First Command Financial Services
Posted 2mo ago

Information Security Engineer II

First Command Financial Services
Fort Worth, Texas, United States
HybridFull Time
Responsibilities
  • implementing controls
  • leading initiatives
  • onboarding applications
Requirements
  • 5+ years IT security experience
  • 3+ years with SailPoint
  • Hands-on IAM implementation (provisioning
  • Role modeling
  • Access reviews)
  • Knowledge of ISO/NIST
  • Strong analytical and communication skills
  • Bachelor's in CS/IT/Engineering preferred
Technical tools mentioned
SailPointMicrosoft Azure ADAWSAgile

Job description

How will this role impact First Command? 

 

This role advances the organization’s Identity and Access Management (IAM) maturity by implementing and improving identity controls across the user lifecycle. This role is responsible for enhancing governance, provisioning, authentication, authorization, access reviews, role design, and compliance capabilities, with a strong emphasis on SailPoint and related identity platforms. The position partners with business, risk, audit, infrastructure, and application teams to deliver scalable IAM enhancements that strengthen security, support regulatory expectations, and improve the user access experience.

 

 

What will the employee do in this role?

 

  • Provides subject matter expertise on Identity and Access Management strategy, governance, lifecycle processes, and platform capabilities so that effective and scalable IAM solutions can be developed and maintained
  • Recommends and implements IAM controls for new and existing technologies, including joiner-mover-leaver processes, authentication, authorization, role-based access, segregation of duties, privileged access considerations, and access certification requirement
  • Participates as a key member of the Security Incident Response Team (SIRT)
  • Leads IAM enhancement initiatives, including role modeling, access review optimization, application onboarding, workflow improvements, and control implementation to ensure objectives, timelines, and compliance expectations are met
  • Stay up to date on new information technologies and apply those innovations in the company’s security standards and best practices
  • Collaborates with business owners, application teams, infrastructure, audit, risk, compliance, vendors, and leadership to gather requirements, define access models, and implement IAM enhancements that align with policy and operational needs
  • Evaluates cloud services and third-party applications for IAM onboarding, access governance, provisioning feasibility, certification support, and alignment with SailPoint and broader enterprise identity architecture

 

 

What skills and qualifications does the employee need?

 

Education

  • Bachelor’s degree in computer science, Information Technology, or an Engineering related field, or equivalent experience
  • Preferred: SailPoint Certified Identity Security Administrator, SailPoint Certified Identity Security Engineer, or SailPoint Certified IdentityI Engineer
  • Preferred: IAM-relevant certifications such as Certified Identity and Access Manager (CIAM) or Microsoft Certified: Identity and Access Administrator Associate

 

Work Experience

  • Minimum 5 years’ experience working in an IT Security capacity
  • Minimum of 3 years’ working with SailPoint with an Identity and Access Management platform
  • Experience with information security policy design
  • Strong understanding of IAM and identity governance principles, including authentication, authorization, role-based access control, User access reviews, segregation of duties, and identity lifecycle management

 

Certifications 

  • Relevant security certifications such as CIAM, CISSP, Microsoft Certified: Identity and Access Administrator Associate, CCSP, CCNA Security, and CCNP Security

 

Required Knowledge, Skills and Abilities

  • Hands-on experience implementing and administering IAM capabilities, including application onboarding, provisioning workflows, role design, policy configuration, access certifications, reporting, and control evidence support
  • Experience integrating SailPoint with cloud platforms (e.g., Azure AD, AWS)
  • Familiarity with Privileged Access Management (PAM) tools and concepts
  • Diligence in producing and maintaining documentation and evidence, especially for compliance activities
  • Detailed knowledge of ISO, NIST, and other information security standards, laws, and regulations
  • Possess strong analytical skills
  • Must be a self-starter and comfortable with self-directed learning on industry risks and changes
  • Good oral and written communication skills
  • Ability to speak confidently when dealing with internal constituents
  • Identifying complex problems and reviewing related information to develop and evaluate options and implement solutions
  • Incorporate industry IAM standards into practical security operations, network operations, and application development practices
  • Working knowledge of the Agile framework

LI-NC1

LI-Hybrid

 

©2025 First Command Financial Services, Inc. is the parent company of First Command Brokerage Services, Inc. (Member SIPCFINRA), First Command Advisory Services, Inc., First Command Insurance Services, Inc. and First Command Bank. Securities products and brokerage services are provided by First Command Brokerage Services, Inc., a broker-dealer. Financial planning and investment advisory services are provided by First Command Advisory Services, Inc., an investment adviser. Insurance products and services are provided by First Command Insurance Services, Inc. Banking products and services are provided by First Command Bank (Member FDIC).

Investment and insurance products are not deposits, are not insured by the FDIC, and may lose value. A financial plan, by itself, cannot assure that retirement or other financial goals will be met.

First Command Financial Services, Inc. and its related entities are not affiliated with, authorized to sell or represent on behalf of or otherwise endorsed by any federal employee benefit program, the U.S. government, the U.S. Armed Forces or any other third-party mentioned on this site. 

In the United Kingdom, investment and insurance products and services are offered through First Command Europe Ltd. First Command Europe Ltd. is a wholly owned subsidiary of First Command Financial Services, Inc. and is authorized and regulated by the Financial Conduct Authority. Certain products and services offered in the United States may not be available through First Command Europe Ltd.

SIPC - Securities Investor Protection Corporation

Securities Investor Protection Corporation

About First Command Financial Services

Financial planning, banking, and insurance for military families.

Similar jobs

Information Security Engineer roles near Fort Worth, Texas
5d
Save
Mark Applied
Hide
Lead Information Security Engineer
Charlotte or Irving or Chandler or Minneapolis or United States
$119k-$206k/yr HybridFull Time
Wells Fargo
Wells FargoNYSE: WFC: Global provider of banking, investment, and mortgage financial services.
5+ YOERequires 5+ years of information security engineering experience, AppSec expertise, tooling integration, CI/CD knowledge, leadership, regulated-environment experience, and strong written, verbal, and presentation skills.
SAST, DAST, SCA, Infrastructure as Code (IaC), GitHub, Jira, ServiceNow, Jenkins, Harness, CI/CD, OWASP, MITRE CVE/CWE, Cursor, GitHub Copilot, Checkmarx, Black Duck, Prisma Cloud, TruffleHog, GitHub Advanced Security (GHAS), Snyk, Socket, Invicti, Qualys
2w
Save
Mark Applied
Hide
Staff Information Security Engineer
Lubbock or Roanoke or Charlottesville or Columbia or Dallas or Raleigh or Waco or Albuquerque or Charleston or Kansas City or St. Louis or Little Rock or Charlotte or Waynesboro or Knoxville or Charleston or Cedar Rapids or Lincoln
$116k-$140k/yr HybridFull Time
Segra
Segra: Provider of fiber-based connectivity and managed technology solutions for businesses.
10+ YOE10+ years experience in information security, strong networking and OS knowledge, scripting (Python or PowerShell), SIEM and cloud security familiarity, incident response and compliance experience.
Python, PowerShell, Splunk, Splunk ES, SIEM, Terraform, Ansible, git, AWS, Microsoft Azure, Office 365, BurpSuite, Entra, Intune, DLP, EDR, MDR, XDR, PKI, SSL/TLS
1mo
Save
Mark Applied
Hide
Sr Information Security Engineer(IAM)
Dallas, Texas, United States
OnsiteFull Time
Topgolf
TopgolfNYSE: CALY: Operates technology-enabled golf entertainment centers with food and drinks.
7+ YOEDesign, implement, and maintain IAM/IGA solutions (SSO, MFA, Azure AD); troubleshoot IAM issues; manage IAM projects; 7+ years experience with IGA platforms, MFA, Azure AD, SIEM/PAM, and regulatory frameworks.
Identity Governance & Administration (IGA), Sailpoint, Saviynt, Okta, SSO, Azure Active Directory, SIEM, PAM, NIST, HITRUST, HIPAA, PCI, SOC2
1mo
Save
Mark Applied
Hide
Lead Information Security Engineer
Dallas or United States or Alaska or Delaware or Rhode Island or Vermont or Wyoming
$130k-$202k/yr RemoteFull Time
Triumph Financial: Provides financial and technology solutions for the transportation industry.
5+ YOE5+ years information security experience with enterprise security architecture, cloud (AWS/Azure), IaC (Terraform), scripting/automation, regulated environment familiarity (SOX/GLBA/FFIEC), and industry security certifications preferred.
Terraform, AWS, Azure, IAM, SSL, SOX, GLBA, FFIEC, CIS Controls, APIs
1mo
Save
Mark Applied
Hide
Information Security Senior Engineer - Authentication
Dallas, Texas, United States
$136k-$204k/yr HybridFull Time
Equinix
EquinixNASDAQ: EQIX: Global provider of data center and digital infrastructure services.
8+ YOE8+ years architecting and implementing IAM solutions, strong Ping expertise, IAM protocol knowledge, SSO and federation architecture experience, enterprise IT knowledge, and strong analytical and communication skills.
Ping, PingFederate, PingID, PingProtect, PingVerify, DaVinci, Authorize, OAuth2, OpenID Connect, SAML, SCIM, REST, JSON, Postman, Okta, SailPoint, APIs
1mo
Save
Mark Applied
Hide
Information Security Senior Engineer - Identity Governance
Dallas, Texas, United States
$136k-$204k/yr HybridFull Time
Equinix
EquinixNASDAQ: EQIX: Provides global data center colocation and digital interconnection services.
5+ YOE5+ years IAM/IGA experience (2+ years with SailPoint IdentityNow), hands-on IdentityNow, APIs/JSON/REST, Postman, Java or PowerShell scripting, AD/Workday/ServiceNow integrations, cloud identity and modern auth (OAuth2/OIDC); Bachelor's preferred.
SailPoint IdentityNow, APIs, JSON, REST, Postman, Java, PowerShell, AD, Workday, ServiceNow, OAuth2, OIDC
2mo
Save
Mark Applied
Hide
Information Security Engineer
Dallas, Texas, United States
$95k-$138k/yr OnsiteFull Time
ProbablyMonsters
ProbablyMonsters: Builds and sustains independent AAA video game development studios.
Designing, implementing, and operating security systems (vulnerability management, SIEM/SOAR/XDR, EDR), performing SOC functions and incident response, securing cloud and hybrid environments, enforcing IAM/PAM controls, and assessing AI/ML security risks.
SIEM, SOAR, XDR, CrowdStrike Falcon, Falcon Insight, Falcon Identity Threat Protection, Falcon Cloud Security, Falcon Spotlight, Falcon SaaS Security Posture Management, Falcon AIDR, Charlotte AI, GitHub Copilot, ChatGPT, AWS, Azure, Microsoft 365, Azure AD, Git, Perforce, Jenkins, NDR, IDS, IPS, Ansible, Puppet, Chef, Terraform, Pentera, NodeZero, Cymulate, CSPM, CWPP, CNAPP, SAST, DAST, IAST, EDR, TCP/IP, HTTP, HTTPS, DNS, PAM, MFA, SSO
2mo
Save
Mark Applied
Hide
Information Security Engineer
Dallas, Texas, United States
OnsiteFull Time
Yondr Group
Yondr Group: Develops, owns, and operates hyperscale data centers globally.
5+ YOEExperienced Information Security engineer; risk assessment, policy creation, security controls, incident response; hands-on with security tech; global organisation.
Microsoft Sentinel, Qualys, Microsoft Defender, KnowBe4, Microsoft Purview, MDR services, UBA