The IAM and Cyber Security Engineer is responsible for designing, implementing, and maintaining robust identity and access management solutions, as well as broader cybersecurity controls. This role will work closely with IT, business stakeholders, and security team to ensure the organization’s assets are protected, regulatory requirements are met, and users have appropriate access.
Requirements
- Design, implement, and maintain IAM solutions such as Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM).
- Administer identity lifecycle processes including onboarding, offboarding, and access reviews.
- Integrate IAM technologies with enterprise & in-house applications (cloud and on-premise).
- Define and enforce role-based access controls (RBAC) and least privilege principles.
- Perform regular audits and reviews of user accounts, access privileges, and entitlements.
- Monitor and respond to IAM-related security incidents and anomalies.
- Document IAM architectures, processes, and procedures.
- Collaborate with IT and business teams to ensure secure and efficient access management.
- Support regulatory compliance efforts related to identity and access
- Develop and enforce cybersecurity policies, standards, and procedures.
- Design and implement security controls across network, endpoint, and cloud environments.
- Monitor, analyze, and respond to security events, threats, and vulnerabilities.
- Conduct security assessments, penetration testing, and vulnerability management.
- Assist in the investigation and remediation of security incidents.
- Stay current with emerging threats, vulnerabilities, and security technologies.
- Provide technical guidance and training on cybersecurity best practices.
- Support regulatory compliance and audit activities.
- Document security architectures, incident response plans, and procedures.
- Provide guidance to relevant team members on IAM best practices and technologies.
- Lead small projects or initiatives related to IAM improvements and implementations.
- Assist in developing IAM standards and procedures for the organization.
- Foster collaboration and knowledge sharing across IT and business teams.
- Lead or coordinate security initiatives.
- Contribute to the development and improvement of cybersecurity processes and documentation.
- Promote a culture of security awareness and proactive risk management within the organization.
- Ensure timely and clear communication of incident updates to stakeholders, including senior management and end users.
- Bridge communication between technical teams and non-technical stakeholders to provide clarity and context.