Language

IAM Cloud Engineer

Deployment
Version Control
Single Sign-on
DEV OPS
Cloud Security
Terraform
Amazon Web Services
Continuous Integration/Delivery
Git
Scripting
Python
Identity and Access Management
Access Control
Encryption
SSO
Description:
Who we areCollaborative. Respectful. A place to dream and do. These are just a few words that describe what life is like at Toyota. As one of the world’s most admired brands, Toyota is growing and leading the future of mobility through innovative, high-quality solutions designed to enhance lives and delight those we serve. We’re looking for diverse, talented team members who want to Dream. Do. Grow. with us.
What we’re looking forThe Toyota Financial Services (TFS) Cloud Engineering team is seeking a highly skilled Cloud Engineer Lead – Identity. This senior-level role is responsible for designing and managing cloud identity and access management (IAM) solutions that ensure secure, scalable, and compliant access across Toyota’s cloud environments.

You will lead initiatives that strengthen our identity governance, enforce least-privilege access, and support automation and compliance across AWS and other platforms. This role requires deep technical expertise in IAM, strong collaboration skills, and a passion for secure cloud architecture.
 
What you’ll be doing
  • IAM Implementation: Assist in configuring and managing IAM roles, policies, and permission boundaries across AWS environments.
  • Access Controls: Support the enforcement of least-privilege access and RBAC/ABAC models across cloud accounts.
  • Infrastructure as Code (IaC): Contribute to the development of reusable IAM modules using Terraform or AWS CDK.
  • CI/CD Support: Help integrate identity validation into CI/CD pipelines to ensure secure deployments.
  • Security & Compliance: Collaborate with security teams to align IAM practices with compliance standards and audit requirements.
  • Monitoring & Troubleshooting: Monitor IAM activity and assist in investigating identity-related issues using tools like AWS CloudTrail and Config.
  • Team Collaboration: Work with engineering, security, and compliance teams to support identity initiatives and improve IAM processes.
Qualifications/ What you bring (Must Haves) – Highlight Top 3-5 skills
  • 3–5 years of hands-on experience in cloud engineering, DevOps, or identity and access management (IAM) roles.
  • Strong expertise in AWS Identity Center, IAM, Organizations, and Single Sign-On (SSO).
  • Proficient in Infrastructure as Code (IaC) using tools such as Terraform, AWS Cloud Development Kit (CDK), or similar.
  • Solid understanding of identity governance, access control principles, and least privilege enforcement.
  • Skilled in Python for automation, scripting, and integration tasks.
  • Familiarity with AWS monitoring and auditing tools like CloudTrail, AWS Config, and Security Hub.
  • Experience with CI/CD pipelines, version control (e.g., Git), and deployment automation.
  • Knowledge of cloud security best practices, including encryption, key management, and compliance frameworks.
  • Comfortable working in multi-account AWS environments and managing cross-account access.
  • AWS certification
QUALIFICATION/ LICENSURE :
  • Work Authorization : Green Card, US Citizen
  • Preferred years of experience : No preferred years of experience required
  • Travel Required : No travel required
  • Shift timings: 9 AM to 5 PM
Job Location Plano, Texas
Pay USD 65.00 - USD 75.00 Per Hour
Contract Duration 12 month(s)