Transforming smiles,
changing lives.

Engineer, Identity & Access Governance

This position is ideal for mid-level to join the Technology Governance, Risk & Compliance (TechGRC) team within Information Security as an Engineer, Identity & Access Governance (IAG), assisting to govern and secure user identities and access to systems and applications across the organization. Partnering with cross-functional teams including other Information Security teams and Information Technology, you'll provide guidance and oversight to ensure individuals have appropriate access to the right resources and information while maintaining compliance with internal policies and external regulations. This role is crucial in ensuring our organization's information and systems are continuously protected through comprehensive identity and access controls.
Department
Information Technology
Employment Type
Full Time
Location
US-North Carolina-Raleigh
Workplace type
Onsite
Reporting To

Role expectations

  • Identity Federation & Lifecyle Management: Assist in the management of identity federation services and identity lifecycle workflows.
  • Role-Based Access Control (RBAC): Coordinate role-based access entitlement definition, controls and reviews, ensuring alignment with organizational structures, business needs and work duties.
  • User Access Governance: Coordinate user access controls, including provisioning, de-provisioning, and maintaining user entitlements across various systems and applications. Assist technology teams with the onboarding into single sign-on (SSO) to streamline user authentication and access.
  • Privileged User Access Governance: Conduct regular privileged access reviews, ensuring that privileged user access is appropriate based on roles, responsibilities, and compliance requirements.
  • Non-human Account Governance: Review categorization and ownership of non-human accounts, ensuring accuracy and mapping with CMDB. Monitor and coordinate secret rotations with IT teams.
  • Monitoring Control & Compliance: Ensure continuous operational enforcement of identity and access management (IAM) policies, procedures, and compliance with regulatory requirements. Conduct periodic control design and operating assessments to identity improvement areas.
  • Phishing-resistant MFA: Ensure timely user onboarding into Passwordless sign-in, Device Conditional Access and Windows Hello for Business with phishing-resistant MFA methods. Actively monitor onboarding and report progress update with high accuracy and relevant breakdowns such as region, entity, methods.
  • Project Management: Review project questionnaire and documentation, ensuring alignment with identity & access policies and standards. Track implementations until completion.
  • Guidance & Awareness: Develop guidelines to onboard end-users into standard practices and tools such as Passwordless and Windows Hello.
  • Documentation & Reporting: Create effective documentation on identity & access governance policies, procedures, standards, controls, and configurations. Produce periodic reports with key metrics on governance activities, monitoring controls, usage patterns and compliance status. Provide insights for ongoing improvements in security posture.
  • Service Delivery: Process service requests as per defined service levels (on-time, on-quality) in partnership with key stakeholders.
  • Collaboration & Communication: Work closely with IT, Information Security, HR, and business units to ensure seamless identity & access lifecycle management.
  • Continuous Improvement: Stay up-to-date with emerging trends, tools, and good practices in identity & access management. Propose improvements on processes, controls, technologies and tools.
  • Other duties as assigned to meet business needs, contribute to broader projects and support colleagues.

What we're looking for


  • Education: Bachelor's degree or equivalent work experience.
  • Experience: 5+ years' working experience ideally in information security or information technology.
  • Communication: Presentation and communication skills.
  • Analytical Skills: Ability to analyze security challenges and propose actionable solutions.
  • Problem Solving: Ability to address and resolve issues in identity and access governance.
  • Teamwork: Strong ability to work both collaboratively and independently achieving some of the goals set with little guidance.
  • Project Management: Ability to collaborate in multiple projects, priorities, and deadlines in a fast-paced environment.

Complementary skills

  • Strong English-speaking skills with experience working at a global company.
  • Understanding of the Microsoft 365 suite of tools relating to managing user identities, entitlement and accesses.
  • Solid understanding of IAM concepts, RBAC, SSO, MFA, least privilege, segregation of duty and need to know principles, and security frameworks.
  • Certifications: Certified Identity Management Professional (CIMP), or other related credentials are a plus.

Pay Transparency

If provided, base salary or wage rate ranges are the range in which Align reasonably expects to set a candidate’s pay for the posted position. Actual placement depends on the individual skills and experience level of a candidate plus the total compensation and equity across team members. For other locations outside of the primary location, the base salary range will be adjusted geographically. 
 
For Field Sales roles, the salary listed is the base pay only and does not include the applicable incentive compensation plan. A cost of living adjustment may be added to base pay for higher cost areas in the U.S. 
 
Our internship hourly rates are a standard pay determined based on the position and your location, year in school, degree, and experience.

About Align Technology

Your growth and well-being:

At Align, every smile matters. We’re committed to helping you thrive by supporting the health, growth, and well-being of our team members through a variety of tools and programs. While specific offerings may vary by location and role, Align employees can typically expect:
  • Health and well-being programs to keep you thriving in both body and mind.
  • Employee-exclusive discounts on Invisalign products.
  • Learning opportunities through online learning resources and support for your individual development plans.
  • Inclusive, global workplace that fosters collaboration, recognition and belonging.
Country and/or role specific details will be shared with you by your recruiter during the interview process. 

Discover Align:

We are a global community of game-changers and smart team players, united by our belief in the power of a smile. Our dynamic team of exceptional employees is dedicated to transforming the industry and creating extraordinary outcomes every day.

Align’s core values of agility, customer, and accountability are more than words to work by, they are words we live by. The actions we take every day speak to who we are as a company and our focus on being truly impactful. We celebrate our differences, and the many ways we support one another— ultimately creating a more inclusive organization and world as we continue transforming smiles and changing lives.

We foster a culture where thinking differently and seeking new experiences are not just encouraged but celebrated. With the Align Mindset, we empower each other, ensuring every voice is heard and valued in an inclusive environment that inspires creativity and collaboration.

At Align, we believe in the power of a smile, and we know that every smile is as unique as our employees. As we grow, we are committed to building a workforce rich in diverse cultural backgrounds and life experiences, fostering a culture of open-mindedness and compassion. We live our company values by promoting healthy people and healthy communities, all with the intent of changing millions of lives, one unique smile at a time. 

As part of our commitment to innovation, Align Technology includes exocad and Cubicure, companies that enhance our offerings and extend our impact to industry transformation.

Eager to learn how we embrace our global differences and nurture employee well-being?
Explore Align's culture here!

Want to discover more about exocad and Cubicure? Click on their names for additional information.
Applicant Privacy Policy:

Review our Applicant Privacy Policy for additional information.

Equal Opportunity Statement:

Align Technology is an equal opportunity employer. We are committed to providing equal employment opportunities in all our practices, without regard to race, color, religion, sex, national origin, ancestry, marital status, protected veteran status, age, disability, sexual orientation, gender identity or expression, or any other legally protected category. Applicants must be legally authorized to work in the country for which they are applying, and employment eligibility will be verified as a condition of hire.

Couldn’t find what you are looking for?

Talent pool
Department
Information Technology
Employment Type
Full Time
Location
US-North Carolina-Raleigh
Workplace type
Onsite
View all opportunities at Align Technology