
At Crypto.com, our dedication to user security is led by our highly experienced Security Team. Comprising an international roster of seasoned cybersecurity experts, our team leads the company's Security, Privacy, and Security Compliance endeavors. The team includes holders of international patents for technologies integrated in our security architecture. Under the stewardship of a distinguished CISO recognized by the Forbes Technology Council and among the Global Top 100 CISOs, our team has consistently championed industry standards, acquiring certifications like ISO27001, ISO27701, ISO22301, PCI:DSS 3.2.1 (Level 1), NIST Tier 4, and SOC 2 Type II, in addition to the MPI License from Singapore MAS. Our Chief Information Security Officer reports directly to the CEO, underscoring the prioritization of security in our organization's hierarchy. Our Security Team not only places great emphasis on credentials and expertise but also deeply values hands-on experience, rapid cognition, and dynamic learning. The challenges in the world of crypto are ever-evolving, and as such, our team prides itself on quick adaptability and robust teamwork, ensuring that we stay ahead of potential threats and always safeguard our user base.
We are seeking a pro-active Mid-Level IAM Engineer with a focus on Agentic AI management in a cloud native environment to join our Identity Security Team.
In this role, you will be responsible for the design and management of a diverse identity ecosystem of Human and Non-Human Identities to ensure our company has a secure and seamless protection of our cloud-native environment.
You will act as a technical owner for various Identity Management platforms, balancing high-level automation with robust security controls. We are looking for an engineer who is not only interested in being technically deep but also efficiency-minded, leveraging modern tools and AI-augmented workflows to deliver security at scale.
Responsibilities
- Identity Ecosystem Management: Manage and optimize a suite of core identity platforms (including Okta and Microsoft Entra ID), driving the end-to-end lifecycle for users and services
- Automation & Scripting: Build and maintain scripts (Python, Bash) to automate complex identity workflows, eliminate manual provisioning, and enhance operational efficiency
- Modern Workflow: Integrate AI technologies and LLMs into your daily process to accelerate development, analyze security logs, and maintain high-quality technical documentation
- Infrastructure Access Governance: Define and manage access patterns for infrastructure-level assets. This includes governing access to servers, databases, and clusters using tools like Teleport and AWS-native IAM
- Secure Access Engineering: Partner with DevOps to implement the principle of least privilege, focusing on the use of short-lived credentials and Just-in-Time (JIT) access for infrastructure environments
- Governance Enablement: Support the Governance team by automating and optimizing the access review process; you will build the technical workflows and reporting tools that enable efficient, data-driven compliance campaigns
- Compliance Standards: Ensure technical configurations across all tools adhere to SOC2/ISO27001 standards and assist in technical evidence collection for audits
Technical Requirements
- 3–5 years of progressive experience managing enterprise-scale identity solutions
- Proven ability to manage and integrate multiple security tools simultaneously (e.g., Identity Providers, Access Management platforms, and Secrets Management solutions)
- Hands-on experience governing access and building automations within AWS. You should be familiar with AWS IAM, cross-account access patterns, and leveraging AWS services (e.g., Lambda, EventBridge) for security workflows
- Strong proficiency in Python or Bash with a track record of using APIs to automate security tasks
- Deep understanding of SAML, OAuth2, OIDC, and SCIM
- Strong troubleshooting skills and the ability to solve complex, systemic identity and access issues
Preferred Qualifications
- Experience with modern Privileged Access Management (PAM) platforms (e.g., Teleport) or Secrets Management solutions (e.g., AWS Secrets Manager)
- Practical experience using AI tools (e.g., GitHub Copilot, ChatGPT/LLMs) to enhance productivity and code quality
- Familiarity with Terraform or AWS CloudFormation for managing identity-related infrastructure
- Ability to articulate technical security requirements to stakeholders and engineering teams
Listed in: Web3 Jobs, Full Time Web3 Jobs, Developer Crypto Jobs, Engineering Crypto Jobs, Remote Web3 Jobs, Python Crypto Jobs.
IAM Engineer at Crypto.com: FAQ
Where is the IAM Engineer role at Crypto.com based?
The IAM Engineer role at Crypto.com is based in Hong Kong, Hong Kong SAR. Check the job description for any remote or hybrid options.
What skills are required for the IAM Engineer role at Crypto.com?
This IAM Engineer role is associated with the following skills and technologies:
- Full Time
- Developer
- Engineering
- Remote
- Python
Read the full job description above for the complete list of requirements.
Is the IAM Engineer role at Crypto.com full-time or contract?
Crypto.com is hiring this IAM Engineer as a full time position.
How do I apply for the IAM Engineer role at Crypto.com?
You can apply for the IAM Engineer role at Crypto.com directly on this page using the Apply button. Hong Kong, Hong Kong SAR candidates are welcome. Applications submitted through CryptoJobsList reach the employer directly.