Principal Security Engineer (IAM / Zero Trust) POST NUMBER: 475612

Phoenix, AZ

Vaco is partnering with a fintech organization to hire a Principal Security Engineer focused on Identity and Access Management as part of a broader shift toward modern, Zero Trust architecture. This is a high-impact, hands-on role centered on designing and building scalable identity systems that support a cloud-native, distributed environment.

This role goes beyond traditional IAM. The focus is on evolving identity into a dynamic, risk-aware control plane across both human and non-human access. The ideal candidate is a builder who can operate at the architecture level while still driving implementation, automation, and integration across complex systems.

The role is ideally based in Tempe with a hybrid schedule, but remote candidates will be considered.

What You’ll Be Doing

  • Define and evolve enterprise Identity strategy, architecture, and roadmap aligned to Zero Trust principles
  • Design and implement modern IAM solutions across user, application, and machine identities
  • Transition access models from static RBAC to risk-based and adaptive authorization frameworks
  • Architect identity lifecycle management including provisioning, deprovisioning, and governance workflows
  • Design authentication and authorization solutions including MFA, SSO, and passwordless approaches
  • Lead efforts to secure non-human identities including service accounts, APIs, and distributed workloads
  • Implement Just-in-Time (JIT) access and least privilege models to reduce standing access risk
  • Integrate IAM solutions across cloud and enterprise platforms using protocols such as SAML, OAuth, OpenID Connect, and SCIM
  • Partner with SOC and security teams to build detection and response capabilities for identity-based threats
  • Develop automation-first solutions using scripting, APIs, and Infrastructure as Code
  • Provide technical leadership and mentorship to engineering teams and influence secure development practices
  • Collaborate with business and technical stakeholders to drive adoption and align identity strategy with business needs

Required Experience

  • 8 years of experience in cybersecurity, security engineering, or related fields
  • 5 years focused on Identity and Access Management
  • Proven experience designing and implementing enterprise-scale IAM solutions
  • Strong understanding of Zero Trust architecture and modern identity security principles
  • Hands-on experience with IAM platforms such as Okta, Entra ID, Ping, or similar
  • Experience with identity governance and PAM tools such as SailPoint, Saviynt, or CyberArk
  • Strong understanding of identity protocols including OAuth, OpenID Connect, SAML, and SCIM
  • Experience securing cloud-native environments across AWS, Azure, or GCP
  • Experience with scripting and automation using tools such as Python or PowerShell
  • Familiarity with microservices and API-driven architectures

Nice to Have

  • Experience in fintech or other regulated environments
  • Experience with Kubernetes, service mesh, or container-based architectures
  • Familiarity with Terraform or Infrastructure as Code practices
  • Experience building identity threat detection and response capabilities
  • Security certifications such as CISSP, CISM, or vendor-specific IAM certifications

A Special Note to Applicants

  • The current volume of automated and AI-generated applications is on the rise. If you have read this posting in full and believe this role genuinely aligns with your experience, we encourage you to apply thoughtfully.
  • Applicants who include the word “Blue Steel”somewhere in their resume or cover note, or who reach out directly via LinkedIn to the recruiter who appreciates a good Zoolander reference, will help us route submissions more effectively

Compensation

  • Hourly rate: $75-90/hr
  • 1-year W2 contract through Vaco
  • Eligible for Vaco benefits including health, dental, vision, and 401(k)

Determining compensation for this role (and others) at Vaco/Highspring depends upon a wide array of factors including but not limited to the individual’s skill sets, experience and training, licensure and certifications, office location and other geographic considerations, as well as other business and organizational needs. With that said, as required by local law in geographies that require salary range disclosure, Vaco/Highspring notes the salary range for the role is noted in this job posting. The individual may also be eligible for discretionary bonuses, and can participate in medical, dental, and vision benefits as well as the company’s 401(k) retirement plan. Additional disclaimer: Unless otherwise noted in the job description, the position Vaco/Highspring is filing for is occupied. Please note, however, that Vaco/Highspring is regularly asked to provide talent to other organizations. By submitting to this position, you are agreeing to be included in our talent pool for future hiring for similarly qualified positions. Submissions to this position are subject to the use of AI to perform preliminary candidate screenings, focused on ensuring minimum job requirements noted in the position are satisfied. Further assessment of candidates beyond this initial phase within Vaco/Highspring will be otherwise assessed by recruiters and hiring managers. Vaco/Highspring does not have knowledge of the tools used by its clients in making final hiring decisions and cannot opine on their use of AI products.
Posted 2026-06-11

Recommended Jobs

Senior Project Developer

Veregy, an Energy Transition Company
Phoenix, AZ

Job Description Job Description Veregy is an award-winning NAESCO-Accredited decarbonization company focusing on accelerating and simplifying the Energy Transition. We provide turnkey engineering…

View Details
Posted 2026-05-23

Sales Consultant

Campers Inn RV
Phoenix, AZ

Job Description Job Description Job Description: About Campers Inn RVCampers Inn RV is a leading recreational vehicle sales company with 40 locations nationwide. Recognized as one of the Top 5…

View Details
Posted 2026-05-14

Occupational Therapist PRN

American Premier Home Health
Phoenix, AZ

Job Description Job Description Join our dynamic team at American Premier Home Health in beautiful Phoenix, AZ, as a Occupational Therapist! This onsite position offers you the unique opportunity…

View Details
Posted 2026-03-17

Mechanic

BHI Inc
Apache Junction, AZ

Job Description Job Description Benefits: ~401(k) ~401(k) matching ~ Bonus based on performance ~ Free uniforms Benefits/Perks Careers Advancement Opportunities Flexible Schedul…

View Details
Posted 2026-05-13

Community Center-Activities Personnel II

Chemehuevi Tribe
Lake Havasu City, AZ

Community Center-Activities Personnel II  STATUS : Permanent/Full Time/ Non-Exempt  DEPARTMENT : Community Center REPORTS TO : Community Center Director SALARY : $15.50 per hour   D…

View Details
Posted 2026-05-16

Travel Nurse RN - Case Manager - $1,366 to $2,534 per week in Fort Defiance, AZ

TravelNurseSource
Fort Defiance, AZ

Registered Nurse (RN) | Case Manager Location: Fort Defiance, AZ Agency: Convergence Medical Staffing Pay: $1,366 to $2,534 per week Shift Information: Days - 5 days x 8 hours …

View Details
Posted 2026-05-21

CDL Driver - Powell - Overhead

Aramark
Page, AZ

The CDL Driver is responsible for driving a vehicle that requires a CDL to transport patrons and/or goods on-site or to locations off property as business needs require. Essential functions and respo…

View Details
Posted 2025-09-15

Paid Summer Intern - State Office Clerk

Phoenix, AZ

Are you ready to go behind the scenes of the democratic process? The State’s Office is looking for detail-oriented, civic-minded individuals to join the Elections Division for an intensive, high-impac…

View Details
Posted 2026-05-29

Field Medical Assistant (East Valley)

FIND HealthCareers
Mesa, AZ

Job Description Job Description FIND Healthcareers is a healthcare recruitment firm led by professionals who operate within the system — not outside of it. We partner with growing healthcare orga…

View Details
Posted 2026-05-23