CrawlJobs Logo

IAM Controls Engineer

https://www.randstad.com Logo

Randstad

Location Icon

Location:
Poland , Kraków

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

We are looking for an Identity and Access Management Engineer to join our Identity Security team (part of the Platform Security organization within IT). The candidate will play a key role in the area of identity and access management, focusing on supporting and maintaining the identity control structure for solutions. This position requires a thorough understanding of best practices in identity and access management and identity security, as well as the ability to design and implement robust artifacts.

Job Responsibility:

  • Design and implement Authentication, Authorization, and Access Management models for complex business applications
  • Ensuring that the company's IAM policies and procedures comply with IAM best practices, industry standards, regulations, and internal policies. This includes conducting regular audits and assessments to identify and address any compliance gaps
  • Risk Management: identify and assess potential risks related to identity and access management and develop strategies to mitigate these risks. This involves conducting risk assessments and implementing controls to protect against threats
  • Work closely with other parts of the organization, such as the rest of IT and/or HR, to ensure that IAM controls are integrated into business processes. Help design training and awareness programs to employees on IAM best practices and policies

Requirements:

  • Bachelor's degree in Computer Science, Information Systems, Auditing, or a related field
  • Minimum of 3 years of experience in a similar role, preferably in a large company or Big 4
  • Deep knowledge of IAM frameworks and industry best practices
  • Experience in conducting audits and risk assessments specifically for IAM
  • Effective communication and presentation skills, with the ability to interact with senior management
  • Ability to work independently and as part of a team, with demonstrated leadership skills

Nice to have:

Relevant certifications such as CISA (Certified Information Systems Auditor) or CISSP (Certified Information Systems Security Professional) are highly desirable

What we offer:
  • Subsidy for private medical care and OK system, Medical package
  • Hybrid work
  • Funding for the canteen - 250 PLN monthly
  • Flexible working hours
  • Semi-annual bonus up to 6%
  • Smartwork 100zł

Additional Information:

Job Posted:
December 28, 2025

Expiration:
January 09, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for IAM Controls Engineer

Sr. IAM Engineer (PAM)

The Senior Identity and Access Management (IAM) Engineer specializing in Privile...
Location
Location
India , Gurgaon
Salary
Salary:
1350000.00 INR / Year
realign-llc.com Logo
Realign
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Information Technology, or a related field
  • 5+ years of experience in Identity and Access Management, with a focus on Privileged Access Management
  • Strong knowledge of PAM solutions, such as CyberArk, BeyondTrust, or Thycotic
  • Experience with implementing IAM frameworks, such as RBAC, ABAC, and PBAC
  • Excellent communication and problem-solving skills
  • Ability to work collaboratively in a team environment
Job Responsibility
Job Responsibility
  • Design, implement, and maintain Privileged Access Management solutions to safeguard critical systems and data
  • Develop and enforce access controls, policies, and procedures to protect sensitive information
  • Collaborate with stakeholders to define and implement IAM strategies that align with business objectives
  • Monitor and analyze access logs and security incidents to detect and respond to threats in a timely manner
  • Automate identity lifecycle management processes to improve efficiency and compliance
  • Provide technical guidance and support to junior engineers and team members
  • Stay current on industry trends and emerging technologies in IAM and cybersecurity
  • Fulltime
Read More
Arrow Right
New

Senior IAM Infrastructure Engineer

6 month engagement + extensions. Canberra preferred, remote candidates will be c...
Location
Location
Australia , Canberra
Salary
Salary:
Not provided
https://www.randstad.com Logo
Randstad
Expiration Date
December 28, 2025
Flip Icon
Requirements
Requirements
  • Over 5 years of expert-level experience and demonstrated hands-on proficiency with core IAM technologies, including Microsoft Identity Manager (MIM), Unify Broker, advanced PowerShell scripting for automation and integration, and Entra ID for modern identity solutions
  • Strategic understanding of access governance and access control in a complex government environment and contributing productively to strategic planning
  • Demonstrated ability to mentor and upskill staff
  • Ability to obtain a security clearance
  • Candidate must be an Australian citizen
Job Responsibility
Job Responsibility
  • Maintain and manage enterprise identity management platforms including Microsoft Identity Manager (MIM), Unify Broker
  • Undertake troubleshooting and provide advice to stakeholders on identity and access issues and workflows, with a focus on MIM and integration with HR System
  • Drive continual improvement of identity and access workflows, models and configurations to improve security posture and user experience
  • Collaborate with infrastructure, cyber security, HR and application teams to deliver secure identity services
  • Contribute meaningfully to strategic planning and decision-making regarding identity and access management strategies, governance and roadmaps
  • Create and contribute to quality documentation such as change records, procedures, designs, security assessments and knowledge articles
  • Actively share knowledge and support the upskilling of staff within the team
  • May contribute to the support and maintenance of Privileged Access Management (PAM) solutions such as CyberArk and Secret Server and broader server management activities
  • Fulltime
Read More
Arrow Right

IAM Infrastructure Engineer

The role is part of the Identity and Access Management Build and Integration tea...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years' experience implementing, operating, building and maintaining access management solutions (Ping Access, Ping Federate, Ping Directory) supporting single sign-on (SSO) with 4+ years' experience in Unix/Linux
  • Demonstrated experience with authentication and authorization technologies and protocols such as SAML, WS-Fed, OAuth, OpenID/OpenID Connect, one-time passcodes, PKI, FIDO, PBAC, RBAC
  • Experience in managing projects, leading operational process change and improvement and delivering infrastructure technologies products and services
  • Experience in financial services or large complex and/or global environment preferred
  • Demonstrated ability to both work independently and partner with virtual teams in a high-pressure matrix environment
  • Demonstrated ability to take ownership of various parts of a project/initiative with tight deadlines or unexpected changes in expectation/ requirements
  • Consistently clear and concise written and verbal communication with ability to communicate technical concepts to a non-technical audience
Job Responsibility
Job Responsibility
  • Review the design for Modern Access Control infrastructure with architecture and engineering teams
  • Deploy system capabilities incrementally and provide user authentication, SSO, federation, Role-Based and Attribute-Based Access Control
  • Manage auditing and reporting capabilities that are integrated with Citi enterprise logging and monitoring tools
  • Provide in-depth and sophisticated analyses, technical guidance and direction and identify and monitor key indicators to gauge performance and identify trends
  • Identify and resolve issues, engaging in Root Cause Analysis (RCA)
  • Understand diverse stakeholder needs and share and influence stakeholder expectations
  • Fulltime
Read More
Arrow Right

IAM Senior Engineer - Active Directory/Entra ID

HPE Global IT is seeking a highly skilled Senior Active Directory (AD), Entra ID...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or equivalent experience)
  • 10+ years of IT or cybersecurity experience
  • 7+ years focused on AD, Entra ID, and Azure identity engineering in enterprise-scale environments
  • Deep hands-on experience managing multi-forest AD environments (schema, replication, delegation, GPOs, DNS, DHCP)
  • Strong expertise with Entra ID and hybrid identity integration (Entra Connect / Cloud Sync, federation, SSO)
  • Hands-on experience with Azure governance, RBAC, PIM, and access policy enforcement
  • Experience implementing conditional access, passwordless, and phishing-resistant MFA in Entra and Azure
  • Proficiency in PowerShell scripting, Graph API, and Azure automation for identity management and reporting
  • Solid understanding of authentication protocols (Kerberos, NTLM, LDAP, SAML, OIDC, OAuth2)
  • Familiarity with Zero Trust, tiered admin models, and directory hardening practices
Job Responsibility
Job Responsibility
  • Engineer, deploy, and optimize Active Directory, Entra ID, and Azure identity services across enterprise-scale hybrid environments
  • Design and manage multi-forest AD architectures, including schema extensions, replication, delegation, and hardening
  • Implement and maintain cross-domain and cross-tenant synchronization between AD and Entra ID using Entra Connect or Cloud Sync
  • Engineer secure authentication and federation flows leveraging Kerberos, NTLM, SAML, OIDC, and OAuth2
  • Implement and enhance conditional access, MFA, passwordless, and FIDO2 authentication methods in Entra and Azure environments
  • Support Zero Trust Directory Security through tiered administration, least privilege, and delegated access controls
  • Partner with cloud and infrastructure teams to ensure secure integration of Azure resources with enterprise identity services
  • Maintain and secure domain controllers, DNS, DHCP, and Group Policy Objects (GPOs) across global environments
  • Manage Azure AD tenants, subscriptions, and resource access controls (RBAC, PIM, Entra roles)
  • Integrate on-prem AD with Azure workloads, Microsoft 365, Intune, and other SaaS applications
What we offer
What we offer
  • Health & Wellbeing benefits
  • Personal & Professional Development programs
  • Unconditional Inclusion environment
  • Comprehensive suite of benefits supporting physical, financial and emotional wellbeing
  • Fulltime
Read More
Arrow Right

Senior Security Engineer, Sailpoint Development Lead - IAM

We are seeking an experienced and motivated Sr. Engineer to lead the Sailpoint d...
Location
Location
United States , Bethesda
Salary
Salary:
108300.00 - 176300.00 USD / Year
https://www.marriott.com Logo
Marriott Bonvoy
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, information systems, cybersecurity or a related field or equivalent experience/certification
  • 7+ years of progressive Information Technology/Information Security experience in engineering and development of IGA features & Application integration including at least 4 years of experience in SailPoint IIQ Implementation, Configuration, Customization, and deployment in an enterprise environment
  • 4 + years of experience in technologies such as Java, JavaScript, JSON, XML, Python and REST development
  • 4 + years of experience in writing and troubleshooting rules, workflows, custom connectors
  • 4 + years of developing/understanding of requirements, design, implementation, integration, testing
  • 2+ years’ experience working in agile methodologies
Job Responsibility
Job Responsibility
  • Makes decisions on the architecture and design of software projects, validating that the system design meets scalability, reliability, and performance requirements
  • Provides technical direction, mentoring, and support to team members
  • Solves complex technical issues and functions as an escalation for the team in problem-solving
  • Leads code reviews to ensure high-quality, maintainable, and efficient code
  • Establishes and ensures compliance with coding standards
  • Exercises strong interpersonal/relationship/communication skills, with the ability to convey technical concepts to non-technical stakeholders
  • Contributes to the codebase, particularly for critical or complex components
  • Participates in project planning, including estimation of tasks, defining milestones, and ensuring realistic timelines
  • Assigns tasks to team members based on their skills and project requirements
  • Monitors progress and adjusting plans as necessary
What we offer
What we offer
  • Bonus program
  • Comprehensive health care benefits
  • 401(k) plan with up to 5% company match
  • Employee stock purchase plan at 15% discount
  • Accrued paid time off (including sick leave where applicable)
  • Life insurance
  • Group disability insurance
  • Travel discounts
  • Adoption assistance
  • Paid parental leave
  • Fulltime
Read More
Arrow Right

Security Engineer

Location
Location
Salary
Salary:
Not provided
ryzlabs.com Logo
Ryz Labs
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years total technical or security engineering experience with security focus
  • 2+ years of AWS or GCP experience implementing security and hardening activities, especially in a large or complex environments
  • 2+ years working in a CI/CD DevSecOps environment (Jenkins, Travis, Jira, GitHub, GitLab, etc.)
  • Experience with IAM solutions such as Okta and deep knowledge of AWS or GCP IAM and how to configure and maintain least-privilege and segregation of duty across boundaries
  • Knowledge and experience with EC2, ECS, S3, LBS, API Gateways, Bastion Hosts, VPC, Cloud Trail, Cloud Watch, Data Dog, SIEM and other cloud technologies
Job Responsibility
Job Responsibility
  • collaborate with our customers and suppliers to model security requirements against cloud capabilities
  • work closely with engineering teams, program management and senior stakeholders to translate requirements into achievable designs that raise the bar
  • function across teams ensuring that the strategic architecture is met across design, implementation, deployment and operation
  • playing a key role in defining the mechanisms that the company will use to validate how services are meeting all the security operational controls
  • work closely with the product and platform engineering teams to architect, implement, and operate effective cloud security controls
  • Partner with internal IT & Product Engineering stakeholders to assess gaps in products and platforms, design mitigating controls, and train and educate staff on remediations
  • Partner with the Business Technology and IAM teams to build a new Access Management and User Access Review system based on Lumos
  • Maintain inventory of cloud assets and ensure secure bootstrapping of deployed assets while monitoring for drift and potential threats across product engineering environment
  • Design and build the security components of the next phase of Sonder Security Roadmap
Read More
Arrow Right

Senior Security Engineer

PagerDuty is seeking a Senior Security Engineer (Infrastructure & Identity Secur...
Location
Location
United States
Salary
Salary:
172000.00 - 289000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience as a full-stack Security Engineer in an AWS native, micro-service SaaS environment with focus on IAM
  • Deep expertise in cloud security, particularly AWS services including but not limited to: GuardDuty, CloudTrail, Config, IAM family, Secrets Manager, KMS, EKS, Service Mesh architectures
  • Strong expertise and experience implementing and managing identity providers, specifically Okta and/or Microsoft Entra at scale (1000+ users)
  • Strong understanding of zero trust principles and modern authentication patterns
  • Experience working with multiple development teams and technology stacks
  • 5+ years experience leading technical security initiatives, with proven ability to scope ambiguous projects, break down complex work into actionable items, and successfully delegate responsibilities while maintaining project momentum
  • Proficiency with security tools: Vulnerability Management & EDR: Wiz, Snyk, Qualys/Nessus, Crowdstrike
  • SIEM: SumoLogic or Splunk
  • Experience with Infrastructure as Code and CI/CD: Terraform, Helm, Chef, Ansible, Buildkite, Jenkins, ArgoCD
  • 4+ years of experience and proficiency in at least one programming language and framework (Python, Java, or similar)
Job Responsibility
Job Responsibility
  • Lead and implement comprehensive IAM strategy across cloud infrastructure
  • Work closely with Product Engineering teams and conduct architecture reviews and threat modeling sessions focusing on but not limited to identity and access patterns
  • Design and implement modern service-to-service authentication patterns using technologies such as IRSA (IAM Roles for Service Accounts) and pod identity
  • Develop and maintain a robust secrets management framework and strategy
  • Drive adoption of principle of least privilege across all services and applications
  • Design and implement automated workflows for access reviews and certification
  • Design and implement security controls for AWS cloud infrastructure and containerized environments
  • Develop metrics and monitoring for IAM-related security events and access patterns
  • Monitor and maintain security tooling supporting infrastructure security controls
  • Design and implement security automations and tool integrations
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right

Software Engineer, Accounts

We are seeking a Software Engineer specializing in Account Lifecycle and Access ...
Location
Location
Germany , Berlin
Salary
Salary:
196000.00 - 294000.00 USD / Year
vercel.com Logo
Vercel
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of experience with IAM architectures and implementing cloud computing solutions (AWS preferred)
  • Proficiency in TypeScript/JavaScript, React, and Node.js
  • Strong knowledge of security architecture, LDAP, Active Directory, SAML, SSO, OAuth2, OpenID Connect and web protocols like XML, SOAP, JSON, and REST
  • Familiarity with access control models such as RBAC, ABAC and ReBAC
  • Enthusiasm to work with and learn more about Identity Protocols like OAuth2, OIDC, and SAML
  • Experience with SQL
  • Hands-on experience implementing identity lifecycle management solutions using SCIM
  • Practical experience developing and improving applications written in Node.js
  • Exhibit excellent problem-solving abilities and effective communication skills, especially when collaborating with diverse teams
Job Responsibility
Job Responsibility
  • Enable us to deliver secure, reliable, and scalable services that exceed industry standards and customer expectations
  • Collaborate with cross-functional teams to deliver large-scale projects with cross-team dependencies
  • Collaborate with peer teams to deliver solutions that meet industry standards and customer expectations
  • Maintain and operate services at high scale, participating in scheduled on-call rotations to ensure reliability
  • Develop and maintain enterprise-grade IAM solutions, focusing on user, group, and membership management
  • Implement identity synchronization and lifecycle management solutions using SCIM and other relevant standards
  • Work with Infrastructure as Code (Terraform, AWS CloudFormation, Kubernetes, etc.) to deliver scalable, high-availability applications
  • Design and implement robust access control models using OAuth, OpenID Connect (OIDC), SAML 2.0, and other protocols
  • Build and maintain high-quality enterprise software using TypeScript, REST APIs, and JSON
What we offer
What we offer
  • Competitive compensation package, including equity
  • Inclusive Healthcare Package
  • Learn and Grow - we provide mentorship and send you to events that help you build your network and skills
  • Flexible Time Off
  • We will provide you the gear you need to do your role, and a WFH budget for you to outfit your space as needed
  • Fulltime
Read More
Arrow Right
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.