IAM Senior Engineer

Inbox Business Technologies
الرياض, الرياض دوام كامل
نشر: 1448/1/24 | 2026/07/09 ينتهي: 1448/2/25 | 2026/08/08 ✨ وصف بالذكاء الاصطناعي
تقدم للوظيفة الآن

الوصف الوظيفي

About the Role

We are seeking a highly skilled and experienced Senior Identity & Access Management (IAM) Engineer to lead the design, implementation, and maintenance of enterprise-grade IAM solutions. This critical role will empower secure and seamless access to systems and data while ensuring alignment with zero-trust security principles and evolving business requirements. The ideal candidate will collaborate closely with cross-functional teams, including security, infrastructure, and application development, to deliver robust identity solutions that mitigate risks and enhance operational efficiency.

Key Responsibilities

IAM Architecture & Engineering

The Senior IAM Engineer will be responsible for architecting and engineering comprehensive IAM solutions, including:

  • Identity Lifecycle Management: Designing and implementing end-to-end identity lifecycle processes to ensure seamless onboarding, role changes, and offboarding of users.
  • Authentication & Authorization Models: Developing and enforcing secure authentication mechanisms and granular access control policies, including role-based access control (RBAC) and attribute-based access control (ABAC).
  • Access Governance: Establishing and maintaining access governance frameworks to ensure compliance with regulatory standards and organizational policies.
  • Privileged Access Management (PAM): Implementing and managing PAM solutions to secure privileged accounts, enforce least-privilege access, and monitor privileged sessions.
  • Zero-Trust Alignment: Designing and deploying identity controls that adhere to zero-trust security principles, ensuring continuous verification and validation of user access.
  • System Integrations: Developing and maintaining integrations with enterprise applications using APIs, Single Sign-On (SSO), federation protocols (SAML, OAuth, OIDC), and SCIM provisioning to streamline identity data synchronization.

Identity Lifecycle & Automation

To enhance operational efficiency and reduce manual intervention, the Senior IAM Engineer will:

  • Automate Identity Workflows: Implement automated joiner/mover/leaver (JML) processes to ensure timely provisioning and deprovisioning of user access.
  • Develop Custom Connectors & Scripts: Create and maintain PowerShell and Windows Script-based automation pipelines to optimize identity data flows between HR systems, directories, and applications.
  • Optimize Data Integrations: Enhance the efficiency and reliability of identity data synchronization across disparate systems.

Directory & Authentication Services

The Senior IAM Engineer will manage and optimize enterprise identity directories, including:

  • Directory Services Management: Overseeing Active Directory, Entra ID, LDAP, and other directory services to ensure high availability and security.
  • Multi-Factor Authentication (MFA): Implementing and enforcing MFA, passwordless authentication, and adaptive access policies to strengthen security posture.
  • Authentication Troubleshooting: Diagnosing and resolving authentication issues across multiple protocols, including Kerberos, LDAP, SAML, OAuth 2.0, and OIDC.

Access Governance & Compliance

Ensuring compliance with industry regulations and organizational policies is a critical aspect of this role. Responsibilities include:

  • Regulatory Compliance: Ensuring adherence to standards such as ISO 27001, SOX, HIPAA, PCI DSS, and other relevant frameworks.
  • Access Certifications: Supporting and managing access certification and attestation processes to validate user access rights.
  • IAM Standards & Playbooks: Developing and maintaining IAM standards, best practices, and operational playbooks to guide the organization.
  • Risk Analysis: Conducting periodic access reviews and risk assessments to identify and mitigate potential security vulnerabilities.

Privileged Access Management (PAM)

The Senior IAM Engineer will administer PAM platforms to secure privileged accounts and reduce security risks:

  • PAM Platform Administration: Managing solutions such as CyberArk, BeyondTrust, Delinea, and others to enforce secure credential management.
  • Vaulting & Credential Rotation: Implementing secure vaulting of credentials and enforcing automated rotation policies to minimize exposure.
  • Session Monitoring: Overseeing privileged session monitoring to detect and prevent unauthorized activities.
  • Just-in-Time Access: Implementing time-bound access privileges to reduce standing privileges and legacy admin accounts.

Application Integration

Collaborating with development and product teams to integrate applications securely:

  • SSO & Provisioning: Onboarding applications for SSO and provisioning using SAML, OAuth, and SCIM to ensure seamless user experiences.
  • Secure Identity Patterns: Advising on and implementing modern identity patterns to enhance security and usability.

Incident Response & Troubleshooting

In the event of security incidents or access-related issues, the Senior IAM Engineer will:

  • Investigate & Resolve: Conducting thorough investigations into IAM-related security incidents and implementing corrective actions.
  • SOC Collaboration: Supporting the Security Operations Center (SOC) with identity-specific detection, alerts, and forensic analysis.
  • Root-Cause Analysis: Performing detailed root-cause analysis to identify and address the underlying causes of identity access failures.

Requirements

Technical Skills

The ideal candidate will possess the following technical expertise:

  • IAM Platforms: Hands-on experience with leading IAM solutions such as Okta, Azure AD/Entra ID, Ping Identity, ForgeRock, SailPoint, or similar platforms.
  • Directory Services: Proficiency in managing Active Directory, LDAP, and other directory services.
  • SSO & Federation: Strong knowledge of SSO, SAML, OAuth, OIDC, and SCIM provisioning protocols.
  • Privileged Access Technologies: Experience with PAM platforms and best practices for securing privileged accounts.
  • Zero Trust Principles: A deep understanding of zero-trust architecture and its implementation in identity and access management.
  • Cloud Platforms: Familiarity with cloud environments such as Azure, AWS, or GCP, including cloud-native IAM services.

Soft Skills

In addition to technical proficiency, the successful candidate will demonstrate:

  • Problem-Solving: A strong analytical mindset and the ability to troubleshoot complex identity-related issues.
  • Communication: Exceptional interpersonal skills to effectively collaborate with technical and non-technical stakeholders across the organization.
  • Project Leadership: Proven experience in leading enterprise-grade projects and delivering scalable IAM solutions.

يمكن أن يرتكب الذكاء الاصطناعي أخطاءً.

المصدر: لينكد إن ↗ • 7 مشاهدة

وظائف مشابهة

تقدم للوظيفة الآن