Job offer
IAM Access Operations & Automation Engineer
Sygnum is looking for an IAM Access Operations & Automation Engineer to modernize and automate identity and access management in cloud environments. The ideal candidate is an automation-oriented IAM engineer with experience in scripting, infrastructure-as-code, and DevOps tooling.
Tasks
The position as IAM Access Operations & Automation Engineer includes the following tasks:- Design, build, and maintain IAM automation using PowerShell and/or Python, integrating with Microsoft Graph and cloud identity APIs
- Applying infrastructure-as-code principles with Terraform to manage identity artifacts such as users, groups, service principals, secrets, access packages, and conditional access policies
- Automation of Joiner-Mover-Leaver (JML) lifecycle processes for workforce and service identities
- Collaborate with business units and application owners to define access models, permissions, approval flows, and certifications.
- Identify and remediate access risks, including orphaned accounts, access drift, overprivileged identities, and unsanctioned privileged access
- Support access checks, audits, and regulatory inquiries by providing clear evidence and traceability
- Maintenance of operational documentation, runbooks, and audit trails to ensure repeatability and resilience
- Collaborate with security, platform, and compliance teams to continuously improve the IAM posture
Requirements
The ideal candidates should meet the following requirements:- Strong scripting experience with PowerShell and/or Python, including the use of REST APIs (Microsoft Graph preferred)
- Practical experience with infrastructure-as-code tools such as Terraform or Bicep
- Experience integrating IAM automation into CICD pipelines (GitHub Actions, GitLab, Azure DevOps, or Azure Automation)
- Solid understanding of Microsoft Entra ID or other cloud identity platforms (e.g., Okta, Auth0, AWS IAM)
- Experience working with Azure and/or AWS cloud environments
- Strong written and oral communication skills in English
Desirables
Desirables are:- Knowledge of identity protocols, including SAML, OAuth2, OpenID Connect, and SCIM
- Understanding of IAM governance concepts: JML, RBAC/ABAC, SoD, access certification
- Familiarity with regulatory frameworks such as ASNMA, GDPR, or DORA
- Exposure to access checks, audit support, and evidence control
We offer
We offer:- The opportunity to be part of a dynamic, global team that is building a trusted connection between traditional and digital assets
- A fast-paced, exciting work environment that promotes meritocracy and collaboration, as well as open communication.
- An environment that values mental health and well-being
Job details