Identity Governance Engineer
Job Location:
Redondo Beach, CA - USA
Yearly Salary:
USD 140000 - 180000
Posted:
29 September 2026 (Yesterday)
Application Deadline:
27 December 2026
Vacancies:
1 Vacancy
Job Summary
As an Identity Governance Engineer at Impulse you will maintain enhance and scale our enterprise identity and access management capabilities. This role will help ensure that users devices administrators applications and other identities have appropriate access throughout their lifecycle. The Identity Governance Engineer will work across Information Security IT Engineering and business teams to strengthen identity governance authentication privileged access directory services and identity automation across corporate cloud and regulated environments. This is a hands-on engineering role for someone with strong experience in Active Directory Microsoft Entra ID identity governance Conditional Access and enterprise authentication technologies.
Responsibilities
- 3 years of professional relative experience
- Maintain and enhance enterprise Identity Governance and Administration (IGA) capabilities
- Manage and improve identity lifecycle processes including provisioning deprovisioning access changes and periodic access reviews
- Maintain and enhance Microsoft Active Directory and Microsoft Entra ID including users groups roles privileged identities and hybrid identity integrations
- Maintain and continuously improve Microsoft Entra Conditional Access authentication methods and identity security policies
- Support and enhance certificate-based authentication for user and device identities
- Maintain and improve Privileged Identity Management (PIM) and integrations with Privileged Access Management (PAM) capabilities
- Maintain enterprise SSO federation and automated provisioning integrations using technologies such as SAML OAuth/OIDC and SCIM
- Govern employee contractor partner B2B service account application and other non-human identities
- Maintain and enhance identity governance across Microsoft 365 Azure AWS SaaS applications and enterprise systems
- Develop automation using technologies such as PowerShell Microsoft Graph REST APIs and Python. Partner with Security Operations and Security Engineering to monitor investigate and remediate identity-related security risks. Maintain identity and access controls supporting organizational security and compliance requirements
Minimum Qualifications
- 5 years of professional relative experience
- Experience in Identity and Access Management Identity Governance Security Engineering or a related discipline
- Strong hands-on experience administering and engineering Microsoft Active Directory
- Strong hands-on experience with Microsoft Entra ID / Azure AD and hybrid identity environments
- Experience managing Conditional Access MFA authentication methods and privileged access
- Experience with identity lifecycle management RBAC least privilege access reviews and entitlement governance
- Experience with enterprise authentication and federation technologies such as SAML OAuth 2.0 OpenID Connect and SCIM
- Experience with scripting and automation using PowerShell and APIs. Working knowledge of PKI X.509 certificates and certificate-based authentication
- Strong troubleshooting documentation and communication skills
Preferred Skills and Experience
- Experience with Microsoft Entra ID Governance including Entitlement Management Access Reviews Lifecycle Workflows and PIM
- Experience with Entra certificate-based authentication Active Directory certificate authentication 802.1X/EAP-TLS and user/device certificates
- Experience with enterprise PAM technologies. Experience governing identity and access across Azure AWS and SaaS environments
- Experience with B2B/external identity and non-human identity governance
- Experience securing Active Directory and Entra ID against identity-based attacks
- Experience with SIEM and identity security monitoring
- Experience working in aerospace defense government contracting or another regulated industry
- Familiarity with CMMC NIST SP 800-171 NIST SP 800-172 or NIST SP 800-53
Additional Information:
Compensation bands are determined by role level location and alignment with market data. Individual level and base pay is determined on a case-by-case basis and may vary based on job-related skills education experience technical capabilities and internal addition to base salary for full-time hires you may also be eligible for long-term incentives in the form of stock options and access to medical vision & dental coverage as well as access to a 401(k) retirement plan.
Impulse Spaces spacecraft manufacturing business is subject to U.S. export regulations including the International Traffic in Arms Regulations (ITAR) and Export Administration Regulations (EAR). This position requires applicants to be either U.S. Persons (i.e. U.S. citizen U.S. national lawful permanent U.S. resident (green card holder) an individual granted asylum in the U.S. or an individual admitted in U.S. refugee status) or persons eligible to obtain an export license from the U.S. Departments of State Commerce or other applicable U.S. government agencies. Learn more about the ITAR here.
Impulse Space is an Equal Opportunity Employer; employment with Impulse Space is governed on the basis of merit competence and qualifications and will not be influenced in any manner by race color religion gender national origin/ethnicity veteran status disability status age sexual orientation gender identity marital status mental or physical disability or any other legally protected status.
Required Experience:
IC