NoFluffJobs Praca zdalna Senior

IAM Engineer (Identity and Access Management)

Augmenta

⚲ Remote

30 000 - 35 000 PLN (B2B)

Wymagania

  • IGA platforms
  • Python
  • Python (nice to have)
  • SQL (nice to have)
  • Golang (nice to have)
  • PowerShell (nice to have)
  • Experience in the financial industry (nice to have)

Opis stanowiska

O projekcie:
Join our rapidly expanding IAM team at a pivotal scale-up moment. You will shape our security architecture and influence how we evolve. This role will be responsible for engineering and supporting Single Sign-On (SSO) design & integrations and Identity Governance & Administration (IGA) platform to ensure secure, scalable, and auditable access across the organization.

You will work across the full identity lifecycle, designing and integrating enterprise applications into our SSO infrastructure using modern federation standards (SAML, OIDC, OAuth2), while also onboarding those applications into our IGA platform to enforce role-based access control (RBAC), streamline entitlement reviews, and support regulatory compliance initiatives.

You will build and automate IAM solutions, contribute to access policies and role modeling, and collaborate with technical teams and compliance stakeholders.
What We Offer

- Highly competitive compensation package based on your experience and expertise.- 100% Remote: Enjoy the flexibility of a fully remote position.

Wymagania:
Please note that the required overlap with the US team is until at least 2:00 PM ET (8 PM CET in Poland).
Required Qualifications- Strong English communication skills
- 2-5 years of experience in IAM, with at least 2 years focused on access governance, entitlement reviews, or SSO integration.
- Previous experience with any enterprise IGA platform (ConductorOne, SailPoint, Saviynt, or Oracle Identity Governance), including configuring connectors, onboarding applications, and implementing access certification workflows.
- Experience integrating applications with enterprise Single Sign-On (SSO) solutions using SAML, OIDC, or OAuth2 protocols.
- Solid understanding of Role-Based Access Control (RBAC) concepts, the entitlement lifecycle, and how they apply to automated provisioning, de-provisioning, and access modeling.
- Ability to gather, analyze, and document technical and business requirements to support IAM processes such as role mining, access policy definition, and entitlement rationalization.
- Familiarity with regulatory frameworks such as SOX, ISO 27001, NIST, or GLBA, and how they influence identity lifecycle and access governance requirements.
- Experience using tools such as Excel, Visio, and Confluence to create process flows, data maps, and documentation for IAM initiatives.
- Highly organized and detail-oriented, with the ability to manage multiple concurrent application onboarding and integration efforts.Beneficial Skills & Experience

- Experience contributing to enterprise-scale entitlement review campaigns, including remediation strategies and audit response preparation.
- Scripting or programming for IAM automation and data transformation, using languages such as Python or Golang (preferred), as well as tools like SQL or PowerShell.
- Experience in the financial industry and familiarity with regulatory frameworks (e.g., SOX, GLBA, FFIEC).

Codzienne zadania:
- Support the implementation of access certification processes within the IGA platform (e.g., SailPoint, Saviynt) to ensure periodic entitlement reviews align with least-privilege principles and compliance requirements.
- Contribute to the integration of applications with Single Sign-On (SSO) using identity federation protocols such as SAML, OIDC, and OAuth2, collaborating with application teams and security architects.
- Work closely with IAM architects and application teams to onboard applications into the IGA platform, ensuring entitlement data, user attributes, and provisioning rules are accurately mapped and configured.
- Analyze access patterns and application entitlements to assist in role mining, entitlement rationalization, and the development of scalable, governance-aligned role models.
- Document technical specifications, data mappings, and integration workflows for SSO and IGA implementations, supporting both technical teams and audit requirements.
- Configure and maintain integrations between target systems and the IGA platform, ensuring proper lifecycle management of users and entitlements.
- Assist in the creation of access policies and role definitions, aligning with business and compliance requirements.
- Generate reports and provide evidence for audit activities, including entitlement reviews, access request histories, and policy enforcement logs.
- Identify technical gaps or inconsistencies in access controls, provisioning workflows, or entitlement structures and propose engineering solutions to address them.
- Participate in testing, validation, and deployment of IAM-related changes, ensuring proper functionality across SSO and IGA components.
- Provide technical support and knowledge sharing to application teams and business stakeholders around IAM integration processes and access governance best practices.

🔍 Dekoder Ogłoszenia

🔴
pivotal scale-up moment
Firma jest w fazie intensywnego rozwoju, co może oznaczać dynamiczne zmiany, nieustabilizowane procesy i potencjalnie większą presję.
🟡
influence how we evolve
Masz szansę wpłynąć na kierunek rozwoju, ale może to też oznaczać, że obecne procesy i rozwiązania nie są jeszcze w pełni ukształtowane.
🟡
full identity lifecycle
Obejmuje to wszystkie etapy zarządzania tożsamością, od tworzenia po usuwanie, co może być szerokim zakresem obowiązków.
🟡
Highly competitive compensation package based on your experience and expertise
Wynagrodzenie jest elastyczne i zależy od oceny Twoich umiejętności i doświadczenia przez pracodawcę, co może prowadzić do negocjacji.
🔴
required overlap with the US team is until at least 2:00 PM ET (8 PM CET in Poland)
Wymaga to pracy w późnych godzinach wieczornych w Polsce, co może wpływać na równowagę między życiem zawodowym a prywatnym.