This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Identity and Access Management (IAM) Engineer is accountable for the design, implementation, and operational integrity of enterprise identity and access management capabilities that protect critical business systems while enabling secure and efficient access for the workforce. This role serves as the technical authority for authentication, authorization, identity lifecycle management, and privileged access across on-premises and cloud environments. The IAM Engineer ensures automated Joiner/Mover/Leaver processes, enforces least-privilege and Zero Trust principles, and integrates IAM services with enterprise applications and infrastructure. Working closely with Cybersecurity, IT Infrastructure, HR, and application owners, the role delivers scalable, compliant identity solutions, supports audit and regulatory requirements (e.g., SOX, NERC CIP, ISO), and provides operational support for identity-related security incidents. The position acts as a subject-matter expert and trusted advisor to IT and Security leadership, reducing identity risk, improving control effectiveness, and enabling secure digital operations.
Job Responsibility:
Design, implement, and operate enterprise IAM solutions across on-premises and cloud environments, including SSO, MFA, conditional access, RBAC, directory services, and application integrations
Own and continuously improve Joiner/Mover/Leaver processes using authoritative identity sources
Implement role- and attribute-based access models and automation to ensure timely provisioning and deprovisioning
Implement and operate PAM solutions for administrative and service accounts, enforcing least privilege, credential vaulting, session monitoring, and secure break-glass access
Support access reviews, audits, and regulatory assessments
Maintain IAM documentation, standards, and procedures
Identify and remediate identity-related risks and control gaps
Assist with identity-related incident response activities
Investigate authentication anomalies, improve IAM logging and monitoring, and enhance alerting and detection capabilities
Serve as the IAM subject-matter expert
Provide technical guidance to peers, influence application onboarding with identity-first design principles, and advise IT and Security leadership on identity strategy and risk reduction
Requirements:
Bachelor's degree in Computer Science, Cybersecurity, Engineering, Information Systems, or a related field from an accredited college or university
Minimum of 4 years of experience implementing and operating enterprise IAM solutions, including SSO, MFA, identity lifecycle management, and directory services
Hands-on experience with enterprise IAM platforms such as Microsoft Entra ID (Azure AD), Okta, Ping Identity, or ForgeRock
Strong knowledge of SSO, MFA, conditional access, RBAC, ABAC, and Zero Trust architectures
Experience integrating IAM with Azure, AWS, and/or GCP
Working knowledge of Active Directory, Azure AD, LDAP, and identity synchronization
Experience with Privileged Access Management solutions and secure service account management
Experience with IAM and PAM platforms
Scripting and automation (PowerShell, Python preferred)
Logging and monitoring integrations with SIEM platforms
ITSM tools such as ServiceNow or Ivanti
Understanding of identity-related regulatory and compliance requirements (e.g., SOX, NERC CIP, ISO 27001)
Experience supporting audits, access certifications, and control remediation
Strong analytical and problem-solving skills
Excellent written and verbal communication skills
Customer-focused, collaborative mindset
Ability to work independently and influence across teams
Nice to have:
Certified Information Systems Security Professional (CISSP)
Microsoft Certified: Identity and Access Administrator Associate
Microsoft Certified: Cybersecurity Architect Expert
Okta Certified Professional / Administrator
GIAC Identity and Access Management (GIAM)
What we offer:
Comprehensive medical, dental, and vision coverage