Demo

Security Engineer – Identity & Privileged Access Management (IAM & PAM)

Exegy
St Louis, MO Full Time
POSTED ON 1/5/2026
AVAILABLE BEFORE 2/4/2026
About Exegy

Exegy is a global leader in intelligent market data, advanced trading systems, and future-proof technology. Exegy serves as a trusted partner to the complete ecosystem of the buy-side, sell-side, exchanges, and financial services technology firms around the globe. Headquartered in St. Louis with regional offices in North America, the UK/Europe and Asia Pacific, Exegy has the global footprint to deliver world-class support and managed services to its customer base of elite financial market participants.

Job Summary

The Security Engineer – IAM & PAM is responsible for designing, implementing, and operating identity, authentication, authorization, and privileged access controls across the enterprise. This role focuses on reducing over-provisioned access, enforcing least privilege, and ensuring access is appropriately granted, reviewed, and revoked in alignment with business risk, regulatory requirements, and security best practices.

This engineer partners with IT Operations, Security Architecture, GRC, HR, and Application Owners to ensure identity and access management supports both secure operations and business agility.

Responsibilities

Identity & Access Engineering

  • Design, implement, and maintain IAM and PAM platforms supporting workforce, privileged, and service identities
  • Enforce least-privilege access models, role-based access control (RBAC), and attribute-based access control (ABAC) where appropriate
  • Implement strong authentication controls, including MFA, conditional access, and phishing-resistant authentication

Privileged Access Management (PAM)

  • Manage privileged identities for administrative, infrastructure, cloud, and application accounts
  • Eliminate shared, standing, and unmanaged privileged accounts through vaulting, just-in-time (JIT) access, and session recording
  • Ensure privileged access is time-bound, approved, logged, and auditable

Access Governance & De-Provisioning

  • Lead initiatives to identify and remediate over-provisioned access, orphaned accounts, and excessive entitlements
  • Design and operate access review and certification processes in collaboration with GRC and business owners
  • Integrate IAM with HR systems and ITSM to automate joiner, mover, and leaver workflows

Risk Reduction & Continuous Improvement

  • Partner with Risk and GRC teams to align IAM/PAM controls to ISO 27001, NIST, CIS Controls, and regulatory requirements
  • Perform periodic access risk assessments and provide remediation recommendations
  • Develop metrics that demonstrate risk reduction, such as decreased standing privileged access, faster de-provisioning, and reduced audit findings

Incident Support & Monitoring

  • Support security incident investigations related to identity misuse, credential compromise, or privilege escalation
  • Ensure IAM and PAM logs integrate with SIEM and monitoring platforms for visibility and alerting

Our Ideal Candidate Has

Technical Experience

  • 5 years of experience in information security or identity engineering, with deep focus on IAM and/or PAM programs
  • Hands-on experience designing, implementing, and operating enterprise IAM and PAM platforms (e.g., Azure AD / Entra ID, Okta, Ping, CyberArk, BeyondTrust, Delinea, HashiCorp Vault, or comparable solutions)
  • Proven experience building and maintaining RBAC models, automating joiner-mover-leaver workflows, and leading entitlement cleanup initiatives
  • Strong working knowledge of modern authentication and authorization protocols (SAML, OAuth, OIDC, LDAP, Kerberos)
  • Experience integrating identity systems across cloud platforms, SaaS applications, on-prem infrastructure, and CI/CD pipelines

Governance & Risk Enablement

  • Demonstrated experience reducing access-related audit findings and closing identity control gaps
  • Working knowledge of common security and compliance frameworks (e.g., ISO 27001 Annex A, NIST SP 800-53, CIS Controls), with emphasis on access control and identity safeguards
  • Ability to translate security and compliance requirements into practical, scalable identity controls that support business operations

Operating & Collaboration Approach

  • Effective partner to IT, Security, HR, and business teams to align identity controls with real-world workflows
  • Comfortable communicating access risk, least-privilege principles, and control decisions to both technical and non-technical stakeholders
  • Organized and process-oriented, with the judgment to balance security rigor, operational efficiency, and user experience

Experience That Enhances Impact

  • Exposure to regulated environments such as SOX, PCI-DSS, HIPAA, or similar compliance frameworks
  • Experience working with identity governance (IGA) platforms, access reviews, or access analytics
  • Relevant security or identity certifications (e.g., CISSP, CISM, GIAC, or IAM/PAM vendor certifications) are beneficial but not required

Salary.com Estimation for Security Engineer – Identity & Privileged Access Management (IAM & PAM) in St Louis, MO
$123,327 to $156,073
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Engineer – Identity & Privileged Access Management (IAM & PAM)?

Sign up to receive alerts about other jobs on the Security Engineer – Identity & Privileged Access Management (IAM & PAM) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Exegy

  • Exegy St Louis, MO
  • About Exegy Exegy is a global leader in intelligent market data, advanced trading systems, and future-proof technology. Exegy serves as a trusted partner t... more
  • 6 Days Ago

  • Exegy York, NY
  • About Exegy Exegy is a global leader in intelligent market data, advanced trading systems, and future-proof technology. Exegy serves as a trusted partner t... more
  • 6 Days Ago

  • Exegy St Louis, MO
  • About Exegy Exegy is a global leader in intelligent market data, advanced trading systems, and future-proof technology. Exegy serves as a trusted partner t... more
  • 2 Days Ago


Not the job you're looking for? Here are some other Security Engineer – Identity & Privileged Access Management (IAM & PAM) jobs in the St Louis, MO area that may be a better fit.

  • Bloomberg and Careers York, NY
  • Senior Software Engineer - Identity & Privileged Access Management Location New York Business Area Engineering and CTO Ref # 10047610 Description & Require... more
  • 4 Days Ago

  • Bloomberg L.P. York, NY
  • Job Details Description & Requirements Our Team: Bloomberg's Platform Security organization is responsible for securing the infrastructure, systems, and da... more
  • Just Posted

AI Assistant is available now!

Feel free to start your new journey!