews
  • Integrate IAM systems with SaaS platforms (Google Workspace, Slack, GitHub, Zendesk, and others) and internal applications
  • Develop and maintain automation for access request workflows and entitlement management
Security Operations & Compliance
  • Conduct periodic access reviews and certification campaigns to ensure least-privilege principles are enforced
  • Monitor IAM systems for anomalous activity, access violations, and policy drift; respond to and remediate incidents
  • Support audit and compliance activities related to SOC 2, PCI-DSS, GDPR, and other applicable frameworks
  • Define and enforce IAM policies, standards, and procedures in alignment with industry best practices
  • Collaborate with the Information Security Office to evaluate and close identity-related vulnerabilities
Cross-Functional Collaboration
  • Partner with Engineering and DevOps teams to embed IAM controls into CI/CD pipelines and cloud infrastructure
  • Work with IT Team to align identity processes with endpoint and network security policies
  • Support onboarding, offboarding, and role-change workflows in coordination with People Operations
  • Participate in cross-functional planning to surface IAM-related risks, roadmap items, and quarterly priorities

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available