collaboration, training, and other departmental or university business needs. The university reserves the right to modify, suspend, or terminate the remote work arrangement at any time. About Information Technology @ Cornell What will you do: Reporting to the Assistant Director for Identity & Access Management, the Identity Management Developer (CEMI) provides cybersecurity-focused technical leadership and engineering expertise in support of Cornell University's Identity & Access Management services within the university IT Security Office (ITSO). This position plays a key role in ensuring the secure, reliable, and effective delivery of enterprise authentication, authorization, and directory services that underpin the university's academic, research, and administrative operations. The Identity Management environment at Cornell consists of a diverse ecosystem of homegrown, open-source, and vendor-provided applications and services. The Identity Manager Developer operates primarily in an engineering-focused capacity, contributing deep technical expertise to the design, planning, implementation, and ongoing improvement of identity services. This role is instrumental in maintaining a strong security posture while enabling scalability, resiliency, and ease of use for a broad and varied campus community. In addition to technical leadership, this position serves as a key liaison between ITSO, campus business units, and external partners. The Identity Management Developer supports strong service relationships by helping stakeholders understand identity service capabilities, status, and access processes, and by translating complex technical concepts into clear, non-technical guidance when needed. The role also contributes to the evolution of next-generation Identity Management solutions by collaborating with vendors, peer institutions, and internal partners to stay current with emerging technologies and best practices in higher education cybersecurity. The Identity Management Developer is expected to work collaboratively within the Identity Management team and across ITSO to meet service levels, support operational objectives, and respond effectively to system outages or changes, including availability outside of standard university business hours when required. This is a two (2) year term appointment which may be ended or extended based on organizational needs, funding availability, and performance. This position is eligible for remote work within the United States. However, while the position is remote, periodic travel to Cornell University's Ithaca, New York campus will be required for meetings, team collaboration, training, and other departmental or university business needs. The university reserves the right to modify, suspend, or terminate the remote work arrangement at any time. While position responsibilities vary, every member of our community is expected to foster a culture of belonging and a healthy work environment by communicating across differences; being cooperative, collaborative, open, and welcoming; showing respect, compassion, and empathy; engaging and supporting others regardless of background or perspective; speaking up when others are being excluded or treated inappropriately; and supporting work/life integration of oneself and others. Required Qualifications: Bachelor's degree with a minimum of three to five years of relevant experience, or an equivalent combination of education and experience. Demonstrated success providing technical support and application or middleware development in a distributed, team-focused computing environment. Demonstrated expertise with one or more scripting or programming languages, such as Java, Perl, Python, and/or VB (.NET), ReactJS, Ruby, and/or PHP Approximately 1 year+ of professional experience developing ReactJS applications and/or Ruby on Rails. System administration experience with Linux required; and Windows experience preferred. Working to advanced knowledge of one or more identity and access management technologies, including directory services, virtual directories, SAML2, OAuth2, LDAP, and Active Directory authorization technologies. Proven experience writing technical design documentation, conducting code reviews, and working with version control systems such as Git . Ability to translate user and business needs into clear functional requirements and technical specifications, and to promote effective and efficient information sharing. Demonstrated ability to communicate complex Identity Management concepts--including system functions, capabilities, and processes--into business terms that are clear, accessible, and meaningful to non-technical stakeholders. Proven ability to work effectively in a dynamic, deadline-driven, and complex environment with multiple competing priorities. Strong facilitation, problem-solving, analytical, reasoning, and judgment skills, with the ability to evaluate options and recommend sound technical solutions. Experience supporting and managing mission-critical systems in a production environment, including troubleshooting and incident response. Proven ability to identify, scope, and implement opportunities for automation or architectural improvements that enhance system reliability, security, or efficiency. Ability to cultivate and develop inclusive working relationships with students, faculty, staff, and community members. Preferred Qualifications: Experience working in higher education, research, or similarly complex enterprise environments, particularly those with diverse identity populations and federated access needs. Familiarity with cloud-based identity platforms and services (e.g., Azure AD, AWS IAM, Google Identity, or similar ). Experience with identity lifecycle management, provisioning/de-provisioning workflows, and access governance. Knowledge of zero trust, least-privilege, and modern identity security architectures. Experience integrating identity services with enterprise applications, including SaaS platforms and custom applications. Demonstrated experience participating in cross-functional technical initiatives, including collaboration with security, infrastructure, and application teams. Experience supporting incident response, audits, or compliance efforts related to identity and access management. Familiarity with DevOps or CI/CD practices, automated deployments, and infrastructure-as-code concepts. Strong customer-service orientation with the ability to balance security requirements with usability and operational needs. Application Information: A resume is required for further consideration for this position. A cover letter expressing alignment with Cornell's mission and this role is strongly encouraged. When applying through our system, please remember to attach your application materials (Cover Letter and Resume) in PDF format. No Visa Sponsorship of any kind is available for this position. No Relocation assistance will be provided for this position. Rewards and Benefits University Job Title: IT Security Engineer III Job Family: Information Technology Level: F Pay Rate Type: Salary Pay Range: $88,386.00 - $102,719.00 Remote Option Availability: Remote Company: Endowed Contact Name: Maria Avila Contact Email: mia28@cornell.edu Job Titles and Pay Ranges: Non-Union Positions Noted pay ranges reflect the potential pay opportunity for each job profile. The hiring rate of pay for the successful candidate will be determined considering the following criteria: Prior relevant work or industry experience Education level to the extent education is relevant to the position Unique applicable skills Academic Discipline Union Positions Current Employees: Online Submission Guidelines : Employment Assistance: Notice to Applicants: EEO Statement: Cornell welcomes students, faculty, and staff with diverse backgrounds from across the globe to pursue world-class education and career opportunities, to further the founding principle of "... any person ... any study." No person shall be denied employment on the basis of any legally protected status or subjected to prohibited discrimination involving, but not limited to, such factors as race, ethnic or national origin, citizenship and immigration status, color, sex, pregnancy or pregnancy-related conditions, age, creed, religion, actual or perceived disability (including persons associated with such a person), arrest and/or conviction record, military or veteran status, sexual orientation, gender expression and/or identity, an individual's genetic information, domestic violence victim status, familial status, marital status, or any other characteristic protected by applicable federal, state, or local law. Cornell University embraces diversity in its workforce and seeks job candidates who will contribute to a climate that supports students, faculty, and staff of all identities and backgrounds. We hire based on merit, and encourage people from historically underrepresented and/or marginalized identities to apply. Consistent with federal law, Cornell engages in affirmative action in employment for qualified protected veterans as defined in the Vietnam Era Veterans' Readjustment Assistance Act (VEVRAA) and qualified individuals with disabilities under Section 503 of the Rehabilitation Act. We also recognize a lawful preference in employment practices for Native Americans living on or near Indian reservations in accordance with applicable law. 2026-09-22
Our Job Post Completeness indicates how much vital information has been provided for this job listing. Academic Jobs has done the heavy lifting for you and summarized all the important aspects of this job to save you time.
This is a Preview Listing…
Sign in for full job listing.
Finalise to make live.
Find Your Best Opportunity
Tell them AcademicJobs.com sent you!

