Назад
Company hidden
6 дней назад

Sr. Identity and Access Management Engineer (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Sr. Identity and Access Management Engineer (Cybersecurity): Designing and operating enterprise identity security capabilities across IGA, PAM, secrets management, and IAM automation with an accent on identity lifecycle governance, privileged access controls, and secure integrations. Focus on building scalable access workflows, automating provisioning and secrets rotation, and solving complex identity security challenges across cloud and SaaS environments.

Location: Madrid, Spain. Office-first culture with three days a week in the office for most roles.

Company

hirify.global provides an AI-ready governance platform for responsible data use, regulatory intelligence, automation, and connected governance workflows.

What you will do

  • Design and implement IGA capabilities covering identity lifecycle management, access requests, approvals, provisioning, certifications, and role governance.
  • Engineer PAM controls for privileged identities, including time-bound elevation, session controls, auditing, and least-privilege enforcement.
  • Implement secrets management for human and non-human identities, including vaulting, rotation, access policies, and auditability.
  • Build IAM integrations with HR systems, directories, and SaaS applications using SCIM, SAML/OIDC, APIs, and automation.
  • Develop scripting, CI/CD, infrastructure-as-code, reporting, connector onboarding, and operational runbook solutions.
  • Support IAM incidents, proofs of concept, vendor evaluation, technical documentation, stakeholder advising, and peer mentoring.

Requirements

  • IGA architecture and engineering expertise, including identity lifecycle, RBAC/ABAC, access reviews, entitlement modeling, and segregation of duties.
  • Hands-on PAM and secrets management experience, including JIT/JEA, privileged identity separation, vaulting, rotation, and auditing.
  • Strong scripting and development skills with technologies such as SQL, JavaScript, PowerShell, Python, Velocity, SOAPUI, ARC, Postman, Java/J2EE, or Bash.
  • Experience with API integrations, Git-based workflows, and IAM controls in modern cloud and SaaS environments, especially Azure.
  • At least 5 years of IAM experience, 3 years of PAM and/or secrets management experience, and 3 years of cloud experience, or equivalent work experience.
  • Bachelor’s degree in Computer Science, Engineering, Math, or a related subject, or equivalent experience.

Nice to have

  • Experience with Saviynt, SailPoint, Omada, Entra ID/Azure AD, CyberArk, Delinea, BeyondTrust, Akeyless, HashiCorp Vault, Azure Key Vault, or AWS Secrets Manager.
  • Knowledge of SOX, SOC 2, ISO 27001-style controls and audit evidence collection.
  • Experience integrating IAM with ticketing, workflow, and operational systems.

Culture & Benefits

  • Office-first working environment designed to support in-person collaboration.
  • Comprehensive healthcare coverage, flexible paid time off, and retirement account support.
  • Equity RSUs and annual performance bonus opportunities.
  • 14+ weeks of paid parental leave and career development opportunities.
  • Company-paid privacy certification exam fees.
  • Benefits vary by country.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →