Identity & Access Management Engineer
BRMi · UNAVAILABLE, VA, US · United States · Remote
Posted Aug 6, 2026
Sign up free: we match you to jobs like this, tailor your application and fill the form. 2 free applications every day.
Overview
BRMi is seeking a Identity & Access Management Engineer to support and maintain the enterprise Identity and Access Management (IAM) program for an IBM z/OS mainframe environment. This role is responsible for administering RACF security, managing the identity lifecycle, enforcing access controls, and ensuring compliance with enterprise security policies and regulatory requirements.
The ideal candidate will have extensive experience with RACF administration, IBM zSecure, and mainframe identity management practices. This individual will work closely with cybersecurity, infrastructure, application, audit, and compliance teams to ensure secure access to critical mainframe resources while supporting governance initiatives, access reviews, and operational excellence.
Benefits:• Comprehensive Medical, Dental, and Vision Insurance• Employer-Paid Life Insurance• Employer-Paid Short-Term and Long-Term Disability Insurance• 401(k) • Paid Time Off (PTO) that includes Vacation Leave, Sick Leave, and 11 Paid Holidays• Educational Assistance
Salary: 125k-159k
**Can be 100% remote in TX, VA, MD, DC, or FL**
**High Profile roles may require candidates to fly to customer HQ for in person interview (expenses paid)**
Click here to learn about BRMi's culture.
Click here to see BRMi’s Glassdoor reviews
Responsibilities
Administer and maintain the IBM RACF security environment for enterprise z/OS systems.
Manage the complete identity lifecycle, including user provisioning, modifications, role changes, transfers, and deprovisioning.
Configure and maintain RACF User, Group, Resource, Dataset, CICS, and DB2 security profiles.
Configure and maintain RACF SETROPTS parameters to ensure compliance with enterprise security standards.
Implement and enforce least privilege, role-based access control (RBAC), and segregation of duties (SoD) principles across the mainframe environment.
Review, evaluate, and approve user access requests in accordance with established IAM governance processes and security policies.
Partner with business units, application teams, and cybersecurity to design and implement secure access models for new and existing applications.
Provide Tier 3 support for complex identity, authentication, authorization, and RACF-related incidents and service requests.
Troubleshoot access failures, permission conflicts, RACF violations, and authorization issues across production and non-production environments.
Utilize IBM zSecure to perform security administration, reporting, compliance monitoring, and audit support.
Support periodic access certifications, entitlement reviews, privileged access reviews, and audit activities.
Monitor compliance with internal security standards, regulatory requirements, and corporate IAM policies.
Develop and maintain RACF standards, operational procedures, security documentation, and technical guidelines.
Identify opportunities to automate IAM administration and reporting using…