Identity and Access Management (IAM) Engineer
Indexed description
Identity Access Management (IAM) Specialist
Role Summary:
We are seeking a highly skilled IAM Specialist to architect, implement, and manage enterprise-grade identity and access solutions. The ideal candidate will have extensive experience with IAM platforms, protocols, and security frameworks, and will play a key role in securing digital identities across OT/ Mining environments.
Core Responsibilities:
- Design and implement IAM solutions using platforms such as SailPoint, Okta, Azure AD, ForgeRock, Ping Identity, or CyberArk.
- Develop and enforce Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Least Privilege models.
- Configure and maintain SSO (Single Sign-On) and MFA (Multi-Factor Authentication) using protocols like SAML 2.0, OAuth 2.0, and OpenID Connect.
- Integrate IAM with cloud platforms (AWS IAM, Azure AD, GCP IAM) and on-premise directories (Active Directory, LDAP).
- Automate identity lifecycle management: provisioning, de-provisioning, and access reviews using tools like SCIM and PowerShell scripts.
- Implement and manage Privileged Access Management (PAM) solutions for sensitive accounts.
- Conduct access certification campaigns, periodic audits, and compliance reporting (SOX, HIPAA, GDPR).
- Monitor IAM logs and alerts using SIEM tools (Splunk, QRadar, Sentinel) and respond to anomalies or breaches.
- Collaborate with DevOps and Security teams to embed IAM into CI/CD pipelines and zero-trust architectures.
- Maintain detailed documentation of IAM configurations, workflows, and policies.
Required Technical Skills:
- Proficiency in directory services: Active Directory, Azure AD, LDAP.
- Strong scripting skills: PowerShell, Python, Bash.
- Deep understanding of identity federation, authentication protocols, and access governance.
- Experience with API integrations and RESTful services for IAM workflows.
- Familiarity with containerized environments (Docker, Kubernetes) and securing service identities.
- Knowledge of PKI, certificate management, and digital signatures.
- Hands-on experience with IAM architecture design, scalability, and performance optimization.
Qualifications:
- Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field.
- 5-7 years of experience in IAM or related security roles.
- Certifications preferred: CISSP, CIAM, CISM, Microsoft Certified: Identity and Access Administrator Associate, Okta Certified Professional, SailPoint Certified Identity Now Engineer
Send English profile only
Create a free Caio profile to unlock more results and save your role and location preferences.
Unlock free search