This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Fynity is supporting a rapidly scaling SaaS company headquartered in Barcelona in the search for a technically adept and security-minded Senior IAM Engineer. This is a key technical role with end-to-end ownership of identity and access management platforms in a fast-scaling environment.
Job Responsibility:
Design, implement, and optimise identity and access management solutions
Drive automation and ensure operational excellence
Mentor others in the team
Balance user experience, risk and cost while maintaining robust security standards
Administration of Azure Resource Groups, policies, tagging and cost management frameworks
Ownership of least privilege standards and RBAC models
Management of Entra ID including Conditional Access, PIM, dynamic groups, roles, access reviews and licence optimisation
Implementation of SSO using SAML and OIDC, MFA enforcement and security baselines
Definition of hardening standards and compliance controls
End-to-end management of the joiner, mover and leaver lifecycle using SCIM provisioning and deprovisioning
Development and maintenance of API and GraphQL integrations for identity workflows and auditability
Continuous improvement of identity governance processes
Administration of Google Workspace organisational units, groups and security controls
Management of DLP, Vault and SSO configurations
Alignment and synchronisation of identity attributes with Entra ID and SCIM where appropriate
Implementation of monitoring, logging, alerting, backup and disaster recovery processes
Driving automation using scripting languages such as PowerShell, Bash or Python
Use of Infrastructure as Code tools such as Terraform and Git where appropriate
Clear documentation of systems, standards and processes
Requirements:
Strong experience in administering corporate platforms, with at least 3 years focused on IAM and cloud environments
Deep expertise in Azure and Microsoft Entra ID, including Conditional Access, PIM and RBAC
Strong IAM knowledge, including SCIM, SSO, SAML, OIDC, APIs and GraphQL
Experience administering Google Workspace including security, directory services, DLP and SSO
Strong understanding of licensing models and operational optimisation
A track record of ownership, sound judgement and the ability to prioritise effectively
Strong communication skills with experience mentoring and upskilling colleagues
Fluency in English and Spanish is essential
Nice to have:
Experience with Jamf, Intune or other MDM platforms
Knowledge of security and compliance frameworks such as ISO 27001, SOC 2 and GDPR
Experience in high-growth or scaling environments
What we offer:
Private health insurance
Wellbeing and fitness support
Flexible benefits platform
Ongoing learning and development
Collaborative, international working environment with strong growth potential