Logo for Kemper

IAM Engineer

Role overview

Qualifications

  • 5+ years of experience in IT, preferably in Security
  • Identity and Access Management experience
  • Privileged Access Management experience
  • In-depth understanding of modern authentication solutions using SAML/OAuth/OIDC

Responsibilities

  • Generate solutions and policies in support of the Privileged Access Management and Identity Governance for the company and consumers
  • Integrate and manage SSO and MFA for cloud and on-prem applications using SAML, OAuth, and SCIM
  • Automate identity workflows, group assignments, access revocations, and certification campaigns using tools like PowerShell, Python, or IDP Workflows
  • Enforce access controls aligned to Zero Trust, RBAC, and JML (Joiner-Mover-Leaver) lifecycle policies

Key facts

Hard skills

Other skills

  • Governance
  • Collaboration

About the company

Kemper logo

Kemper

Insurance

The Kemper family of companies is one of the nation’s leading specialized insurers. With approximately $13 billion in assets, Kemper is improving the world of insurance by providing affordable and easy-to-use personalized solutions to individuals, families and businesses through its Auto, Personal Insurance, and Life brands. Kemper serves over 5.3 million policies, is represented by approximately 29,000 agents and brokers, and has approximately 9,500 associates dedicated to meeting the ever-changing needs of its customers.

Company details

Company typeXLarge
IndustryInsurance
Company size5001 - 10000

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Location(s)

Alpharetta, Georgia, Birmingham, Alabama, Chicago, Illinois, Downers Grove, Illinois, Jacksonville, Florida

Details

Kemper is one of the nation’s leading specialized insurers. Our success is a direct reflection of the talented and diverse people who make a positive difference in the lives of our customers every day. We believe a high-performing culture, valuable opportunities for personal development and professional challenge, and a healthy work-life balance can be highly motivating and productive. Kemper’s products and services are making a real difference to our customers, who have unique and evolving needs. By joining our team, you are helping to provide an experience to our stakeholders that delivers on our promises. 

Position Summary

The IAM Engineer is responsible for design, development, automation, and deployment of identity and access management (IAM) solutions for the enterprise. This includes SSO optimization and federation integrations, enforcement of policy controls through scripting, and working with cross-functional teams to secure identity lifecycles across IT and OT environments.

Position Responsibilities

  • Generate solutions and policies in support of the Privileged Access Management and Identity Governance for the company and consumers
  • Integrate and manage SSO and MFA for cloud and on-prem applications using SAML, OAuth, and SCIM
  • Automate identity workflows, group assignments, access revocations, and certification campaigns using tools like PowerShell, Python, or IDP Workflows
  • Enforce access controls aligned to Zero Trust, RBAC, and JML (Joiner-Mover-Leaver) lifecycle policies
  • Harden IAM configurations in hybrid environments (e.g., password policies, conditional access, privileged account handling)
  • Participate in the evaluation and integration of IAM-related technologies and security enhancements
  • Assist with privileged access management (PAM), identity federation design, and role based grants
  • Support audit and compliance efforts by maintaining evidence, resolving control gaps, and improving access visibility
  • Engage application teams and stakeholders to design and implement secure authentication / authorization to their workstreams
  • Drive standards and support implementations with integrations to and from third party directories

Position Qualifications

  • 5+ years of experience in IT, preferably in Security
  • Identity and Access Management experience
  • Privileged Access Management experience
  • Identity Governance experience
  • NIST and/or SOC2 experience a plus
  • In-depth understanding of modern authentication solutions using SAML/OAuth/OIDC  
  • In depth knowledge of Microsoft Active Directory
  • Proven track record in the area PAM security
  • Capable in all information security domains including regulatory compliance, risk assessments, controls implementations, governance frameworks and audit processes
  • Ability to collaborate with high-performance teams and individuals to drive results
  • Able to integrate with cloud based IAM vendors
  • Demonstrated customer service orientated work ethic
  • Experience with tools such as MS Entra, Active Directory,  ForgeRock, OKTA,  CyberArk, SailPoint
  • This position works in the Kemper office or can be remote if candidate is not local.

The range for this position is $89000 to $148100. When determining candidate offers, we consider experience, skills, education, certifications, and geographic location among other factors. This job is eligible for an annual discretionary bonus and Kemper benefits (Medical, Dental, Vision, PTO, 401k, etc.).

Kemper is proud to be an equal opportunity employer. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran, disability status or any other status protected by the laws or regulations in the locations where we operate.

We are committed to supporting diversity and equality across our organization and we work diligently to maintain a workplace free from discrimination. Kemper is focused on expanding our Diversity, Equity and Inclusion efforts to align with our vision, mission, and guiding principles.  Kemper does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Kemper and Kemper will not be obligated to pay a placement fee.


Kemper will never request personal information, such as your social security number or banking information, via text or email.  Additionally, Kemper does not use external messaging applications like WireApp or Skype to communicate with candidates.  If you receive such a message, delete it.  

#LI-AK

#LI-Remote

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

Related jobs

Other jobs at Kemper

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.