Logo
CloudFlare

IAM Security Engineer

CloudFlare, Austin, Texas, us, 78716


About the DepartmentThe Identity and Access Management (IAM) team is dedicated to ensuring the secure and efficient management of user identities, access privileges, and authentication mechanisms across all company systems, applications, and data. Our mission is to safeguard the organization against unauthorized access, protect sensitive information, and enable seamless user experiences while adhering to industry best practices and compliance standards.About the Role

As an Identity and Access Management (IAM) Security Engineer, you will play a crucial role in designing, implementing, and managing identity and access management solutions. You will be responsible for safeguarding our systems, applications, and data by ensuring secure user access, authentication, and authorization mechanisms.A Security Engineer's work may include reviewing reports from various sources (automated scanners, employee reports, logs, etc.), managing and configuring automated tooling (Terraform, Open Policy Agent, Workers, etc.), building controls to enforce policy (two-factor authentication requirements, role-based access, etc.), and creating tools, reports, or platforms to support the team's goals.Desirable Skills, Knowledge, and ExperienceSecurity engineers take part in a wide variety of tasks and projects in the team. One individual is not expected to know everything, but a working knowledge in several of the following areas is required:Strong understanding of identity federation (SAML, OAuth, OpenID Connect, etc.)Experience with Identity and Access Management policy application and enforcementExperience designing, implementing, and managing IAM solutionsExperience working with Open Policy AgentExperience working in DevOps / DevSecOpsExperience working with configuration management tools like Terraform, Ansible, etc.Experience working with Information Technology platforms and systemsExperience with SaaS security (Google Workspace, Salesforce, Workday, Atlassian, etc.)Experience in configuration, troubleshooting, and maintenance of network security infrastructure (Web content filtering, Firewall, IDS, and DLP controls)Experience with API gateways and API securityExperience with Zero Trust securityExperience in secure configuration of cloud-based storage and data management systemsExperience with secure configuration of containerized application platforms (e.g., Kubernetes)Advanced programming experience (Python, TypeScript, Bash, etc.)CompensationCompensation may be adjusted depending on work location.For Colorado-based hires: Estimated annual salary of $168,000 - $206,000For New York City, Washington, and California (excluding Bay Area) based hires: Estimated annual salary of $187,000 - $229,000For Bay Area-based hires: Estimated annual salary of $196,000 - $240,000EquityThis role is eligible to participate in Cloudflare’s equity plan.BenefitsCloudflare offers a complete package of benefits and programs to support you and your family. Our benefits programs can help you pay health care expenses, support caregiving, build capital for the future, and make life a little easier and fun! The below is a description of our benefits for employees in the United States, and benefits may vary for employees based outside the U.S.Health & Welfare BenefitsMedical/Rx InsuranceDental InsuranceVision InsuranceFlexible Spending AccountsCommuter Spending AccountsFertility & Family Forming BenefitsOn-demand mental health support and Employee Assistance ProgramGlobal Travel Medical InsuranceFinancial BenefitsShort and Long Term Disability InsuranceLife & Accident Insurance401(k) Retirement Savings PlanEmployee Stock Participation PlanTime OffFlexible paid time off covering vacation and sick leaveLeave programs, including parental, pregnancy health, medical, and bereavement leave

#J-18808-Ljbffr