Назад
Company hidden
8 дней назад

Principal Security Engineer – Identity & Access (Fintech)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior/lead
Английский
b2
Страна
Argentina/Spain/Romania +2 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Principal Security Engineer – Identity & Access (Fintech): Building a highly automated identity security program across workforce systems, cloud, SaaS, and on-premise environments with an accent on identity lifecycle automation, federation, Zero Trust, and governance. Focus on engineering JML and SoD controls, integrating acquired organizations, configuring IGA platforms, and translating compliance policies into scalable identity workflows.

Location: Hybrid in Barcelona, Madrid, Buenos Aires, Montevideo, Sao Paulo, or Bucharest

Company

Builds global fintech infrastructure and is scaling a modern, highly automated identity security program.

What you will do

  • Engineer automated Joiner-Mover-Leaver lifecycle processes, access certifications, Separation of Duties controls, and unified identity governance frameworks.
  • Design authentication and authorization foundations across cloud, SaaS, and on-premise environments using SAML, OAuth2, OpenID Connect, and SCIM.
  • Drive Zero Trust architecture and Adaptive MFA adoption across the enterprise.
  • Lead identity integration strategies for mergers, acquisitions, and large-scale enterprise transformation initiatives.
  • Configure integrations, write RBAC policies, engineer IGA platforms, and resolve complex access flows directly.
  • Design self-service workflows, automated controls, and identity KPIs while partnering with engineering and commercial leaders.

Requirements

  • Proven experience designing, building, or scaling identity and access programs in complex, fast-paced environments.
  • Hands-on expertise in JML, SoD, access certifications, SAML, OIDC, OAuth2, SCIM, RBAC, and ABAC.
  • Experience with enterprise identity platforms such as SailPoint, Saviynt, or Okta.
  • Experience with highly regulated environments and requirements including PCI-DSS, SOX, and SOC 2.
  • Familiarity with machine identity governance, secrets management, and API access.
  • Strong mentoring, leadership, documentation, prioritization, and stakeholder communication skills.

Nice to have

  • Relevant industry certifications in identity and access security.

Culture & Benefits

  • Hybrid work arrangement across the listed locations.
  • Hands-on, highly automated security engineering environment rather than a bureaucratic IAM function.
  • Opportunity to shape identity strategy and execution during rapid growth and acquisitions.
  • Focus on balancing least-privilege security with business usability and delivery speed.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →