Please mention DailyRemote when applying
Match your resume skills with our AI powered skill match!
The Lead Identity Security Engineer designs and governs enterprise identity and access management solutions aligned with Zero Trust principles and Microsoft security architectures. This role partners with cross-functional teams to implement scalable identity services and robust threat detection capabilities across hybrid environments.
The Senior Identity Security Engineer is responsible for designing, implementing, and governing enterprise identity and access management capabilities aligned with cybersecurity risk management objectives, the Microsoft Cybersecurity Reference Architecture (MCRA), and Zero Trust principles. The role serves as a senior technical authority for identity security across on-premises, cloud, and hybrid environments, with an initial focus on Microsoft Entra ID and Active Directory. It defines how authentication, authorization, privileged access, identity governance, and identity threat detection capabilities are designed and secured. It partners with Identity Administration, Cybersecurity Operations, infrastructure, application, governance, compliance, and business teams to establish scalable identity services that protect S&C and customer information while supporting reliable business operations.
Hours
Compensation
At S&C, we are dedicated to providing competitive and equitable compensation for all our team members, and we are committed to transparency in our pay practices. The estimated annual base salary range for this position is $128,090 - $169,716.60 Individual pay within this salary range is determined by several compensable factors, including performance, knowledge, job-related skills and experience, and relevant education or training. This role is also eligible for S&C’s annual incentive plan (AIP), subject to eligibility criteria.
Join Our Team as a Lead Identity Security Engineer
Essential Functions:
Identity Strategy, Architecture, and Standards:
Define and maintain the identity security strategy, reference architectures, technical standards, and roadmap aligned with MCRA, Zero Trust, cybersecurity risk priorities, and business needs.
Skills, Knowledge & Experience:
6 to 10 years of progressive experience in identity and access management, identity security engineering, security engineering, or a closely related discipline.
Demonstrated experience serving as a senior technical lead for enterprise identity initiatives, including hands-on delivery in complex Microsoft identity environments
Deep knowledge of identity security architecture and engineering across Microsoft Entra ID, Active Directory, and hybrid identity environments.
Advanced experience with MFA, SSO, federation, Conditional Access, PIM/PAM, RBAC/ABAC, identity lifecycle governance, access reviews, and least-privilege design.
Demonstrated ability to design enterprise identity controls while preserving clear boundaries between architecture and governance, platform administration, and security monitoring.
Experience engineering identity security telemetry and detection capabilities, including Entra ID and Active Directory logging, Microsoft Defender for Identity, Microsoft Sentinel or comparable SIEM, SOAR automation, and identity analytics.
Strong understanding of identity attack paths and common threats, including credential theft, token abuse, privilege escalation, lateral movement, legacy authentication, excessive privilege, and persistence through identity systems.
Proficiency with automation and integration technologies such as PowerShell, Python, Microsoft Graph and other APIs, infrastructure-as-code, and structured data formats.
Ability to translate cybersecurity risk and technical complexity into clear standards, decisions, roadmaps, and executive-ready communications.
Proven ability to lead complex cross-functional initiatives, influence without direct authority, manage competing priorities, and drive issues through resolution.
High degree of discretion, integrity, attention to detail, and commitment to client service and professional excellence.
Preferred
Experience in a global, highly confidential, regulated, manufacturing, or professional-services environment.
Working knowledge of cloud security, networking, PKI and certificates, application architecture, and security operations, supported by strong analytical, troubleshooting, documentation, presentation, and stakeholder-management skills.
Education:
Required
Certifications & Licenses:
Preferred
Advanced certification in a relevant PAM, IGA, ITDR, SIEM/SOAR, or cloud platform is a plus
No fixed deadline
#LI-KD1
In 1909, S&C Electric Company transformed the delivery of safe, reliable electricity with the invention of the Liquid Power Fuse. Today, as the world faces extreme weather events and the demand for electricity grows, S&C continues to innovate and advance the electrical grid, ensuring reliable and resilient power for homes, communities, and critical infrastructure around the world.
With a diverse, global workforce and core values around integrity, safety, and quality, S&C is a trusted industry leader and top workplace that offers meaningful careers to more than 3,500 team members. As a people-first organization, S&C is committed to fostering an inclusive and collaborative workplace where team members advance their careers through robust talent-development programs and involved leadership.
S&C’s deeply rooted belief diversity fosters greater creativity, innovation, and success guides the company to advance and sustain a diverse, equitable, and inclusive workplace culture.
Retirement Benefits: 401(k) Retirement Savings and Employee Stock Ownership Plan (KSOP) offering traditional and Roth 401(k) options and an Employee Stock Ownership Plan (ESOP) component; KSOP participants can receive annual ESOP company contributions of over 11% of eligible earnings (3% Core, up to 3.5% Match, Variable Periodic).
Stop the endless job search. Our AI finds and applies to the best jobs for you.
Discover remote opportunities in Security Engineer
Answer easy questions
200,000+ jobs across 15+ categories
Get your best job matches
Only hand-screened, legit jobs
Find a remote job faster
No ads, scams, or junk
“I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!”