Identity & Access Management (IAM) Software Engineer/Analyst
Being good neighbors – helping people, investing in our communities, and making the world a better place – is who we are at State Farm. It is at the core of how we operate and the reason for our success. We're moving with urgency to become a Next Gen Good Neighbor, with technology that strengthens human connections and enhances the customer experience. As an employee, you'll spend less time navigating systems and more time applying judgment, empathy, and expertise in the moments that matter most.
The Identity and Access Management product suite is looking for an Identity & Access Control Analyst with a software development background to be a member of State Farm’s Authorization Management team. The product team provides business areas with the tooling, solutions, and oversight required to define and maintain the principle of least privilege. This position will enable the selected team member to work across the enterprise to design and develop solutions which support the management of accesses and entitlements for all of State Farm’s human and non-human identities.
Hybrid: Qualified candidates (in or near hub locations listed below) should plan to spend time working from home and some time working in the office as part of our hybrid work environment. Hub locations: Dunwoody, GA; Richardson, TX; Tempe, AZ; or Bloomington, IL. Applicants must be eligible to lawfully work in the U.S. immediately; employer will not sponsor applicants for U.S. work authorization for this opportunity.
Responsibilities
- Develop automation and self-service strategies and tooling options.
- Develop, automate, and support State Farm’s identity and access management tools.
- Develop, support, and test end-to-end information security solutions, controls, tools, techniques leveraging existing or new capabilities, patterns, and/or processes to govern and protect State Farm assets.
- Develop, document, and maintain information security identity and access control strategy and operational procedures, guidelines, and processes.
- Apply identity and access control concepts and practices in accordance with industry standards, security, risk management techniques, and governance/compliance requirements.
- Research emerging identity and access security topics, threats, capabilities, and solution options.
- Engage with teams across technology to understand needs to build identity and access control into technologies and solutions.
- Understand security identity and access model of an application and design Role Base Access Control roles to support the given security access model.
- Maintain a working knowledge of current and emerging technologies (e.g., AWS, new platforms, vendor products, etc.) and technology related practices (e.g., Agile, Product Management, DevOps).
- Build and maintain access certification workflows: Develop the workflows that create, route, track, and close access review campaigns.
- Integrate with identity and access data sources: Build and maintain integrations that collect accurate user, account, role, group, and entitlement data from authoritative systems.
- Design secure, reliable APIs and services: Develop backend services and APIs that support certification, reporting, workflow orchestration, and integrations while enforcing security controls.
- Support access remediation: Build processes that turn certification decisions into revocation tasks, automated deprovisioning, tickets, or exception records.
- Ensure auditability and evidence retention: Capture reliable evidence showing what access was reviewed, who reviewed it, what decision was made, and whether remediation occurred.
- Participate in product delivery and operations: Contribute to story refinement, development, testing, code review, deployments, troubleshooting, and production support.
- Protect sensitive identity and access data: Ensure certification systems handle identity, entitlement, and security data securely through access controls, logging, encryption, and separation of duties.
- Handle service tickets, communication with business partners, business continuity, Viva Engage, control audits, supporting implemented controls, etc.
- May be required to work nights and weekends.
- Apply discretion and appropriate security measures when handling confidential and sensitive information.
Requirements
- Prior software development experience.
- Cloud Platform Experience: AWS, Azure, GCP.
- Application development tools (editors, compilers).
- Continuous Integration/Continuous Delivery pipelines, automation tools.
- Framework/Library: React, Angular.
- Spring Framework: Spring, Spring Boot.
- Source Code Management (Git, GitLab).
- Understanding of software design patterns, testing techniques, and software security scanning.
- Build and maintain applications and tools using scripting languages (e.g., PERL, Python, PowerShell, Bash, NodeJS, JavaScript, TypeScript).
- Strong communication skills with the ability to relay complex technical knowledge to multiple audiences.
- API Development/Testing Tools: Bruno, Insomnia.
- Credential Management: HashiCorp Vault, AWS Secrets Manager.
- Integrated Development Environment: Visual Studio, IntelliJ IDEA, etc.
Qualifications
- Solid understanding of security best practices.
- Ability to integrate multiple technologies through technical design.
- Strong thought leader with ability to think analytically and work with a team to solve problems.
- Experience developing and maintaining operational procedure documentation and architecture diagrams, roadmaps, industry research summaries, etc.
- Ability to foster innovation, encourage diversity of thought, and incorporate new ideas.
- Ability to deploy applications/functions to public cloud platforms through industry tools utilized by State Farm (e.g., Terraform, Git, etc.).
- Understanding of security principles, best practices, and compliance regulations including knowledge of industry standards like ISO 27001, NIST, and NYCRR 500.
- Suggested certifications may include CISSP, Security+, GSEC, CISM, CRISC, or GCSA.
Pay
Compensation is based on a standard 38:45-hour work week. Potential starting salary range: $97,000 - $177,000. Starting salary will be based on skills, background, and experience. High end of the range limited to applicants with significant relevant experience. Potential yearly incentive pay up to 15% of base salary.
Benefits
- Get Paid! Eligible for an annual raise and bonus.
- Stay Well! Robust health and wellbeing programs. State Farm pays most of your healthcare premium, and multiple healthcare plan options are available, including a high deductible plan. All medical plans provide 100% coverage for in-network preventative care. Access to vision, dental, telemedicine, 24/7 mental health professionals, and much more.
- Develop and Grow! Educational benefits like industry-leading training programs, tuition assistance programs, employee resource groups, and mentoring.
- Plan Ahead! Benefits like fertility/IVF/adoption assistance, college coaching, national discount programs, interactive monthly financial workshops, free financial coaching, and financing through State Farm Federal Credit Union.
- Take a Little “You” Time! Generous time off policies including up to 20 days annually plus parental leave, paid holidays, celebration day, life leave (40 hours/year), bereavement leave, and community service/education support days.
- Give Back! Matching Gift Program, Good Neighbor Grant Program, and Employee Assistance Fund.
- Finish Strong! Plan for retirement using free financial advisors and a 401(k) plan with company contributions of up to 7% of your salary.