Back to previous page
Security Engineer
Cybersecurity
Chicago, IL, 60606
Contract
Ref.: 143392
Job Summary
Our client, a major U.S. airline, is looking for an IAM Security Engineer to join their Cybersecurity and Digital Risk team, focused on workforce identity. It's a 21 week contract, fully remote within the U.S., with no travel. This person will integrate applications with the company's enterprise identity platforms, configuring SSO and MFA using OIDC, SAML, and OAuth, and building Microsoft Entra conditional access policies. They'll migrate applications between identity platforms, write scripts to automate onboarding of apps and users, implement designs from IAM architects, and support integrations after they go live. We're looking for someone who has personally configured and troubleshot SAML or OIDC application integrations and built conditional access policies in Entra, which is the key differentiator for this role. Experience limited to user provisioning, access requests, MFA resets, identity governance, or GRC work, or network security experience without hands-on application integration, is not a fit.
This position is W-2 only. We do not work with third-party firms or C2C arrangements for this role.
Core Responsibilities
Required Skills/Experience (Must-Haves)
Preferred Skills/Experience (Nice-to-Haves)
Key Competencies and Behaviors
Work Environment
Compensation & Benefits
About KellyMitchell
At KellyMitchell, our culture is world class. We’re movers and shakers! We don’t mind a bit of friendly competition, and we reward hard work with unlimited potential for growth. This is an exciting opportunity to join a company known for innovative solutions and unsurpassed customer service. We're passionate about helping companies solve their biggest IT staffing & project solutions challenges. As an employee-owned, women-led organization serving Fortune 500 companies nationwide, we deliver expert service at a moment's notice.
Marketing Disclosure
By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from KellyMitchell and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at https://www.careers.kellymitchell.com/privacy-policy
[143392]
Our client, a major U.S. airline, is looking for an IAM Security Engineer to join their Cybersecurity and Digital Risk team, focused on workforce identity. It's a 21 week contract, fully remote within the U.S., with no travel. This person will integrate applications with the company's enterprise identity platforms, configuring SSO and MFA using OIDC, SAML, and OAuth, and building Microsoft Entra conditional access policies. They'll migrate applications between identity platforms, write scripts to automate onboarding of apps and users, implement designs from IAM architects, and support integrations after they go live. We're looking for someone who has personally configured and troubleshot SAML or OIDC application integrations and built conditional access policies in Entra, which is the key differentiator for this role. Experience limited to user provisioning, access requests, MFA resets, identity governance, or GRC work, or network security experience without hands-on application integration, is not a fit.
This position is W-2 only. We do not work with third-party firms or C2C arrangements for this role.
Core Responsibilities
- Configure authentication for applications using OIDC, SAML, and OAuth
- Enable SSO and MFA for new and existing applications
- Build and maintain Microsoft Entra conditional access policies
- Migrate applications between identity platforms and providers
- Develop scripts and automation to onboard applications and users to identity platforms
- Implement IAM designs and requirements provided by architects and analysts
- Partner with development teams as the IAM point of contact for new application integrations
- Troubleshoot and support existing IAM integrations and processes
- Document IAM procedures and communicate security requirements to users and teams
Required Skills/Experience (Must-Haves)
- Bachelor's degree or equivalent work experience
- 5+ years of experience in identity and access management or security engineering
- Hands-on experience configuring application authentication using SAML, OIDC, and OAuth
- Hands-on experience building Microsoft Entra (Azure AD) conditional access policies
- Experience enabling SSO and MFA for enterprise applications
- Experience migrating applications between identity platforms or providers
- Experience writing scripts to automate IAM tasks, such as Python, PowerShell, Java, or JavaScript
- Experience troubleshooting failed authentication and SSO issues
- Working knowledge of Microsoft Active Directory
- Located in the U.S.
Preferred Skills/Experience (Nice-to-Haves)
- Duo MFA experience
- Oracle Access Manager experience
- Microsoft Entra application proxy experience
- Experience with other identity platforms such as Okta, Ping, ADFS, or SiteMinder
- Microsoft Graph API experience
- CISSP certification
- Azure or Microsoft identity certifications, such as SC-300 or AZ-500
- Experience in a large enterprise with a large application portfolio
Key Competencies and Behaviors
- Hands-on engineer who builds and configures integrations directly
- Works independently and takes ownership of problems through resolution
- Strong troubleshooting skills across authentication flows and identity platforms
- Follows through on designs from architects with attention to detail
- Communicates clearly with developers, architects, analysts, and end users
- Comfortable mentoring less experienced peers when needed
Work Environment
- Location: Fully remote within the U.S., no travel
- Contract runs for 21 weeks
- Interview process includes two rounds
Compensation & Benefits
- Pay Range: The approximate pay range for this position is between $49.00 and $70.00 per hour. Please note that the pay range provided is a good faith estimate. Final compensation may vary based on factors including but not limited to background, knowledge, skills, and location. We comply with local wage minimums.
- Medical, Dental, & Vision Insurance Plans
- Employee-Owned Profit Sharing (ESOP)
- 401K offered
About KellyMitchell
At KellyMitchell, our culture is world class. We’re movers and shakers! We don’t mind a bit of friendly competition, and we reward hard work with unlimited potential for growth. This is an exciting opportunity to join a company known for innovative solutions and unsurpassed customer service. We're passionate about helping companies solve their biggest IT staffing & project solutions challenges. As an employee-owned, women-led organization serving Fortune 500 companies nationwide, we deliver expert service at a moment's notice.
Marketing Disclosure
By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from KellyMitchell and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy at https://www.careers.kellymitchell.com/privacy-policy
[143392]