About the role
What will you do at MACOM?
MACOM (NASDAQ: MTSI) is a global leader in the design and manufacture of advanced semiconductor products across a diverse range of end markets, including Data Centers, Telecommunications, Industrial and Aerospace and Defense. We develop innovative, cutting-edge technologies and products across the spectrum of radio frequency (RF), microwave, millimeter wave, photonics and high-speed analog technologies.
Our solutions support critical network infrastructure applications like artificial intelligence, high performance computing, satellite communications, radar, unmanned aerial vehicles, medical equipment, test and measurement and advanced wireless networks.
MACOM has more than 75 years of expertise in semiconductor process development, wafer fabrication, circuit design, advanced packaging, systems architecture and applications engineering. We are committed to our customers’ success. We partner with customers to help solve their most challenging problems by providing semiconductor solutions that are at the forefront of the highest power, highest frequency and/or highest data rates.
Leading technologies, innovative products and driven employees. Come be a part of MACOM and help advance the next generation of connectivity infrastructure!
Associate Security Engineer – Identity & Comms
The Team
& Your Role This role owns the "human" element of our security posture. Designed as a launchpad from End-User Services into advanced security engineering, you will automate the identity lifecycle, protect user communications, and enforce endpoint compliance. You will spend 80% of your time managing access operations and 20% designing zero-trust device posture frameworks, acting as the critical bridge between the Security team and the Helpdesk.
Core
Responsibilities
- Platform Engineering (80%)
- • Map, streamline, and automate the Joiner, Mover, and Leaver (JML) identity lifecycle workflows.
- • Maintain enterprise directory hygiene (Active Directory/Entra ID) and assist with Single Sign-On (SSO) and MFA integrations.
- • Administer automated email security gateways to protect against phishing and business email compromise.
- • Execute the operational deployment of Privileged Access Management (PAM) tools to systematically eliminate standing local admin rights.
- Core
Responsibilities
- Strategic Architecture (20%)
- • Establish the definitive compliance baseline (encryption, domain-join status, MFA) required for any device to access the corporate network.
- • Build and maintain Conditional Access matrices to enforce zero-trust identity policies globally.
- • Draft standardized Role-Based Access Control (RBAC) templates to simplify department-level onboarding.
Qualifications
- • 1–3 years in IT Support, Systems Administration, or End-User Services with a strong understanding of user pain points.
- • Deep practical knowledge of Active Directory, user object lifecycles, and basic Windows/Mac endpoint troubleshooting.
- • Demonstrated ability to document complex IT processes and a strong drive to learn modern SSO administration and automation scripting.
- EEO:
- MACOM is an Equal Opportunity Employer committed to a diverse workforce. MACOM will not discriminate against any worker or job applicant on the basis of race, color, religion, sex, gender identity, sexual orientation, national origin, age, disability, genetic information, veteran status, military service, marital status, or any other category protected under applicable law.
- Reasonable Accommodation:
- MACOM is committed to working with and providing reasonable accommodations to qualified individuals with physical and mental disabilities. If you have a disability and are in need of a reasonable accommodation with respect to any part of the application process, please call +1-978-656-2500 or email [email protected]. Provide your name, phone number and the position title and location in which you are interested, and nature of accommodation needed, and we will get back to you. We also work with current employees who request or need reasonable accommodation in order to perform the essential functions of their jobs.
- ITAR
- Due to ITAR regulations, only candidates who are U.S. Persons (U.S. citizens, U.S. nationals, lawful permanent residents, or individuals granted asylum or refugee status) will be considered for this position.
- RSU Eligible
- This position is eligible to receive restricted stock unit (RSU) awards and cash bonuses, solely at MACOM’s discretion, subject to individual and company performance.
- Salary Range
- The Salary Range for this position is $62,000 – $100,000. Actual salary offered to candidate will depend on several factors, including but not limited to, work location, relevant candidates’ experience, education, and specific knowledge, skills, and abilities.
Benefits
This position offers a comprehensive benefits package including but not limited to:
• Health, dental, and vision insurance.
• Employer-sponsored 401(k) plan.
• Paid time off.
• Professional development opportunities.
Which skills does this role require?
Make your next move
Build a shortlist and prepare
Identify the requirements you can demonstrate, then choose examples from your work to discuss with the hiring team.
- Build a focused shortlist before you applyCompare role requirements with your experience and give each application a clear reason.
- Practice explaining your experience in an interviewRehearse your answers before meeting the hiring team.
Other roles to compare
Review the responsibilities and requirements before adding an opening to your shortlist.
AI Security Engineer
Charles Schwab · Southlake, Texas, United States
Security Engineer
MACOM · Lowell, Massachusetts, United States
Senior Security Engineer - Non-Human Identity
Edward Jones · United States
Senior Identity Security Engineer – SailPoint IIQ/ISC
Infosys · Arizona, United States
Cyber Security Engineer - Data Security
Healthfirst · Herminie, Pennsylvania, United States
AI Cybersecurity Engineer
Agilent Technologies · Barcelona, Catalonia, Spain
Role information can change. Confirm current details on the original application page.
