Principal IAM/AD Engineer
3 days ago
Summary
MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More:
Do you design secure, resilient Active Directory at scale and enjoy automating identity operations? Join our Security Operations IAM team responsible for enterprise identity foundations across on‑prem Active Directory and Microsoft Entra ID. We partner with Security Engineering, IT, and Compliance to deliver hardened directory services, modern authentication, ITDR capabilities and Zero Trust controls that enable the business.
MathWorks nurtures growth, appreciates inclusivity, encourages initiative, values teamwork, shares success, and rewards excellence.
Responsibilities
- Operate and maintain on‑premises Active Directory: domain controller health, patching, promotion/demotion, replication, sites/subnets, time services, SYSVOL/GPO health, and capacity monitoring.
- Implement and manage Entra ID capabilities: Conditional Access, Identity Protection risk policies, PIM, and app registrations/service principals.
- Monitor, troubleshoot, and optimize directory synchronization and identity lifecycle flows.
- Partner with our SOC to drive a successfulITDRprogram.Helpbuild and tune detections to identify threats such as DCSync, Golden/Silver Ticket, Kerberoasting, pass‑the‑hash/ticket, risky sign‑ins, and impossible travel.
- Harden AD and Entra ID: apply baselines, admin tiering, PAW usage, secure delegation, privileged workflow controls, regular access reviews, and identity threat hunting.
- Automate identity operations and ITDR tasks with PowerShell and APIs (Graph/Entra): alert enrichment, response runbooks, access certifications, reporting, and drift remediation.
- Lead complex troubleshooting and incident response for identity (Kerberos/NTLM, replication, DCSync/Golden/Silver Ticket detections, Conditional Access failures); drive root cause and preventive actions.
- Produce runbooks, standards, and change records; mentor team members and collaborate with stakeholders to align IAM operations with business needs.
Minimum Qualifications
- A bachelor's degree and 10 years of professional work experience (or equivalent experience) is required.
Additional Qualifications
A successful candidate for this role will have a combination of some or all of the following skills/experience:
- 7+ years in enterprise Active Directory operations and hardening including DC lifecycle management, sites/services, replication, BCDR, and observability.
- Hands-on experience with Microsoft Entra ID: Conditional Access, MFA, Identity Protection, PIM, app registration and service principal governance.
- Experience operating Azure AD Connect or Cloud Sync in hybrid identity environments.
- Identity Governance and Administration experience for provisioning, role/entitlement models, and access certifications.
- Proficiency with PowerShell, Python and Microsoft Graph/Entra APIs for automation.
- Experience with privileged access models and administrative tiering.
- Ability to support after-hours maintenance and incident response as needed.
- SSO/Federation: SAML/OIDC/OAuth; SCIM provisioning to SaaS apps.
- AD security: trusts, LDAP/LDAPS, constrained delegation, GPO hardening.
- PKI and certificates: AD CS, CRL/OCSP, auto enrollment, renewal automation for workloads and service principals/certs.
- Backup/Recovery: authoritative restore, forest recovery planning and drills.
- IaC/automation: DSC, GPO as Code, Git workflows; CI/CD familiarity for scripts/policies.
- Compliance familiarity: CMMC, NIST CSF/800‑53/171, ISO 27001
-
Principal IAM/Active Directory Engineer
1 week ago
Natick, Massachusetts, United States CyberSN Full timeCompany DescriptionCyberSN specializes in cybersecurity workforce risk management and talent acquisition, offering comprehensive talent intelligence solutions that empower organizations to build, retain, and diversify their cybersecurity teams. By utilizing the CyberSN Talent Intelligence Platform, security leaders can gain a 360-degree view of their teams...
-
OTC/FTM Principal Analyst
3 days ago
Natick, Massachusetts, United States Cognex Corporation Full timeJob DescriptionAbout us: Cognex is the largest, most successful and recognized global player in industrial machine vision We are a financially strong, international company with no debt and have been in business for over 40 years. Using advanced optics, image sensors and artificial intelligence software Cognex vision and ID systems capture an image then...
-
Principal IAM/AD Engineer
1 day ago
Natick, United States MathWorks Full timeBase pay range $136,900.00/yr - $219,000.00/yr Overview MathWorks has a hybrid work model that enables staff members to split their time between office and home. This model provides the advantage of in‑person collaboration with colleagues while also supporting flexible at‑home life optimizations. Learn More:
-
Principal IAM/AD Engineer
19 hours ago
Natick, United States The MathWorks, Inc. Full timeJob Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding. Do you...
-
Principal IAM/AD Engineer
1 week ago
Natick, MA, United States The MathWorks Inc Full timeJob Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding. Do you...
-
Principal IAM/AD Engineer
5 days ago
Natick, MA, United States The MathWorks Inc Full timeJob Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding. Do you...
-
Principal IAM/AD Engineer
1 day ago
Natick, MA, United States The MathWorks Inc Full timeJob Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding. Do you...
-
Principal IAM/AD Engineer
2 hours ago
Natick, MA, United States The MathWorks Inc Full timeJob Summary MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding. Do you...
-
Senior IAM
1 day ago
Natick, United States MathWorks Full timeA leading technology company is seeking a Mid-Senior level professional to join their Security Operations IAM team in Natick, MA. The role involves maintaining and managing Active Directory and Microsoft Entra ID, automating identity operations, and driving incident response. Candidates should have significant experience in directory management and a strong...
-
Senior IAM
20 hours ago
Natick, United States The MathWorks, Inc. Full timeA global software company seeks an experienced professional to manage and secure their Active Directory environment. This role involves operating on-premises Active Directory, managing Microsoft Entra ID capabilities, and automating identity operations with tools like PowerShell and Graph APIs. Candidates should have a bachelor's degree and substantial...
-
Principal Engineer
3 weeks ago
Natick, United States Exponent Full timePrincipal Engineer - Geotechnical Engineering (M.S./Ph.D.) ID: 2024-1850 Location: US-NY-New York, US-TX-Houston, US-WA-Bellevue, US-CO-Denver, US-IL-Chicago, US-MA-Natick, US-GA-Atlanta, US-FL-Tampa Practice: Civil & Structural Engineering Position Type: Full-time Posted Salary Range: USD $175,000.00 - USD $265,000.00 /Yr. About Exponent Exponent is the...
-
Principal Data Engineer
2 weeks ago
Natick, United States MathWorks Full timeJob Summary Job: 32618-MKAI Location: Department: We are seeking a self-motivated and self-directed data engineer / software engineer to develop and maintain our license usage data system. This position plays a key role in a business-critical initiative and requires excellent hands-on software development skills as well as a big-picture perspective. You will...