Logo for Hard Rock Digital

Principal Identity Engineer

Role overview

Qualifications

  • Experience in security architecture and identity management
  • Understanding of Zero Trust principles and access governance
  • Familiarity with Microsoft Entra ID and related technologies
  • Ability to design policies balancing security and user experience

Responsibilities

  • Own the security architecture, standards, and roadmap for Microsoft Entra ID
  • Design Conditional Access policies for a globally distributed workforce
  • Automate the joiner-mover-leaver lifecycle for access management
  • Serve as the identity authority for Zero Trust programs

About the company

Hard Rock Digital logo

Hard Rock Digital

Sports Betting & iGaming

Hard Rock Digital is building the future of online sports betting and interactive gaming. We’re turning up the volume on sports betting in a bold new way. Known the world over for our famous cafes, casinos, hotels, and rock memorabilia collection, our newest venture takes the same Hard Rock ethos and brings it to the newly expanding online sports betting industry here in the USA. Headquartered in Hollywood, Florida, with offices in New Jersey and Texas, we are a fast-paced team dedicated to building an unrivaled betting experience for millions of sports fans everywhere.

Company details

IndustrySports Betting & iGaming
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

What are we building?

Hard Rock Digital is a team focused on becoming the best online sportsbook, casino, and social gaming company in the world. We’re building a team that resonates passion for learning, operating, and building new products and technologies for millions of consumers. We care about each customer interaction, experience, behavior, and insight and strive to ensure we’re always acting authentically.

 

Rooted in the kindred spirits of Hard Rock and the Seminole Tribe of Florida, Hard Rock Digital taps a brand known the world over as the leader in gaming, entertainment, and hospitality. We’re taking that foundation of success and bringing it to the digital space - ready to join us?

 

What's the Position?

Identity is the control plane of modern security. In a Zero Trust world, every access decision — for every employee, every administrator, and every machine — flows through the identity systems you will own. We're looking for a Principal Identity Engineer to be the technical authority on how Hard Rock Digital decides who (and what) can access which systems, when, and under what conditions.

This is a deliberately senior, high-trust role — one of three Principal openings reporting directly to our VP Security / CISO — because identity is not a slice of our security program; it is the backbone the rest of it is built on.

 

You'll be our first dedicated identity hire, inside a 16-person security organization spanning Security Operations, Risk Management, and Architecture & Engineering. Day-to-day provisioning and helpdesk sit with our IT team; your job is architecture, automation, and governance that make access safe.

If you think in terms of blast radius, least privilege, and phishing-resistant authentication — and you like owning a domain end to end rather than a corner of it — you'll feel at home here.

 

What You'll Do

Identity & Access Architecture

  • Own the security architecture, standards, authentication methods, and roadmap for Microsoft Entra ID, our primary identity provider — partnering with IT on tenant operations

  • Design and continuously refine Conditional Access policies that balance strong protection with a smooth experience for a globally distributed workforce

  • Advance our rollout of phishing-resistant, passwordless authentication (passkeys, certificate-based, FIDO2)

  • Own federation and single sign-on across our SaaS estate (SAML, OIDC, OAuth 2.0, SCIM provisioning)

 

Privileged & Just-in-Time Access

  • Own our privileged access model using Microsoft Entra PIM — separate admin identities, just-in-time elevation, and approval workflows

  • Design and maintain break-glass procedures and safeguards for our most sensitive administrative paths

  • Reduce standing privilege across the environment and make "least privilege, just in time" the default

 

Identity Lifecycle & Access Governance

  • Automate the joiner-mover-leaver lifecycle so access is granted, changed, and revoked accurately and promptly

  • Build and run access reviews and entitlement governance, partnering with our GRC team on audit evidence (ISO 27001, SOC 2, PCI DSS, GLI-19/GLI-33)

  • Make access decisions auditable, explainable, and continuously right sized

 

Non-Human & Workload Identity

  • Govern service principles, managed identities, and workload/federated credentials across AWS, Azure, and GCP

  • Partner on secrets governance across our secrets management platforms to shrink the number of long-lived, standing secrets

  • Partner with our Principal Cloud & Network Security Engineer, who owns service-to-service authentication (mTLS, service mesh)

 

Zero Trust Strategy

  • Serve as the identity authority for our Zero Trust program, aligned to NIST SP 800-207 and the CISA Zero Trust Maturity Model (Identity pillar)

  • Partner with our cloud and network security function on identity-aware access through Cloudflare Access

  • Partner with Security Operations to make identity signals (risky sign-ins, privileged elevation, MFA anomalies) first-class inputs to detection and response

  • Advise on customer identity (CIAM) and account-security architecture — partnering with our Principal Product Security Engineer, who owns the application security of player-facing account flows, and with product engineering

  • This is a big charter by design — year one is about sequencing. You'll set the identity roadmap with the CISO, with leadership backing to execute against it. Our 24/7 Security Operations team owns monitoring; you'll be the escalation point for identity-related incidents.

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at Hard Rock Digital

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.