CrawlJobs Logo

Specialist IS Security Engineer – Identity Management

amgen.com Logo

Amgen

Location Icon

Location:
Portugal , Lisbon

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Join our team at AMGEN Capability Center Portugal, the #1 company in Best Workplaces™ (201–500 employees' category) in Portugal in 2024 by the Great Place to Work Institute. With over 500 talented individuals from more than 40 nationalities, our Lisbon center thrives at the intersection of innovation, excellence, and inspiration. This is your opportunity to explore the future of healthcare through technology and digital innovation, supporting our mission To Serve. At AMGEN, Technology isn’t just a support function—it’s a catalyst for discovery, transformation, and real-world impact. Here, your ideas fuel innovation that improves and saves lives of patients in dire need of our medicines.

Job Responsibility:

  • Design, implement, administer, and maintain security controls for Amgen’s identity and access management ecosystem, including provisioning, authentication, and authorization systems
  • Engineer and support secure identity provisioning solutions aligned with IAM and RBAC frameworks across on-premises and cloud environments
  • Serve as a security engineering lead for IdM and access-related initiatives, ensuring solutions meet security architecture standards, governance requirements, and regulatory expectations
  • Conduct security reviews, threat modeling, and risk assessments for identity-related systems and integrations
  • Partner with project and application teams to embed security best practices into system designs, configurations, and deployments
  • Monitor security, operational, and performance metrics for managed systems
  • develop KPIs to track security posture, availability, and growth trends
  • Support incident response activities related to identity, access, and authentication issues, including investigation, containment, remediation, and documentation
  • Develop and maintain security documentation, including system security designs, operational procedures, incident response playbooks, and access control policies
  • Evaluate emerging security tools, technologies, and industry trends to continuously improve identity and access security capabilities
  • Ensure compliance with internal security standards, industry frameworks, and regulatory requirements (e.g., NIST, ISO 27001, GDPR, HIPAA)

Requirements:

  • Master’s degree and 4 years of Information Systems or Information Security experience
  • Bachelor’s degree and 6 years of Information Systems or Information Security experience
  • Associate’s degree and 8 years of Information Systems or Information Security experience
  • Strong experience with identity and access management (IAM) and identity security solutions
  • Hands-on experience integrating SailPoint with enterprise applications (on-prem and cloud)
  • Solid understanding of identity governance concepts, including RBAC, access certifications, least privilege, and user lifecycle management
  • Proficiency with identity platforms such as SailPoint, Okta, Azure AD / Entra ID
  • Knowledge of authentication and provisioning protocols (SCIM, SAML, OAuth, OpenID Connect)
  • Experience working with APIs and secure integration patterns
  • Strong understanding of directory services (LDAP, Active Directory)
  • Familiarity with security frameworks and compliance requirements (NIST, ISO 27001, GDPR, HIPAA)
  • Ability to perform security risk assessments, vulnerability analysis, and remediation planning
  • Strong analytical, problem-solving, and troubleshooting skills

Nice to have:

  • Scripting and automation skills (PowerShell, Python)
  • Experience in broader Information Security domains (e.g., security engineering, IAM security, cloud security)
  • Experience working in Agile delivery environments
  • Exposure to security monitoring, logging, and alerting concepts
  • Cloud certifications (Microsoft Azure, AWS, or GCP)
  • Identity, Access Management, or Information Security certifications
  • SailPoint certification
What we offer:
  • Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide
  • Modern Tech Stack – Cloud-first, automation-focused, AI-powered
  • Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams
  • Continuous Learning – Access to certifications, trainings, mentorship, and career mobility
  • AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being
  • Flexibility – Hybrid work model with time split between our Lisbon office and remote work

Additional Information:

Job Posted:
January 15, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Specialist IS Security Engineer – Identity Management

Head of cyber threat exposure and attack surface management

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts
Job Responsibility
Job Responsibility
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data-driven investment decisions
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Solutions Engineer, Security Specialist

The Technical Success team is responsible for ensuring the safe and effective de...
Location
Location
Japan , Tokyo
Salary
Salary:
Not provided
openai.com Logo
OpenAI
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years in a customer-facing security role such as security pre-sales/solutions engineering, security consulting, security architecture, or GRC-adjacent customer advisory in B2B SaaS or cloud environments
  • Can credibly engage and influence CISOs, security architects, privacy teams, and procurement/risk stakeholders in real-time discussions
  • Have working knowledge of common frameworks and requirements (e.g., SOC 2, ISO 27001, GDPR
  • DORA
  • bonus for regulated regimes like FedRAMP/HIPAA/PCI/DORA depending on segment)
  • Understand modern cloud/security fundamentals: IAM, network/security architecture, encryption/key management concepts, logging/monitoring, vulnerability management, incident response, and secure SDLC
  • Are strong in structured writing and can produce crisp, consistent answers under time pressure (questionnaires, RFIs, executive summaries)
  • Can operate in ambiguity, own problems end-to-end, and create repeatable processes that scale beyond yourself
Job Responsibility
Job Responsibility
  • Lead customer security engagements end-to-end: discovery, security deep dives, live calls, follow-ups, and action tracking—especially for regulated customers
  • Own security questionnaires/RFIs for priority customers: coordinate inputs, ensure accuracy, drive turnaround time, and manage escalations
  • Translate security posture into customer-relevant narratives: data flows, tenant boundaries, identity and access controls, encryption, logging/monitoring, incident response, privacy controls, and risk mitigations
  • Guide customers to standardized resources (e.g., trust collateral) and explain what is standard vs. what requires escalation or exceptions
  • Partner closely with GRC and Security teams to escalate non-standard requirements, clarify control intent, and ensure customer-facing responses remain aligned with approved posture
  • Create scalable enablement: playbooks, FAQs, response libraries, and training that reduce repeated work for Solutions Engineers and Sales
  • Represent the voice of regulated customers internally by identifying themes and recurring blockers
  • propose improvements to packaging, documentation, and product readiness
  • Fulltime
Read More
Arrow Right

Technical Operations Manager

We are seeking a Technical Operations Manager to own and mature security-focused...
Location
Location
Canada , Toronto
Salary
Salary:
110000.00 - 130000.00 CAD / Year
sokin.com Logo
Sokin
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years’ experience in Security Operations, Technical Operations, or Systems Engineering roles
  • Demonstrated experience operating security controls at global scale
  • Experience supporting distributed, multi-region organisations
  • Strong hands-on experience in blue-team security operations
  • Deep knowledge of Microsoft security tooling - Defender, Purview, Azure Entra ID, Manage Engine Endpoint Central (or any MDM solution)
  • Strong experience with Windows and macOS endpoint security and patching
  • Solid understanding of Zero Trust security principles
  • Strong scripting and automation skills especially in Powershell
Job Responsibility
Job Responsibility
  • Lead and continuously improve global TechOps security operations across endpoints, identity, collaboration, and access layers
  • Operate as a blue-team practitioner, supporting: Threat detection, investigation, and response
  • Security alert triage and incident handling
  • Root-cause analysis and remediation
  • Ensure effective incident lifecycle management, including containment, recovery, and post-incident reviews
  • Own and operate global security tooling, including: Microsoft Defender (Endpoint, Identity, Office 365, Cloud Apps)
  • Network Security
  • Security monitoring and alerting capabilities
  • Define and enforce global security operating standards for TechOps
  • Support privileged access and least-privilege access models globally
What we offer
What we offer
  • Inclusive work environment
  • Agile, flexible working culture
  • Fulltime
Read More
Arrow Right

Project Manager, Google Cloud Professional Services

As a Project Manager at Premier Cloud, you will lead the successful delivery of ...
Location
Location
United States; Canada
Salary
Salary:
Not provided
premiercloud.com Logo
Premier Cloud
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of project management experience with at least 2 years focused on cloud technology projects
  • Demonstrated success managing complex projects on-time and on budget with teams of 5–10+ members
  • Proven ability to manage multiple concurrent projects with varying complexity and stakeholder needs
  • Experience with Agile/Scrum methodologies and iterative delivery approaches
  • Strong track record of building client relationships and achieving 85%+ satisfaction scores
  • Google Cloud Associate Cloud Engineer certification is preferred (or Professional Cloud Architect/Developer/DevOps Engineer)
  • If not currently certified: commitment to achieve Associate Cloud Engineer within 3 months and Professional Cloud Architect within 12 months of hire
  • Hands-on familiarity with core GCP services: Compute Engine, GKE, Cloud Run, BigQuery, Cloud Storage, Cloud SQL, Pub/Sub, and Cloud Functions
  • Understanding of cloud migration methodologies (lift-and-shift, re-platform, re-architect) and infrastructure modernization patterns
  • Solid understanding of cloud architecture concepts including networking, security, identity management, and infrastructure-as-code
Job Responsibility
Job Responsibility
  • Lead End-to-End Google Cloud Implementations
  • Manage 3–6+ concurrent Google Cloud projects at different stages spanning migrations, infrastructure modernization, data analytics platforms, and AI/ML implementations
  • Own project planning, scope management, resource allocation, budget tracking, and timeline execution
  • Coordinate cross-functional teams including cloud architects, DevOps engineers, data engineers, security specialists, and client stakeholders
  • Drive projects using Agile methodologies with 2-week sprints, daily standups, and iterative delivery milestones
  • Serve as Trusted Client Advisor
  • Act as primary point of contact for client executives, IT leadership, and project stakeholders
  • Guide clients through complex cloud transformation decisions, balancing technical possibilities with business constraints
  • Provide weekly status updates, executive summaries, and transparent risk/mitigation reporting
  • Build relationships that extend beyond project completion, achieving 75%+ reference willingness and identifying expansion opportunities
What we offer
What we offer
  • Competitive Compensation: A package that reflects your experience and impact
  • Growth & Development: Continuous training, certifications, and opportunities to work on cutting-edge Google Cloud projects
  • Collaboration with Google: Work directly with Google teams on transformative client initiatives
  • Comprehensive Benefits: Including health coverage, paid time off, and relocation assistance (if applicable)
  • Fulltime
Read More
Arrow Right

Senior Security Architect

Rackspace Technology is looking for a Senior Security Architect to support 'Clou...
Location
Location
Egypt
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record in security consulting
  • Experience designing and securing Landing Zones (LZs) in cloud environments
  • Experience designing secure platforms on major hyperscalers (AWS, Azure, or GCP - GCP preferred)
  • Demonstrable experience designing secure cloud-native systems
  • Demonstrable experience in relevant legislation, industry regulations and standards (ISR, EU GDPR, HIPAA, ISO27001, ISO 22301, ISO/IEC 20000-1, ISO 22301, NCEMA, NIST CSF, PCI DSS, Cloud Security Alliance CCM, CIS, OWASP, Cyber Essentials)
  • In-depth knowledge of Well-architected frameworks and best practices of major cloud providers
  • Ability to lead engagements and take ownership for successful delivery
  • Specialist cloud security architectural knowledge in: Account governance, Identity and Access Management (IAM), Asset management and data protection, Infrastructure and platform security, Application security including threat modelling and secure CI/CD, Change management practice and detection capabilities, Boundary defence, Cloud Logging and Monitoring, Continues vulnerability and patch management systems, Incident response and threat mitigation, Cloud backup/recovery and disaster recovery (DR)
  • Client-facing consultancy experience within large enterprises
  • Ability to identify and plan to resolve technical and organizational challenges
Job Responsibility
Job Responsibility
  • Advise and guide customers on cloud security journey as Subject Matter Expert (SME)
  • Engage with customers to assess cloud security posture
  • Ensure subsequent cloud design and build is appropriately secured
  • Provide guidance on cloud security roadmap
  • Assist on defining right-size cloud security controls
  • Liaise with customer's architects and engineers
  • Advise, design and deliver innovative cloud security Proof of Concepts
  • Evolve existing Rackspace security services
  • Implement new services under 'Cloud Security Service' banner
  • Establish best-practices for consultancy
  • Fulltime
Read More
Arrow Right

Technical Operations Manager

We are seeking a Technical Operations Manager to own and mature security-focused...
Location
Location
Australia , Sydney
Salary
Salary:
Not provided
sokin.com Logo
Sokin
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years’ experience in Security Operations, Technical Operations, or Systems Engineering roles
  • Demonstrated experience operating security controls at global scale
  • Experience supporting distributed, multi-region organisations
  • Strong hands-on experience in blue-team security operations
  • Deep knowledge of Microsoft security tooling - Defender, Purview, Azure Entra ID, Manage Engine Endpoint Central (or any MDM solution)
  • Strong experience with Windows and macOS endpoint security and patching
  • Solid understanding of Zero Trust security principles
  • Strong scripting and automation skills especially in Powershell
  • Right to work in the jurisdiction they are looking to work in
Job Responsibility
Job Responsibility
  • Lead and continuously improve global TechOps security operations across endpoints, identity, collaboration, and access layers
  • Operate as a blue-team practitioner, supporting threat detection, investigation, response, security alert triage, incident handling, root-cause analysis and remediation
  • Ensure effective incident lifecycle management
  • Own and operate global security tooling
  • Define and enforce global security operating standards for TechOps
  • Support privileged access and least-privilege access models globally
  • Own and ensure the effectiveness of endpoint security and patch management for Windows and macOS globally
  • Own MDM and device compliance across regions
  • Administer Azure Entra ID globally
  • Implement and maintain Microsoft Purview controls for data protection, DLP, and information classification
What we offer
What we offer
  • Inclusive work environment
  • Agile, flexible working culture
Read More
Arrow Right

Conditional Access & Identity Protection Operations Specialist

We are seeking a skilled Conditional Access & Identity Protection Operations Spe...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, or a related field
  • 5–6 years of experience in cybersecurity operations, preferably in identity and access management
  • Hands-on experience with Microsoft security stack: Azure AD, Conditional Access, MDCA, MDI, and Defender for Identity
  • Familiarity with SIEM tools and integration workflows (e.g., ArcSight, Sentinel, GoogleSecOps)
  • Strong understanding of authentication protocols, MFA, and passwordless strategies
  • Knowledge of governance, compliance frameworks, and risk mitigation strategies
  • Strong analytical and troubleshooting skills with effective communication and stakeholder management
Job Responsibility
Job Responsibility
  • Operate and maintain Conditional Access policies, Microsoft Defender for Cloud Apps (MDCA), Azure AD Identity Protection (AAIP), and Microsoft Defender for Identity (MDI)
  • Monitor and respond to identity-related security incidents, including risky sign-ins, MFA challenges, and session control triggers
  • Manage BAU operations: ticket handling, SLA adherence, change requests, and incident escalations
  • Collaborate with engineering teams to onboard new policies, integrate with SIEM tools, and support security automation
  • Participate in governance reviews, compliance audits, and risk assessments
  • Contribute to continuous improvement initiatives, including cross-skilling and upskilling within the CAIP domain
  • Drive problem-solving and innovation in operational challenges while ensuring effective collaboration and knowledge sharing
What we offer
What we offer
  • Opportunity to work on cutting-edge Microsoft Cloud Security technologies
  • Exposure to global security operations and compliance frameworks
  • Collaborative work environment with continuous learning and development opportunities
  • Be part of a team driving innovation in identity protection and cloud security
Read More
Arrow Right

Senior Account Security Lead

The Account Security team protects Shopify’s platform and merchants from account...
Location
Location
Salary
Salary:
Not provided
shopify.com Logo
Shopify
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Account security, fraud prevention, risk management, or a related field, with a focus on ATO and identity-related threats
  • Leading a large operational team in different time zones, supporting individual growth, providing feedback, identifying areas for efficiency gains, and unlocking additional value
  • Acting as the key operational partner to product, engineering, and data teams
  • Using data to unlock insights into business processes and driving improvements and efficiencies
  • Responding to incidents, conducting retros and, investigations, and collaborating with cross-functional partners, specifically within the security or identity space
  • Working in ecommerce, fintech, or large-scale digital platforms
Job Responsibility
Job Responsibility
  • Build, lead, and develop a high-performing, globally distributed team of account security specialists
  • Own strategy and execution and key metrics for your function, balancing robust security with seamless experience and continuous improvement
  • Ensure swift, accurate verification and restoration of access for merchants, minimizing operational downtime while helping Shopify build the capabilities that enable merchants to self-serve and improve their security hygiene practices
  • Collaborate within the broader team on development of tooling and automation capabilities. Driving the development and continuous improvement of detection and automation to identify and respond to threats in real time
  • Contribute to incident response: triage, investigate, and resolve security incidents, collaborating across security, engineering, data, trust, and product teams
  • Use data in many capacities: Identify opportunities to gain efficiency and automate workflows
  • Identify trends and patterns within the security landscape
  • Sharing insights with engineering and product teams to enable Shopify to manage risk more effectively and grow responsibly
Read More
Arrow Right