Identity & Access Management (IAM) Engineer
P3 · Romania
Skills in this posting
The posting
We are looking for an experienced Identity & Access Management (IAM) Engineer to join a complex and highly regulated enterprise environment. In this role, you will be responsible for designing and implementing identity and access management solutions while ensuring compliance with security, governance, and audit requirements.
A key responsibility is the design and maintenance of an enterprise authorization model, with a strong focus on the separation of privileged and standard user accounts based on an established tiering concept. Key responsibilities
Design, implement, and maintain Identity & Access Management (IAM) solutions.
Develop and maintain enterprise authorization and permission models.
Ensure the proper separation of privileged and standard accounts in accordance with the organization's tiering strategy.
Manage identities, groups, roles, and permissions across Active Directory, Microsoft Entra ID, and SaaS applications.
Configure and administer Azure Role-Based Access Control (RBAC), including:
Role Definitions
Scopes
Permission Inheritance
Custom Roles
Process and implement access requests received through ServiceNow while communicating with stakeholders to clarify business requirements when necessary.
Develop and maintain PowerShell automation scripts for identity and access management tasks.
Work with Microsoft Graph, Az PowerShell modules, and related Microsoft technologies to automate administrative processes.
Ensure all IAM activities comply with internal security policies, compliance standards, and audit requirements
Strong technical knowledge of
Active Directory
Microsoft Entra ID
Identity and access management for SaaS applications
Solid understanding of Azure RBAC concepts and administration.
Experience with PowerShell scripting, including Microsoft Graph and Az PowerShell modules.
Good understanding of privileged access management and account tiering concepts.
Strong analytical and problem-solving skills.
Good communication skills in German, as the role involves working with ServiceNow tickets and interacting with requestors to clarify access requirements.
Experience working in regulated enterprise environments is considered an advantage.
Working conditions
Availability during the service window from Tuesday to Friday, 08:00–12:00 (remote presence preferred during these hours).
Full-time assignment (40 hours per week).
Originally posted on Himalayas
The PivotHop read
- What a security engineer actually earnsmedian, seniority, by country
- Alternative careers for a security engineerevery measured route out
- Penetration Tester → Security Engineer51% readiness
- All open security engineer rolesthe full board
Where these skills also reach
- 78 open penetration tester roles78% readiness from security engineer
- 351 open network engineer roles61% readiness from security engineer
- 698 open systems administrator roles52% readiness from security engineer
- 1947 open systems engineer roles51% readiness from security engineer
More security engineer roles
- Engenheiro de segurança do trabalho - Remoto at Direct employerBrazil - Rio de JaneiroTodayUnlock
Senior Security Engineer at Freiheit.com TechnologiesHamburgTodayApply- Associate IAM Engineer at Direct employerBrooklyn, USTodayUnlock
- IAM Engineer at Direct employerBrooklyn, USTodayUnlock
- Cybersecurity Engineer I - FIM at SouthState BankUnited States · Remote$76k–$122kTodayApply
Backfilled listing, refreshed with the nightly scrape; the employer has not claimed it yet. Are you the employer? Claim this listing and it can be featured to the candidates whose skills already reach it, first month free.