IAM Senior Engineer

Inbox Business Technologies
الرياض, الرياض دوام كامل
نشر: 1448/2/15 | 2026/07/29 ينتهي: 1448/3/15 | 2026/08/28 ✨ وصف بالذكاء الاصطناعي
تقدم للوظيفة الآن

الوصف الوظيفي

About the Role

We are seeking an experienced IAM Senior Engineer to lead the design, implementation, and maintenance of enterprise-wide Identity and Access Management (IAM) solutions. This critical role will focus on delivering secure, scalable, and efficient identity infrastructure that aligns with zero-trust security principles and business requirements. The ideal candidate will collaborate with cross-functional teams—including security, infrastructure, and application development—to ensure seamless integration of IAM solutions across the organization. By automating identity lifecycle processes, enforcing robust access governance, and integrating modern authentication frameworks, you will play a pivotal role in safeguarding digital assets while enabling frictionless user experiences.

Key Responsibilities

The IAM Senior Engineer will be responsible for the following core functions:

  • IAM Architecture & Engineering:
    • Design and deploy enterprise IAM architectures, including identity lifecycle management, authentication and authorization models, access governance, and role-based access control (RBAC/ABAC).
    • Implement privileged access management (PAM) solutions to secure high-risk accounts and reduce standing privileges.
    • Develop and integrate identity solutions using modern protocols such as SAML, OAuth, OIDC, and SCIM, ensuring seamless interoperability across applications and platforms.
    • Align IAM architectures with zero-trust security principles to enforce least-privilege access and continuous verification.
  • Identity Lifecycle & Automation:
    • Automate joiner/mover/leaver (JML) workflows to streamline onboarding, role changes, and offboarding processes.
    • Develop custom connectors, provisioning scripts, and automation pipelines using PowerShell and Windows scripting to optimize identity data flows between HR systems, directories, and applications.
    • Ensure timely and accurate synchronization of identity data across heterogeneous environments.
  • Directory & Authentication Services:
    • Manage and maintain enterprise identity directories, including Active Directory, Entra ID (Azure AD), and LDAP-based systems.
    • Implement multi-factor authentication (MFA), passwordless authentication, and adaptive access policies to enhance security posture.
    • Troubleshoot and resolve authentication issues across diverse protocols, including Kerberos, LDAP, SAML, OAuth 2.0, and OIDC.
  • Access Governance & Compliance:
    • Ensure compliance with access policies and regulatory frameworks, including ISO 27001, SOX, HIPAA, and PCI DSS.
    • Support and automate access certifications and attestations to maintain audit readiness.
    • Develop and maintain IAM standards, patterns, and operational playbooks to ensure consistency and scalability.
    • Conduct periodic access reviews and risk assessments to identify and mitigate potential security gaps.
  • Privileged Access Management (PAM):
    • Administer PAM platforms such as CyberArk, BeyondTrust, or Delinea to manage privileged accounts, enforce credential rotation, and monitor sessions.
    • Implement just-in-time (JIT) access models to minimize exposure and reduce the attack surface.
    • Collaborate with security teams to identify and remediate legacy admin accounts and standing privileges.
  • Application Integration:
    • Onboard applications for single sign-on (SSO) and automated provisioning using SAML, OAuth, and SCIM protocols.
    • Partner with development and product teams to embed secure identity patterns into application architectures.
    • Ensure seamless integration of third-party and custom applications with the IAM ecosystem.
  • Incident Response & Troubleshooting:
    • Investigate and resolve IAM-related security incidents, including unauthorized access attempts and authentication failures.
    • Support the Security Operations Center (SOC) with identity-specific detection, alerts, and forensic analysis.
    • Perform root-cause analysis for identity access failures and implement corrective measures to prevent recurrence.

Qualifications & Skills

To excel in this role, candidates must possess the following technical expertise and professional attributes:

  • Education & Experience:
    • Bachelor’s degree in Computer Science, Information Security, or a related field.
    • 6 to 8 years of hands-on experience in Identity and Access Management engineering, with a proven track record of designing and implementing enterprise IAM solutions.
  • Technical Proficiency:
    • Expertise in IAM platforms such as Okta, Azure AD/Entra ID, Ping Identity, ForgeRock, or SailPoint.
    • Strong knowledge of directory services, including Active Directory and LDAP.
    • Proficiency in SSO and federation protocols, including SAML, OAuth, and OIDC.
    • Experience with SCIM provisioning and API-driven integrations for identity lifecycle automation.
    • Hands-on experience with privileged access technologies, including CyberArk, BeyondTrust, or Delinea, for vaulting, credential rotation, and session monitoring.
    • Familiarity with zero-trust architecture principles and their application in IAM design.
    • Experience with cloud platforms such as Azure, AWS, or Google Cloud Platform (GCP).
    • Knowledge of MFA, passwordless authentication, and conditional/adaptive access policies.
    • Ability to troubleshoot complex authentication issues across multiple protocols and environments.
    • Understanding of access governance processes, including access reviews, certifications, and risk assessments.
    • Exposure to regulatory compliance frameworks such as ISO 27001, SOX, HIPAA, or PCI DSS is highly desirable.
  • Soft Skills:
    • Exceptional problem-solving and analytical abilities, with a methodical approach to troubleshooting and optimization.
    • Strong communication skills, with the ability to articulate technical concepts to both technical and non-technical stakeholders.
    • Collaborative mindset with a proven ability to work effectively in cross-functional teams.
    • Commitment to continuous learning and staying current with emerging trends and technologies in IAM and cybersecurity.

يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.

المصدر: لينكد إن ↗ • 5 مشاهدة

وظائف مشابهة

تقدم للوظيفة الآن