Identity & Access Management (IAM) Engineer in Malvern, Pennsylvania at Customers Bank
Explore Related Opportunities
Job Description
Full time
REQ-2026-940
At Customers Bank, we believe in working hard, working smart, working together to deliver memorable customer experiences and having fun. Our vision, mission, and values guide us along our path to achieve excellence. Passion, attitude, creativity, integrity, alignment, and execution are cornerstones of our behaviors. They define who we are as an organization and as individuals. Everyone is encouraged to have personal development plans. By doing so, our team members are on their way to achieve their highest potential and be successful in their personal and professional lives.
Must be legally eligible to work in the United States without sponsorship, now or in the future, to be considered.
Who is Customers Bank?
Founded in 2009, Customers Bank is a super-community bank with over $22 billion in assets. We believe in dedicated personal service for the businesses, professionals, individuals, and families we work with.
We get you further, faster.
Focused on you: We provide every customer with a single point of contact. A dedicated team member who’s committed to meeting your needs today and tomorrow.
On the leading edge: We’re innovating with the latest tools and technology so we can react to market conditions quicker and help you get ahead.
Proven reliability: We always ground our innovation in our deep experience and strong financial foundation, so we’re a partner you can trust.
What You’ll Do:
We are seeking a hands-on Identity and Access Management (IAM) Engineer to support the implementation and operation of the bank’s identity and access management program. This role focuses on platform administration, application integration, and support of IAM functions across critical cloud and on-prem environments.
Responsibilities include creating and managing access for users and non-human accounts, building and maintaining roles and entitlements for various business units, and supporting secure authentication and authorization across enterprise systems. In addition, this role requires proactive governance of identities and access, including identifying stale access, orphaned accounts, excessive permissions, and other identity-related risks while driving improvements through automation and process optimization.
- System Management: Conduct configuration, integration, maintenance, performance management, troubleshooting, and operational support of IAM platforms and services.
- IAM Technology Deployment: Support IAM technology deployment projects involving platforms such as Veza, Microsoft Entra ID, Active Directory, and CyberArk.
- Cloud Identity Security: Support cloud identity security capabilities including conditional access, identity protection, MFA, and Zero Trust-aligned controls.
- Programming/Scripting: Perform system-level scripting and automation using technologies such as PowerShell and Python to support IAM processes and integrations.
- Application Integration: Build and maintain integrations using SAML, OAuth/OIDC, SCIM, and REST APIs to support secure authentication and authorization.
- Access Governance: Assist in identifying stale access, orphaned accounts, excessive permissions, and other identity governance risks across environments.
- Provisioning & Fulfillment Support: Participate in provisioning, deprovisioning, onboarding, offboarding, and access modification activities while supporting automation and process improvements.
- Automation & Workflow Improvement: Identify opportunities to streamline manual IAM processes through automation, scripting, and workflow enhancements.
- Security Standards: Support enforcement of IAM security standards and best practices including RBAC, ABAC, MFA, least privilege, and secure authentication patterns.
- Metrics & Reporting: Assist with tracking and reporting IAM operational metrics such as provisioning timelines, access review completion, and access governance findings.
- Collaboration: Partner with IAM Analysts, application owners, infrastructure teams, and security teams to deliver secure and scalable IAM solutions.
- Documentation: Document IAM integrations, workflows, platform configurations, standards, and operational procedures.
- Compliance Support: Support audit activities, evidence collection, and remediation efforts related to IAM controls and regulatory requirements.
- Communication: Maintain strong communication and collaboration across technical and business teams.
What Do You Need?
- 2–4 years of experience in IAM engineering or related roles.
- Experience with IAM platforms such as Microsoft Entra ID, Active Directory, CyberArk, and Veza (or similar IGA tools).
- Experience supporting IAM provisioning, identity lifecycle management, and access governance processes.
- Experience integrating applications using SAML, OAuth/OIDC, SCIM, and REST APIs.
- Experience supporting cloud identity security capabilities including conditional access and securing SaaS applications.
- Strong understanding of IAM fundamentals including RBAC, ABAC, MFA, least privilege, and identity lifecycle management.
- Proficiency in scripting using PowerShell, Python, or similar technologies.
- Familiarity with structured change management and DevOps processes.
- Strong troubleshooting, analytical, and problem-solving skills.
- Strong communication and documentation skills.
Technology Skills:
- Experience configuring and administering Veza or other similar IGA tools for identity governance and access visibility.
- Experience with Microsoft Entra ID capabilities including SSO, MFA, conditional access, and identity protection.
- Experience with CyberArk for privileged access management, credential vaulting, and privileged session management.
- Understanding of integrating IAM processes with ServiceNow or similar ITSM platforms for provisioning and access request workflows.
- Familiarity with cloud and SaaS identity security concepts and controls.
- Ability to work within the Microsoft ecosystem and quickly learn additional enterprise applications and IAM technologies.
- Familiarity with AI and automation tools that support productivity, workflow efficiency, and client engagement.
Customers Bank is an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
We also provide “reasonable accommodations”, upon request, to qualified individuals with disabilities, in accordance with the Americans with Disabilities Act and applicable state and local laws.
Diversity Statement:
At Customers Bank, we believe in working smart, working together, and having fun while delivering innovative solutions and memorable experiences for our customers. We are committed to the continual advancement of a culture which reflects the value we place on diversity, equity, and inclusion. We honor the diverse experiences, perspectives, and identities of our team members, and we recognize that it is their passion, creativity, and integrity that drives our success. Step into your future with us! Let’s take on tomorrow.
Founded in 2009, Customers Bank is a super-community bank with $20.3 billion in assets at June 30, 2022. We believe in dedicated personal service for the businesses, professionals, individuals and families we work with. We offer banking and loan services across Florida, Illinois, Massachusetts, New Hampshire, New Jersey, New York, North Carolina, Pennsylvania, Rhode Island and Texas.
Customers Bank is a member of the Federal Reserve System with deposits insured by the Federal Deposit Insurance Corporation. Customers Bank is an equal opportunity lender. Customers Bank takes pride in delivering extremely high levels of customer service while charging comparatively very low fees; service that makes our clients say, “Wow.”
Customers Bank, with its headquarters located in Malvern, Pennsylvania, is a subsidiary of Customers Bancorp, Inc., a bank holding company. The voting common shares of Customers Bancorp, Inc. are listed on the New York Stock Exchange under the symbol CUBI.
Customer Service driven VEVRAA Federal Contractor, seeking priority referral of qualified protected veterans.
Customers Bank will provide consideration for employment to qualified applicants without regard to their race, color, religion,
national origin, sex/ gender, sexual orientation, gender identity, protected veteran status or disability.