Назад
Company hidden
10 дней назад

Senior Security IAM Engineer (Terraform)

Формат работы
remote (только Spain)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security IAM Engineer (Terraform): Building and scaling identity and access management systems across cloud, SaaS, AI, and remote access environments with an accent on Terraform automation, least-privilege design, identity governance, and Zero Trust controls. Focus on engineering reusable IAM workflows, reducing identity risk, strengthening privileged access, and applying safe AI-assisted operations.

Location: Remote in Spain

Company

hirify.global is a global interactive entertainment and video game company developing, publishing, and operating games across mobile, web, PC, and console.

What you will do

  • Design and evolve IAM architecture across AWS, GCP, SaaS applications, AI tooling, and remote access platforms.
  • Build reusable Terraform modules, policy-as-code patterns, and Git-based workflows for IAM roles, policies, permission sets, group mappings, and access changes.
  • Automate identity lifecycle management, access requests, approvals, provisioning, deprovisioning, access reviews, and reporting.
  • Strengthen least-privilege, Zero Trust, privileged access, workload identity, service account, and cross-account security controls.
  • Support identity monitoring, investigations, audit readiness, SOC 2 and ISO 27001 alignment, and access evidence collection.
  • Develop AI-assisted IAM workflows with human approval controls, auditability, secure integrations, and least-privilege tool access.

Requirements

  • 8–12+ years of experience in IAM security engineering, cloud security, identity architecture, or related security engineering roles.
  • Strong hands-on experience with AWS IAM, AWS Organizations, IAM Identity Center, GCP IAM, Okta, federated identity, SAML, OIDC, OAuth, and SCIM.
  • Production experience with Terraform-based IAM automation, reusable modules, state management, drift detection, rollback planning, and safe deployment.
  • Experience with Python, Bash, PowerShell, APIs, CI/CD, Git-based workflows, provisioning automation, and access reporting.
  • Strong understanding of least privilege, RBAC, ABAC, identity threat modeling, privileged access, identity lifecycle management, and non-human identity risk.
  • Experience working with engineering, infrastructure, security, compliance, and audit stakeholders in complex cloud-first environments.

Nice to have

  • Experience with Britive, CyberArk, SailPoint, Okta Workflows, CIEM, identity governance, Wiz, GuardDuty, or Astrix.
  • Experience with passwordless authentication, WebAuthn, FIDO2, gaming, SaaS, or multi-studio environments.
  • Experience building AI-assisted IAM workflows and familiarity with AI security, governance, MCP integrations, and agentic automation.
  • Security certifications such as CISSP, AWS Security Specialty, or relevant IAM and cloud certifications.

Culture & Benefits

  • Remote work arrangement in Spain.
  • Work across cloud, SaaS, AI, engineering, and global interactive entertainment environments.
  • Collaboration with engineering, platform, IT, security operations, compliance, infrastructure, and studio teams.
  • Focus on automation-first security engineering, reusable systems, practical governance, and scalable identity controls.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →