ServiceNow

Senior Security Software Engineer, IAM - Moveworks

Full-time · Mountain View, CA
✓ Verified live on the employer's own system · added 3 days ago
Save search
Mid-level · 5+ yrs exp

Requirements

Experience: 5+ years

Skills & tools

SecurityManagementProgrammingCloud PlatformsCloud EngineeringDevopsSiemOperations
Apply on company site ↗ See your fit → free

Full job description

Do you care deeply about secure access at scale? Making sure the right people have the right access, exactly when they need it, without slowing teams down? Join Moveworks and help shape the future of our identity and access strategy.

At Moveworks, we believe great security is an enabler, not a blocker. As a Senior Identity & Access Management Engineer, you'll be a hands-on technical developer, coding, designing, building, and scaling IAM solutions across cloud infrastructure, SaaS applications, and internal systems. You'll own the development of IAM initiatives end-to-end, from untangling ambiguous access challenges to architecting secure, automated solutions and driving them into production.

In this role, you'll develop robust access models across AWS, Azure, Kubernetes, and beyond; reduce privilege sprawl through thoughtful role design; and build strong observability through logging, metrics, and reporting in our SIEM. You'll modernize access reviews to deliver real security impact with minimal friction, continuously de-risk IAM threats, and partner closely with teams to drive adoption of secure-by-default patterns.

Your work will directly protect Moveworks' most critical systems while enabling our engineers to move fast, safely, and confidently.

- Be the technical developer to drive IAM application development: Code, design, and implement solutions with extensive knowledge in AWS, Azure, Teleport, and Terraform. Enabling robust and reliable solutions to keep our engineering teams active.

- Drive IAM projects end-to-end: Take ambiguous access problems, understand and have the ability to define requirements, architect solutions, and own the rollout/operationalization (not just the design).

- Develop with secure access models in mind: Continuously develop role design improvements and access assignment patterns across AWS, Kubernetes, SaaS apps, and internal systems to reduce unnecessary privileges, minimize manual grants, and create scalable "safe baseline" access that covers routine work without daily elevation.

- Develop on operationalizing logging and metrics: Ensure access changes are observable in our Security Information and Event Management (SIEM) tool; build repeatable reporting that surfaces risky access and drift.

- Run and improve user access reviews (UAR): Develop, execute and design a UAR process & solution that meets compliance requirements while improving real security signal-minimizing approver burden through scoping, automation, and clear decision support.

- Develop technology to continuously de-risk: Identify high-risk permissions and misuse paths, propose appropriate controls and mitigations, drive adoption with partner teams, and develop solutions to continuously de-risk.

- Operate with strong security judgment and high signal: Reliably distinguish meaningful IAM risk from noise, gather context efficiently, and escalate with crisp rationale and actionable mitigations.

- Document and standardize the paved road: Write lightweight procedures, runbooks, and automation so access decisions are consistent, scalable, and not dependent on tribal knowledge.

- Experience: 5+ years of experience developing and maintaining IAM products/tools.

- Automation-first mindset: Experience writing production-ready scalable software, Infrastructure as Code, and using AI coding tools to build reliable automation.

- IAM Expertise: Strong grasp of IAM best practices, techniques, and common failure modes (e.g., least privilege, privilege escalation paths, separation of duties, breakglass, auditability). Ability to spot dangerous permissions and identify suitable mitigations and controls.

- Educational Background: BS+ in computer science or a related field, or equivalent relevant experience.

ServiceNow is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, creed, religion, sex, sexual orientation, national origin or nationality, ancestry, age, disability, gender identity or expression, marital status, veteran status, or any other category protected by law.

In addition, all qualified applicants with arrest or conviction records will be considered for employment in accordance with legal requirements.

  • Experience: 5+ years of experience developing and maintaining IAM products/tools.
  • Automation-first mindset: Experience writing production-ready scalable software, Infrastructure as Code, and using AI coding tools to build reliable automation.
  • IAM Expertise: Strong grasp of IAM best practices, techniques, and common failure modes (e.g., least privilege, privilege escalation paths, separation of duties, breakglass, auditability). Ability to spot dangerous permissions and identify suitable mitigations and controls.
  • Educational Background: BS+ in computer science or a related field, or equivalent relevant experience.

Do you care deeply about secure access at scale? Making sure the right people have the right access, exactly when they need it, without slowing teams down? Join Moveworks and help shape the future of our identity and access strategy.

At Moveworks, we believe great security is an enabler, not a blocker. As a Senior Identity & Access Management Engineer, you’ll be a hands-on technical developer, coding, designing, building, and scaling IAM solutions across cloud infrastructure, SaaS applications, and internal systems. You’ll own the development of IAM initiatives end-to-end, from untangling ambiguous access challenges to architecting secure, automated solutions and driving them into production.

In this role, you’ll develop robust access models across AWS, Azure, Kubernetes, and beyond; reduce privilege sprawl through thoughtful role design; and build strong observability through logging, metrics, and reporting in our SIEM. You’ll modernize access reviews to deliver real security impact with minimal friction, continuously de-risk IAM threats, and partner closely with teams to drive adoption of secure-by-default patterns.

Your work will directly protect Moveworks’ most critical systems while enabling our engineers to move fast, safely, and confidently.

  • Be the technical developer to drive IAM application development: Code, design, and implement solutions with extensive knowledge in AWS, Azure, Teleport, and Terraform. Enabling robust and reliable solutions to keep our engineering teams active.
  • Drive IAM projects end-to-end: Take ambiguous access problems, understand and have the ability to define requirements, architect solutions, and own the rollout/operationalization (not just the design).
  • Develop with secure access models in mind: Continuously develop role design improvements and access assignment patterns across AWS, Kubernetes, SaaS apps, and internal systems to reduce unnecessary privileges, minimize manual grants, and create scalable “safe baseline” access that covers routine work without daily elevation.
  • Develop on operationalizing logging and metrics: Ensure access changes are observable in our Security Information and Event Management (SIEM) tool; build repeatable reporting that surfaces risky access and drift.
  • Run and improve user access reviews (UAR): Develop, execute and design a UAR process & solution that meets compliance requirements while improving real security signal—minimizing approver burden through scoping, automation, and clear decision support.
  • Develop technology to continuously de-risk: Identify high-risk permissions and misuse paths, propose appropriate controls and mitigations, drive adoption with partner teams, and develop solutions to continuously de-risk.
  • Operate with strong security judgment and high signal: Reliably distinguish meaningful IAM risk from noise, gather context efficiently, and escalate with crisp rationale and actionable mitigations.
  • Document and standardize the paved road: Write lightweight procedures, runbooks, and automation so access decisions are consistent, scalable, and not dependent on tribal knowledge.

More jobs at ServiceNow

Similar jobs near Mountain View, CA

Tell me when more Security Engineer, Level 4 jobs post near Palo Alto, CA We re-check every listing against the employer’s own board — no résumé needed.

Search Senior Security Software Engineer, IAM - Moveworks jobs near Mountain View, CA → Browse all live jobs

This posting was published by ServiceNow on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.