Analyst Security IAM
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
The IAM Engineer will play a critical role in delivering secure and reliable identity services across Mattel's enterprise. This position is responsible for implementing, supporting, and enhancing IAM and PAM solutions, including identity lifecycle automation, access controls, privileged account management, and integration with enterprise applications. As an IAM Engineer, this role serves as a key escalation point for L2 and L3 IAM and PAM issues, handling advanced troubleshooting, incident resolution, and remediation. The role supports operational stability and compliance activities such as User Access Reviews (UARs), audit support, and reporting. The engineer collaborates with IAM Architects, PAM teams, ITDR analysts, and security teams to ensure secure and compliant identity services, while driving automation to streamline processes and reduce manual effort. Objectives of this Role Implement and support enterprise IAM and PAM platforms, ensuring high availability, security, and compliance. Provide support in fixing the (Joiner-Mover-Leaver) and support integrations across Workday, Okta, AD/Entra ID, and other cloud or on-prem applications. Administer and maintain Privileged Access Management solutions (e.g. CyberArk, Okta OPA, BeyondTrust, Delinea, Cerby). Provide Support for IAM/PAM issues, integrations, and API troubleshooting. Lead threat detection and incident response activities in collaboration with ITDR Analysts, using tools such as CrowdStrike ITP, Semperis DSP (or similar), with proven risk remediation capabilities. Support compliance initiatives including User Access Reviews (UARs), audit reporting, and evidence gathering for SOX, PCI, and other frameworks. Participate in disaster recovery planning, incident management, and risk remediation efforts. Develop and maintain runbooks, workflows, and documentation for operational consistency and knowledge sharing. Collaborate with cross-functional teams to deliver IAM services aligned with business and security objectives. Additional duties may be assigned as necessary to meet the ongoing needs of the organization. Work hours may vary, and the position may require availability during off-business hours as dictated by project needs, system changes, or security events.