CrawlJobs Logo

Senior Identity & Access GRC Engineer

vodafone.com Logo

Vodafone

Location Icon

Location:
Romania , Bucuresti

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Senior Identity & Access Governance Engineer is responsible for the design, implementation and continuous improvement of Identity and Access Management (IAM) controls across the organization to mitigate cyber risk and ensure compliance with local/international regulatory requirements. The role sits within the GRC function and acts as the technical authority for identity governance, ensuring the translation of policies into enforceable and auditable technical controls across on-premises, cloud and hybrid environments. This is a senior, hands-on role with governance responsibilities and cross-functional influence, who will design the operating model, define governance frameworks, implement risk-based controls and set the IAM maturity level at the enterprise level.

Job Responsibility:

  • Define IAM governance framework, standards and control structure
  • Design IAM operational model
  • Translate IAM policies and standards into applicable technical controls
  • Design and maintain enterprise-wide RBAC models aligned with business roles and risk levels
  • Define and enforce Segregation of Functions (SoD) controls
  • Establish Key Risk Indicators (KRIs) and control effectiveness metrics
  • Maintain IAM documentation and record repository
  • Create an IAM maturity roadmap
  • Ensure alignment with Zero Trust principles
  • Design and optimize Joiner Mover Leaver processes
  • Ensure automatic provisioning and revocation of access in critical systems
  • Reduce accounts orphaned, inactive, and overprivileged
  • Integrate IAM with authoritative sources (HR and identity sources)
  • Define SLAs for deprovisioning and monitor compliance
  • Establish access recertification governance
  • Define governance framework for Privileged Access Management (PAM)
  • Reduce permanent administrative privileges
  • Implement Just in Time (JIT) and least privilege / Just Enough Access (JEA) principles
  • Ensure privileged session monitoring and logging controls
  • Coordinate with CSOC for identity-based detection cases
  • Ensure MFA enforcement for critical systems and high-risk users
  • Validate SSO and federation configurations
  • Define authentication assurance levels based on risk
  • Align identity controls with Zero Trust principles
  • Ensure alignment IAM with: NIS2
  • ISO 27001
  • GDPR
  • Internal Security Policies
  • Support for internal and external audits
  • Provide IAM records and remediation plans
  • Track and remediate IAM non-conformities
  • Assess the health of IAM/IdM platforms and lifecycle risks (EOL/EOS)
  • Identify coverage gaps in applications and cloud environments
  • Propose a modernization and improvement roadmap
  • Lead the integration of new systems in the IAM area
  • Close collaboration with: IT Operations
  • Network Operations
  • HR
  • Application Owners
  • Cloud & DevOps Teams
  • CSOC
  • Business teams
  • Act as SME in the identity area during security incidents
  • Ensure the inclusion of identity risks in the enterprise risk register

Requirements:

  • 5–8+ years of experience in IAM or Identity Governance
  • Experience in building or transforming IAM capabilities
  • Hands-on experience with enterprise IAM platforms (SailPoint, Saviynt, OneIdentity, Okta, Microsoft Entra ID)
  • Experience with PAM solutions (CyberArk, BeyondTrust)
  • Strong knowledge of: RBAC / ABAC
  • Segregation of Functions (SoD)
  • SAML, OAuth2, OIDC
  • LDAP / Active Directory
  • MFA and conditional access policies
  • Experience in regulated environments (telecom, financial, utilities – preferred)
  • Experience in supporting audit and compliance programs
  • Enterprise IAM architecture and design
  • JML frameworks
  • Governance models for privileged access
  • Authentication and federation architecture (SSO, MFA, conditional access)
  • IAM integration in cloud and hybrid environments
  • Risk assessment and identity controls
  • Logging, monitoring and traceability requirements for identity systems
  • Ability to assess and improve the health of IAM platforms
  • Risk-based thinking
  • Ability to translate regulatory requirements into technical controls
  • Structured documentation and records management
  • Strong communication skills
  • Proactivity and ownership orientation
  • Ability to identify control deficiencies and propose solutions
  • Strategic thinking and long-term planning
  • Project management
  • Teamwork and accurate reporting
  • Problem-solving, negotiation, deadline orientation

Nice to have:

  • CISSP
  • CISA
  • CISM
  • CIAM / Certified Identity and Access Manager
  • Microsoft Certified: Identity and Access Administrator Associate
  • CyberArk Defender / Sentry
  • ISO 27001 Lead Implementer / Lead Auditor
What we offer:
  • Hybrid working regime 2 days from the office, 3 days remote
  • Special discounts for Vodafone employees, Friends & Family offers
  • Demo telephone subscription - unlimited (voice and data)
  • Voucher for the purchase of a mobile phone
  • Medical subscription to a top private clinic & other medical benefits
  • Insurance for hospitalization and surgical interventions
  • Life insurance
  • Meal tickets
  • Bookster subscription
  • Participation in development programs and challenging projects in the leadership area
  • Access to internal Wellbeing & Recognition events
  • Extra vacation days (for seniority, special events, volunteering)
  • You will benefit from specializations in your field of activity, through programs based on modern training methods and systems

Additional Information:

Job Posted:
March 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Identity & Access GRC Engineer

Senior Information Security Engineer

Serve as a technical leader in our Security team reporting to our Information Se...
Location
Location
United States , Boston
Salary
Salary:
150000.00 - 190000.00 USD / Year
whoop.com Logo
Whoop
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, or a related technical field and/or advanced certifications (CISSP, CISM, AWS Security Specialty, SANS, etc.)
  • 8+ years of hands-on experience in Information Security, IT Security, or a related role, including at least 2 years in a senior or lead capacity
  • Proven track record implementing and managing advanced security technologies (e.g., CASB, CNAPP, CSPM, SIEM, SOAR, DLP, SWG)
  • Experience securing AI/ML systems or APIs, including governance of third-party AI integrations and organizational use of AI tools
  • Strong understanding of modern cloud security architecture (AWS, Azure, GCP) and experience performing threat modeling and risk assessments on cloud-based systems
  • Hands-on experience with application security tooling (SAST, SCA, DAST) and embedding secure development practices
  • Demonstrated leadership in security incident response, investigations, and root cause analysis
  • Effective communicator with the ability to influence stakeholders and explain security concepts to technical and non-technical audiences
  • Strong project management skills and the ability to drive initiatives to completion in a fast-paced environment
  • Experience mentoring engineers and setting operational standards
Job Responsibility
Job Responsibility
  • Implement and enhance security controls by leading the deployment, integration, and tuning of solutions such as CNAPP, SIEM, CASB, EDR, DLP, and MDM to maximize effectiveness
  • Support security design decisions by providing subject matter expertise on cloud and SaaS security best practices while influencing architecture led by the Security Architect role
  • Lead incident response and investigations by guiding containment, remediation, root cause analysis, and post-incident improvements
  • Strengthen application security by overseeing secure development practices and managing SAST, SCA, and DAST tooling
  • Advance identity and access management by supporting IAM policy enforcement, SSO, MFA, SCIM, RBAC, and user lifecycle governance
  • Secure AI systems and integrations by assessing and protecting embedded APIs and organizational AI tool usage to ensure resilience, privacy, and compliance
  • Collaborate cross-functionally by working with Engineering, IT, and GRC teams to embed security into systems and workflows
  • Mentor and influence by providing technical guidance, reviewing work, and promoting security-first thinking across the organization
  • Stay ahead of threats and regulations by tracking emerging risks, technologies, and compliance requirements to inform forward-looking strategies
  • Participate in and help improve the on-call rotation by providing guidance, escalation support, and driving improvements in response processes
What we offer
What we offer
  • competitive base salaries
  • meaningful equity
  • generous equity package
  • Fulltime
Read More
Arrow Right

Chief Information Security Officer

Location
Location
Egypt , New Cairo
Salary
Salary:
Not provided
ethicshr.com Logo
Ethics HR
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s/Master’s degree in Information Security, Computer Science, Engineering, or related field from a reputable university
  • 12-15+ years of progressive experience in information security, cybersecurity, or technology risk roles, preferably in banking or financial services
  • Strong knowledge of Central Bank of Egypt cybersecurity frameworks, digital banking guidelines, and financial-sector regulations
  • Deep understanding of security technology, network security, IAM, application security, and SOC operations
  • Experience overseeing incident response, security architecture, and enterprise-wide risk management
  • Professional certifications preferred (CISSP, CISM, CRISC, CCSP or equivalent)
  • Strong knowledge of international standards like ISO 27001/27002 and global best practices for financial data protection
  • Strong leadership, communication, and stakeholder management skills with the ability to influence senior executives and steer enterprise-level decisions
Job Responsibility
Job Responsibility
  • Define and execute the bank’s enterprise information security strategy in alignment with the business and regulatory requirements
  • Establish security governance frameworks, policies, and standards across all technology and business functions
  • Oversee cybersecurity programs including threat detection, incident response, vulnerability management, and security operations
  • Lead enterprise-wide technology risk management, ensuring effective identification, assessment, and mitigation of risks
  • Ensure full compliance with Central Bank of Egypt cybersecurity mandates, digital banking requirements, and data protection regulations
  • Develop and manage the Cloud Security Architecture (e.g., AWS, Azure) strategy, ensuring secure configuration and compliance for all digital infrastructure
  • Establish Security Metrics and Key Risk Indicators (KRIs) for regular reporting to the Board and Executive Committee, demonstrating the effectiveness of the security program
  • Implement and govern API Security standards and best practices to protect data exchange within the digital ecosystem and external partners
  • Formally manage and sign off on outsourcing security agreements (third-party risk) to meet specific CBE requirements for external service providers
  • Coordinate internal and external audits, penetration tests, and security assessments
Read More
Arrow Right

Senior Technical IAM Analyst

We are seeking a Senior Technical IAM Analyst (L5) who operates with strong inde...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
deliveroo.co.uk Logo
DELIVER
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • High Ownership: Drives initiatives independently with minimal oversight
  • Risk-Oriented Thinking: Understands control design principles, not just process execution
  • Structured Problem Solver: Breaks complex systems into logical components and identifies root causes
  • Audit-Ready Mindset: Designs processes with evidence, traceability, and defensibility in mind
  • Influential Communicator: Engages engineering and business stakeholders confidently and credibly
  • Continuous Improver: Seeks efficiency, automation, and simplification at scale
  • Strong hands-on experience in IAM governance and administration in a complex environment
  • Deep understanding of: Joiners / Movers / Leavers lifecycle controls
  • User Access Reviews and certification models
  • Segregation of Duties (SoD)
Job Responsibility
Job Responsibility
  • IAM Governance & Control Ownership: Own and continuously improve Joiners/Movers/Leavers (JML) processes, ensuring completeness, accuracy, and timeliness of provisioning and deprovisioning
  • Lead and enhance User Access Reviews (UARs), ensuring SOX compliance, audit defensibility, and measurable control effectiveness
  • Identify control weaknesses, segregation of duties (SoD) conflicts, and systemic risk patterns - and implement corrective improvements
  • Act as a control owner or delegate for key IAM SOX controls, partnering with Internal Audit and GRC
  • Drive measurable reduction in manual intervention, control exceptions, and audit findings
  • Advanced Technical Execution: Design and implement IAM configurations across tools such as Okta, Azure AD, SailPoint, Conductor1, AWS IAM, or equivalent
  • Analyse and remediate complex access structures, including nested groups, 1-to-many mappings, and over-provisioned access
  • Interpret and influence infrastructure-as-code (Terraform, YAML, JSON) and workflow automations affecting identity governance
  • Collaborate with engineering teams to embed IAM controls into application architecture and CI/CD pipelines
  • Use data analytics to validate access models, detect anomalies, and assess risk exposure
What we offer
What we offer
  • Benefits differ by country, but we offer many benefits in areas including healthcare, well-being, parental leave, pensions, and generous annual leave allowances, including time off to support a charitable cause of your choice
  • A competitive and comprehensive compensation and benefits package
  • Up to 5% matched pension contributions
  • Some roles may be eligible for share awards
  • Free Deliveroo Plus: free delivery and access to special offers
  • Team lunches from the best local restaurants
  • 25 days annual leave plus bank holidays, increasing with length of time spent working at Deliveroo
  • One day of paid leave per year to volunteer with a registered charity
  • Funded single cover healthcare on our core plan, with the option to add family members at own cost
  • On-site gym (HQ), discounted external gym membership
  • Fulltime
Read More
Arrow Right
New

Social Worker Continuing Health Care

Make a Real Impact as a Social Worker! Join Our Fun and Supportive Team at Peter...
Location
Location
United Kingdom , Peterborough
Salary
Salary:
39152.00 - 42839.00 GBP / Year
peterborough.gov.uk Logo
Peterborough City Council
Expiration Date
March 31, 2026
Flip Icon
Requirements
Requirements
  • Current registration with Social Work England
  • Completed AYSE
  • In-depth knowledge of current legislation and guidance, as well as current national policy and practice developments
  • Full Drivers Licence and the ability to travel between different locations
  • Willing to learn new things and able to maintain your own continuing professional development
Job Responsibility
Job Responsibility
  • Provide essential support for adult service users, supporting them through the Continuing Health Care (CHC) process and future care planning
  • Work closely with Central East Integrated Care Board multi-disciplinary teams
  • Support people discharged from hospital within the Discharge to Assess framework and applications for CHC funding
What we offer
What we offer
  • Access to a range of benefits via Employee Benefits Platform, including in-store and online discounts as well as Cycle to Work and Home & Electronics schemes
  • Buy up to 10 days additional annual leave (pro-rata)
  • Access to car lease scheme
  • Take your bank holidays flexibly
  • Make Additional Voluntary Contributions (Shared Cost AVCs) to your pension with tax and National Insurance savings
  • Access to development opportunities including apprenticeships
  • Paid volunteering hours each year
  • Access to equality, diversity and inclusion network
  • Opportunities to receive Employee Recognition Awards
  • Flexible working hours (typically Monday to Friday 9-5)
  • Fulltime
Read More
Arrow Right
New

Site Activation and Maintenance Associate I

ICON plc is a world-leading healthcare intelligence and clinical research organi...
Location
Location
United States , Raleigh; Blue Bell
Salary
Salary:
Not provided
iconplc.com Logo
iconplc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree preferably in a scientific or health related field
  • two years clinical research experience or relevant experience preferred
  • Understanding of the overall clinical development paradigm and the importance of efficient site activation
  • Applied knowledge of project management processes and skills
  • Appreciation of / experience in compliance-driven environment
  • Effective communication, negotiation, and problem-solving skills
  • Self-management and organizational skills
  • Management of roughly 25-30 sites in regulatory activation per FTE
Job Responsibility
Job Responsibility
  • Initiate investigator site activities, including: collection and submission of regulatory documents
  • customization and negotiation of informed consent form (ICF) documents
  • serve as the point of contact for a site’s institutional review board (IRB)
  • track and ensure site compliance to required training
  • Study regulatory maintenance activities including, but not limited to: Informed Consent Form (ICF) updates resulting from amendments and addenda, IB/Risk profile changes, etc.
  • Management of site changes: Personnel (PI, Sub-I, Study Coordinators, etc.), Location, Site-specific recruitment, patient facing material, and patient reimbursement
  • Effectively drive timelines aligned with company priorities. Communicate directly with sites to enable start-up and maintain an active collaboration with sites
  • Identify, communicate, and resolve issues
  • Ensure country specific regulatory and data privacy requirements are incorporated into submission documents and any other documents/systems
  • Leverage previous site / review board engagements to efficiently drive new work
What we offer
What we offer
  • Various annual leave entitlements
  • A range of health insurance offerings to suit you and your family’s needs
  • Competitive retirement planning offerings to maximize savings and plan with confidence for the years ahead
  • Global Employee Assistance Programme, LifeWorks, offering 24-hour access to a global network of over 80,000 independent specialized professionals who are there to support you and your family’s well-being
  • Life assurance
  • Flexible country-specific optional benefits, including childcare vouchers, bike purchase schemes, discounted gym memberships, subsidized travel passes, health assessments, among others
Read More
Arrow Right
New

Project Delivery Engineering Manager

The Project Delivery Engineering (PDE) Manager is a catalyst for transformation ...
Location
Location
United States , Chicago
Salary
Salary:
103000.00 - 154400.00 USD / Year
unilever.com Logo
Unilever
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Chemical, Mechanical, Industrial Engineering, or an equivalent technical discipline
  • 7+ years of engineering experience in the FMCG, food, or related industries
  • Project management experience within a manufacturing environment
Job Responsibility
Job Responsibility
  • Delivering capital expenditure (capex) projects totaling over €50 million annually
  • Leading multiple innovation projects, including planning, scheduling, and executing more than fifty trials per year
  • Building strong partnerships with both on site factory teams and strategic partners
What we offer
What we offer
  • Bonus eligible
  • Long-Term Incentive (LTI) eligible
  • Eligible to participate in benefits plan including health insurance (including prescription drug, dental, and vision coverage), retirement savings benefits, life insurance and disability benefits, parental leave, sick leave, paid vacation and holidays, access to numerous voluntary benefits
  • Fulltime
Read More
Arrow Right
New

Sr GoLang & C++ Engineer

FreeWheel is looking for passionate Sr. Software Engineers to help design, build...
Location
Location
United States , Reston; New York; Englewood; Chicago
Salary
Salary:
129515.93 - 222027.30 USD / Year
comcastadvertising.com Logo
Comcast Advertising
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Strong proficiency in C/C++ or Golang and network programming
  • In-depth understanding of cloud, containerization and other related technologies, familiar with distributed architecture and commonly-used middleware such as cache, message queue, Nginx, etc
  • Good understanding of Linux/Unix, with excellent data structure and algorithm foundation
  • Experience with large system software design and development
  • Knowledgeable about SDLC, Agile and Software Engineering Methodology
  • Bachelor's Degree (preferred) or combination of coursework and experience
  • Relevant Work Experience: 7-10 Years
Job Responsibility
Job Responsibility
  • Construct and optimize the infrastructure of the ad delivery system with high concurrency, high availability, and low latency ad delivery using GoLang and C++
  • Utilize Linux high frequency and high concurrency programming
  • Continuous optimization and reconstruction of existing systems to support rapid business development
  • Responsible for end-to-end software development, Assists with the software update process for existing applications and roll-outs of software releases
  • Collaborates with project stakeholders to identify product and technical requirements. Conducts analysis to determine integration needs
  • Researches, writes and edits documentation and technical requirements, including software designs, evaluation plans, test results, technical manuals and formal recommendations and reports
  • Provides technical leadership throughout the design process and guidance with regards to practices, procedures and techniques. Serves as a guide and mentor for junior-level Software Development Engineers
  • Design and implement solutions utilizing GoLang, C++, AWS services, Kubernetes, and containerization technologies
  • Develop and manage highly scalable and reliable infrastructure on AWS, ensuring optimal performance and cost efficiency
  • Deploy and manage containerized applications using Kubernetes and related orchestration tools
What we offer
What we offer
  • Paid Time off
  • Physical Wellbeing benefits
  • Financial Wellbeing benefits
  • Emotional Wellbeing benefits
  • Life Events + Family Support benefits
  • Commission or Bonus (position dependent)
  • Best-in-class Benefits
  • Fulltime
Read More
Arrow Right
New

Education, Employment and Training Intervention Worker

This vital role focuses on guiding young people (often aged 16-21) toward sustai...
Location
Location
United Kingdom , Peterborough
Salary
Salary:
31067.00 - 35412.00 GBP / Year
peterborough.gov.uk Logo
Peterborough City Council
Expiration Date
March 22, 2026
Flip Icon
Requirements
Requirements
  • Experience of or passion about improving the educational experiences of vulnerable young people
  • Confident communicator with a flexible and creative approach to problem solving
  • Proactive and can-do approach
  • Ability to form and maintain positive working relationships with a range of professionals
  • Efficient, organised, and able to work using own initiative within a wider team
  • Ability to organise own workload and set priorities within short timescales
  • Ability to develop a robust understanding of the work of the EET service to handle and respond to enquiries
  • Must be able to drive
  • Appointment subject to an Enhanced Disclosure obtained through the Disclosure and Barring Service
Job Responsibility
Job Responsibility
  • Provide targeted careers advice, guidance, and signposting for those who are NEET or at risk of NEET
  • Collaborate with colleagues and partner agencies to implement timely interventions that reduce the number of young people without a known destination
  • Undertake database cross-referencing, home visits, and direct engagement to collect accurate, quality-assured data
What we offer
What we offer
  • Annual leave starting at 25 days + bank holidays
  • Sick pay
  • Local government pension scheme
  • Access to a range of benefits via Employee Benefits Platform, including in-store and online discounts
  • Cycle to Work and Home & Electronics schemes
  • Buy up to 10 days additional annual leave (pro-rata)
  • Access to car lease scheme
  • Bank holiday flexibility
  • Make Additional Voluntary Contributions (Shared Cost AVCs) to pension with tax and National Insurance savings
  • Access to development opportunities including apprenticeships
  • Fulltime
Read More
Arrow Right