Job offer

Senior IAM Engineer (80-100%)

We are looking for a Senior IAM Engineer to take a lead role in delivering secure, scalable identity and access solutions in our Microsoft-based environment. The focus will be on the design and automation of identity services using Microsoft Entra ID, Terraform and Azure/EntraID stack.

Job description

Job Details

  • Job title: Senior IAM Engineer (80-100%)
  • Country: Switzerland
  • Location: Zurich

Tasks

  • Design and implementation of IAM solutions with Microsoft Entra ID, PIM, conditional access and identity governance tools
  • Automation of policies and access workflows with Terraform and integration of changes in CICD pipelines
  • Management of life cycle processes (joiners, movers, leavers) and enforcement of least privilege through group and authorization management
  • Configuration and support of privileged access workflows with Azure PIM and MFA logs and reporting to FINRA and internal audit requirements
  • Monitoring of IAM metrics (e.g. provisioning SLAs, access audit coverage, policy violations) and reporting to senior management
  • Collaboration with Security Operations and SOC teams to integrate identity signals into SIEM workflows
  • Provide IAM expertise to internal teams (Platform, HR, Risk & Compliance) for secure application and infrastructure access
  • Support for application developers with authentication and authorization models (SAML, OIDC/OAuth)
  • Provide guidance on Microsoft tenant security, Azure RBAC and intranet/endpoint policy alignment (advisory only)
  • Collaborate with the platform team to support secure service identities and permissions in CICD and Azure SRE environments

Requirements

Essential

  • 5+ years of experience in IT, of which 2-3 years focused on IAM
  • Strong hands-on experience with Microsoft Entra ID / Azure AD, Conditional Access, PIM and related tools
  • Experience with the automation of IAM policies with Terraform (Infrastructure-as-Code)
  • Familiarity with important IAM concepts: RBAC, Least Privilege, Zero Trust, Identity Lifecycle Management
  • Experience with the integration of IAM with DevOps or CICD/CD tooling
  • Experience with end device compliance and device management
  • Knowledge of regulatory expectations (e.g. FINMA, ISO27001) and audit support
  • Strong communication skills in English

Desirable

  • Experience with Azure B2B/B2C, federated login or identity brokering
  • Familiarity with AWS IAM and CloudFront logging for access insights
  • Exposure to future end device compliance and device policy alignment
  • Certifications such as Microsoft Identity and Access Administrator, Azure Security Engineer, CISSP or CISM

We offer

To be part of a dynamic, global team that builds a trusted interface between traditional and digital assets.

Job details

© 2025 House of Skills by skillaware. All rights reserved.
Our website uses cookies to make navigation easier for you and to analyze the use of the site. You can find more information in our privacy policy.