Taxwell helps everyday Americans get every tax advantage they deserve by finding credits and deductions they never even knew existed. Our tax preparation software offers easy guidance and ensures your maximum tax refund. We strive to build a team of like-minded experts in both tax and technology who align with our brand purpose, are advocates for our customers and have a fresh, non-traditional approach to the tax industry.
As an Enterprise and Identity Security Engineer, you will be responsible for securing our enterprise and identity and access management infrastructure. The successful candidate will be responsible for engineering robust identity governance solutions, integrating single sign-on (SSO) technologies, managing and protecting Active Directory and maintaining the enterprise cloud environment.
In addition, this role includes broader enterprise security responsibilities, such as establishing and maintaining system hardening standards, collaborating on enterprise architecture improvements, and ensuring compliance with security best practices across the organization.
The ideal candidate will be highly collaborative, balancing the right level of security with business objectives, and working to creatively solve complex problems.
Key Responsibilities
Identity Security and Governance
• Design and implement identity governance frameworks to ensure compliance and robust security.
• Automate identity lifecycle management (provisioning, deprovisioning) using Microsoft tools and best practices.
• Enforce least privilege access through role-based access control (RBAC) and privileged access management (PAM) in the Enterprise and cloud based environments.
Enterprise Security Standards
• Develop, implement, and maintain hardening standards for operating systems, applications, and network devices.
• Review and audit system configurations to ensure compliance with security baselines (e.g., CIS Benchmarks, DoD STIGs).
Single Sign-On (SSO) Integration
• Engineer and integrate SSO solutions to support secure and seamless access to enterprise applications.
• Collaborate with application owners to onboard new services into the SSO ecosystem.
• Monitor and resolve authentication issues to maintain operational reliability.
Active Directory Management and Protection
• Strengthen AD security by implementing advanced protection measures, including tiered administrative models and audit controls.
• Conduct regular reviews and mitigate vulnerabilities in AD configurations and policies.
Enterprise Cloud Security and Maintenance
• Regularly review the enterprise tenant for compliance, security, and performance optimizations.
• Ensure compliance with organizational and regulatory security standards with the enterprise cloud environment.
Monitoring and Incident Response
• Implement and manage tools for monitoring identity and enterprise security systems.
• Collaborate with the incident response team to investigate and remediate identity-related security incidents.
What will you need:
• 5+ years of experience in identity and access management (IAM), enterprise security engineering, and system hardening.
• Hands-on experience with:
o Microsoft Entra (Azure AD), Active Directory, and hybrid identity models.
o Single Sign-On technologies (e.g., SAML, OAuth, Okta).
o Cloud identity management AWS Cognito.
• Strong knowledge of enterprise architecture frameworks and how to integrate security into them.
• Proven ability to secure and manage large-scale enterprise AD environments.
Preferred:
• Cloud Certifications (AWS Certified Security / Solution Architect, Azure Security Engineer, etc.)
• Proficiency in scripting or automation (e.g., PowerShell, Python) for system and identity
Location: