Principal IAM Engineer
Company: Northwestern Mutual
Location: Saint Francis
Posted on: February 15, 2026
|
|
|
Job Description:
The Principal IAM Engineer is the senior technical authority for
identity services, responsible for designing, implementing, and
governing enterprise-wide IAM capabilities across workforce,
partner, and customer identities. This role combines deep hands-on
engineering with architecture and leadership, driving the
modernization of authentication, authorization, identity lifecycle,
and privileged access controls across our cloud and on-prem
environments. What Youll Do Own the end?to?end technical design of
IAM services, including identity lifecycle management,
authentication, authorization, SSO, and privileged access controls,
ensuring they are secure, scalable, and highly available. Lead
design and implementation of IAM integrations for SaaS, on?prem,
and AWS cloud platforms, including federation (SAML, OIDC, OAuth),
MFA, and Passwordless capabilities. Serve as the primary escalation
point for complex IAM engineering issues; perform root?cause
analysis and drive long?term remediation and hardening of IAM
platforms and related services. Partner with security architecture,
infrastructure, application, and HR/IT teams to align IAM solutions
with enterprise security strategy, compliance obligations, and
business objectives. Define IAM engineering standards, patterns,
and reference architectures; guide other engineers in implementing
secure onboarding patterns for applications into IGA, PAM, and SSO
platforms. Lead modernization initiatives. Contribute to audits,
risk assessments, and regulatory reviews by providing technical
evidence, designing compensating controls, and closing identified
IAM control gaps. Mentor and coach IAM engineers and analysts,
promoting engineering excellence, documentation discipline, and a
culture of continuous learning and improvement. What Youll Bring to
the Role 10 years of experience in information security or
infrastructure engineering, with at least 5 years of
hands-on-keyboard experience with core IAM platforms. Deep
expertise with the majority of our IAM stack Strong hands-on
experience with Microsoft Entra ID and Active Directory as
foundational directory services, and extensive experience
implementing federation protocols (SAML, OIDC, OAuth2). Proven
track record designing and implementing IAM solutions in hybrid
multi-cloud environments, including the automation of provisioning,
access reviews, and RBAC/ABAC models. Experience with secrets
management solutions. Proficiency in at least one scripting or
programming language (such as PowerShell, Python, or Java) to
automate tasks and build custom connectors for our IAM tools.
Excellent communication skills with the ability to translate
complex technical concepts related to our IAM ecosystem for both
technical and non-technical stakeholders. Exceptional sense of
ownership and the ability to work with a limited set of
requirements. Highly advanced ability to breakdown work to deliver
value incrementally. Experience leading large-scale IAM programs.
Prior responsibility as a technical lead or architect for IAM,
including mentoring teams and influencing roadmaps beyond direct
reporting lines. Demonstrated ability to balance security,
usability, and operational efficiency, with a strong bias toward
automation and measurable risk reduction. Skills you Have Access
Management Tools & Technologies (NM) (Expert) Leadership (Expert)
Adaptive Communication (Expert) Cloud Deployment Model (Expert)
Continuous Improvement (Expert) Learning and Agility & Critical
Thinking (Expert) Compensation Range: Pay Range - Start:
$140,000.00 Pay Range - End: $260,000.00 Geographic Specific Pay
Structure: Structure 110: Structure 115: We believe in fairness and
transparency. It’s why we share the salary range for most of our
roles. However, final salaries are based on a number of factors,
including the skills and experience of the candidate; the current
market; location of the candidate; and other factors uncovered in
the hiring process. Grow your career with a best-in-class company
that puts our clients interests at the center of all we do. Get
started now! Northwestern Mutual is an equal opportunity employer
who welcomes and encourages diversity in the workforce. We are
committed to creating and maintaining an environment in which each
employee can contribute creative ideas, seek challenges, assume
leadership and continue to focus on meeting and exceeding business
and personal objectives. Skills Talent Development & Planning (NM)
- Beginner, Learning Agility & Critical Thinking (NM) - Expert,
Cross Functional Partnering & Planning (NM) - Expert, Business
Automation (NM) - Expert, Accountability (NM) - Beginner, Customer
Centricity (NM) - Expert, Access Management Tools & Technologies
(NM) - Expert, Cloud Deployment Models (NM) - Expert, Identity
Protocols (NM) - Expert, Security Practices (NM) - Expert,
Continuous Improvement (NM) - Expert, Technical Problem Solving
(NM) - Expert, Analytical Thinking (NM) - Expert, Compliance (NM) -
Expert, DevSecOps (NM) - Advanced, Strategic Vision & Planning (NM)
- Intermediate, Stakeholder Relationship (NM) - Expert, Strategic
Thinking (NM) - Expert, Adaptive Communication (NM) - Expert,
Business Influence (NM) - Beginner, Identity & Access Management
Industry Standards (NM) - Expert
Keywords: Northwestern Mutual, Chicago , Principal IAM Engineer, IT / Software / Systems , Saint Francis, Illinois