Demo

Identity and Access Management Engineer II

BioSpace
Bridgewater, NJ Full Time
POSTED ON 4/19/2026
AVAILABLE BEFORE 5/18/2026
At Insmed, every moment and every patient counts — and so does every person who joins in. As a global biopharmaceutical company dedicated to transforming the lives of patients with serious and rare diseases, you’ll be part of a community that prioritizes the human experience, celebrates curiosity, and values every person’s contributions to meaningful progress. That commitment has earned us recognition as Science magazine’s No. 1 Top Employer for five consecutive years, certification as a Great Place to Work® in the U.S., and a place on The Sunday Times Best Places to Work list in the UK.

For patients, for each other, and for the future of science, we’re in. Are you?

About The Role

The Identity and Access Management (IAM) Engineer II will be responsible for the implementation, administration, and continuous improvement of Insmed’s enterprise identity services across Active Directory, Microsoft Entra ID, and federated multi-cloud and SaaS platforms. This role ensures identity systems operate in a secure, resilient, compliant, and audit-ready state while enabling modern authentication, automated lifecycle management, and least-privilege access. The position partners closely with Cybersecurity, Infrastructure & Operations, Enterprise Applications, Computer System Validation (CSV), and Quality Assurance (QA) teams to maintain a validated identity environment that supports regulatory requirements, operational resilience, and enterprise identity modernization initiatives. This role is accountable for centralized identity, authentication, and federation across platforms.

What You'll Do

In this role, you’llhave the opportunity to be involved with identity platform administration, access & authentication services, enterprise identity federation & multi-cloud integration, cybersecurity & identity protection, and automation & continuous improvement. You will also:

  • Administer and support Active Directory Domain Services and Microsoft Entra ID, including user, group, and device identity management.
  • Manage hybrid identity synchronization using Entra ID Connect / Cloud Sync, including troubleshooting provisioning and synchronization issues.
  • Maintain directory health, replication, security configuration, and access governance controls. Implement and maintain SSO integrations using SAML, OIDC, OAuth, and LDAP.
  • Configure and manage Conditional Access, Multi-Factor Authentication (MFA), and passwordless authentication policies. Support Privileged Identity Management (PIM) and enforce least-privilege access controls.
  • Implement automated Joiner-Mover-Leaver lifecycle processes and identity governance workflows.
  • Maintain federation between Active Directory, Microsoft Entra ID, AWS, GCP, and enterprise SaaS platforms. Troubleshoot authentication, federation, and provisioning issues across hybrid environments.
  • Support identity integrations with enterprise platforms such as Workday, ServiceNow, AWS, Microsoft 365, and regulated applications.
  • Partner with Cybersecurity to codify rules & investigate identity-related alerts around suspicious authentication activity, and access anomalies. Participate in incident response activities related to credential compromise or privileged access misuse. Implement identity security controls aligned with Zero Trust principles and enterprise security standards.
  • Develop, maintain, and test identity platform disaster recovery (DR) and business continuity procedures. Validate backup, restore, and failover capabilities for directory services.
  • Develop and maintain automation using PowerShell, Microsoft Graph, or scripting to reduce manual provisioning and touchpoints.


Who You Are

You have a minimumof Bachelor’s degree in Information Technology, Computer Science, or related discipline as well as 5 years of experience supporting enterprise Identity & Access Management or Directory Services.

You Are Or You Have

  • Strong hands-on experience with Active Directory (users, groups, GPOs, trusts, replication, and security administration).
  • Hands-on experience with Microsoft Entra ID administration and hybrid identity design.
  • Experience implementing SSO, MFA, Conditional Access, and identity lifecycle automation.
  • Working knowledge of authentication and federation protocols (SAML, OAuth, OIDC, LDAP).
  • Experience maintaining hybrid identity environments using Entra Connect or Cloud Sync.
  • Hands-on experience supporting identity federation across AD, Entra ID, AWS, and GCP.
  • Experience supporting identity security operations, incident response, or resilience planning.


Nice to have (but notrequired)

  • Experience across Okta and Microsoft Entra ID.
  • Experience in Life Sciences, Pharmaceutical, or other GxP-regulated environments.
  • Familiarity with Microsoft 365 security and compliance capabilities.
  • Experience automating identity workflows using PowerShell or Microsoft Graph API.
  • Microsoft certifications such as: Identity and Access Administrator Associate, Azure Administrator Associate, and/or Windows Server / Active Directory.


WhereYou’llWork

This is a hybrid role based out of ourBridgewater, NJoffice.You’llhave theoptiontowork remotely most of the time, with in-person collaborationwhen it matters most.

Travel Requirements

  • Minimal travel expected.


#hybrid

Pay Range

Life at Insmed

At Insmed, you’ll find a culture as human as our mission—intentionally designed for the people behind it. You deserve a workplace that reflects the same care you bring to your work each day, with support for how you work, how you grow, and how you show up for patients, your team, and yourself.

Highlights Of Our U.S. Offerings Include

  • Comprehensive medical, dental, and vision coverage and mental health support, annual wellbeing reimbursement, and access to our Employee Assistance Program (EAP)
  • Generous paid time off policies, fertility and family-forming benefits, caregiver support, and flexible work schedules with purposeful in-person collaboration
  • 401(k) plan with a competitive company match, annual equity awards, and participation in our Employee Stock Purchase Plan (ESPP), and company-paid life and disability insurance
  • Company Learning Institute providing access to LinkedIn Learning, skill building workshops, leadership programs, mentorship connections, and networking opportunities
  • Employee resource groups, service and recognition programs, and meaningful opportunities to connect, volunteer, and give back


Eligibility for specific programs may vary and is subject to the terms and conditions of each plan. 

Current Insmed Employees: Please apply via the Jobs Hub in Workday.

Insmed Incorporated is an Equal Opportunity employer. We do not discriminate in hiring on the basis of physical or mental disability, protected veteran status, or any other characteristic protected by federal, state, or local law. All qualified applicants will receive consideration for employment without regard to sex, gender identity, sexual orientation, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.

It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Unsolicited resumes from agencies should not be forwarded to Insmed. Insmed will not be responsible for any fees arising from the use of resumes through this source. Insmed will only pay a fee to agencies if a formal agreement between Insmed and the agency has been established. The Human Resources department is responsible for all recruitment activities; please contact us directly to be considered for a formal agreement.

Insmed is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, please contact us by email at
TotalRewards@insmed.com and let us know the nature of your request and your contact information. Requests for accommodation will be considered on a case-by-case basis. Please note that only inquiries concerning a request for reasonable accommodation will be responded to from this email address.

Applications are accepted for 5 calendar days from the date posted or until the position is filled.

For New York City Residents

To assist in identifying candidates with qualifications matching those required and/or preferred for this role, Insmed uses an Automated Employment Decision Tool (“AEDT”) that employs artificial intelligence to analyze and score information provided in resumes and application materials including, but not limited to, skills, work experience, education, and job-related qualifications. The AEDT does not make final hiring decisions and all final hiring decisions are subject to human oversight and/or review.

If you are an applicant for this role and a New York City resident, you have the right to request:

  • A reasonable accommodation, if one is available under applicable law, by emailing TotalRewards@insmed.com; and/or
  • An alternative selection process by emailingPrivacy@insmed.com.
  • Information about the type of data collected, the source of that data, and data retention practices related to the AEDT by emailing us atPrivacy@insmed.com.


Salary.com Estimation for Identity and Access Management Engineer II in Bridgewater, NJ
$99,088 to $130,539
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Identity and Access Management Engineer II?

Sign up to receive alerts about other jobs on the Identity and Access Management Engineer II career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$86,680 - $110,316
Income Estimation: 
$110,730 - $135,754
Income Estimation: 
$117,033 - $148,289
Income Estimation: 
$94,625 - $127,578
Income Estimation: 
$132,795 - $178,786
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at BioSpace

  • BioSpace Newark, DE
  • At Lilly, we unite caring with discovery to make life better for people around the world. We are a global healthcare leader headquartered in Indianapolis, ... more
  • 12 Days Ago

  • BioSpace Washington, DC
  • Join Amgens Mission of Serving Patients At Amgen, if you feel like youre part of something bigger, its because you are. Our shared missionto serve patients... more
  • 12 Days Ago

  • BioSpace New Orleans, LA
  • Geography: New Orleans North (Hattiesburg, MS, Meridian, MS) Our Medical Specialists are at the forefront of engaging Dermatologists and other key customer... more
  • 12 Days Ago

  • BioSpace Des Moines, IA
  • Join Amgens Mission of Serving Patients At Amgen, if you feel like youre part of something bigger, its because you are. Our shared missionto serve patients... more
  • 12 Days Ago


Not the job you're looking for? Here are some other Identity and Access Management Engineer II jobs in the Bridgewater, NJ area that may be a better fit.

  • Securitas Security Services USA, Inc. Hillsborough, NJ
  • Securitas are seeking a detail‑oriented, customer‑focused Identity & Access Management Specialist to support our corporate security credentialing operation... more
  • 7 Days Ago

  • Cognizant Bridgewater, NJ
  • Practice - CIS - Cloud, Infrastructure, and Security Services About Cloud Infrastructure & Security Services: Cognizant’s Cloud, Infrastructure, and Securi... more
  • 29 Days Ago

AI Assistant is available now!

Feel free to start your new journey!