Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме
О рекламодателе
ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ" ИНН: 9704271170
описание
Описания нет
задачи
Implement, configure, and operate IAM solutions and controls according to established architecture, standards, and designs
Build and maintain identity lifecycle processes, including automated provisioning and deprovisioning
Configure and maintain SSO, federation, MFA, passwordless authentication, conditional access, RBAC/ABAC role models, and least-privilege access
Develop and maintain IAM integrations and connectors for cloud platforms, SaaS applications, enterprise systems, directories, authoritative source systems, databases, and APIs
Run access certification and review campaigns, clean up entitlements, and configure segregation-of-duties rules
Operate Privileged Access Management controls, including credential vaulting, secrets rotation, session management, and just-in-time and just-enough access
Develop and maintain automation scripts, workflows, and IAM tooling
Monitor IAM platform health, troubleshoot and resolve incidents and access issues, and perform patching, upgrades, and configuration hardening
Maintain IAM logging, alerting, and monitoring, and run backup and recovery procedures
Build, deploy, and maintain AI-assisted automations and agentic workflows for daily IAM operations
Integrate AI agents and LLM-backed automations into IAM systems and operational pipelines
Design, test, and maintain reusable prompts, structured-prompting patterns, and prompt templates for recurring IAM tasks
Deploy retrieval over IAM policies, role catalogs, runbooks, and documentation, and implement output verification, human-in-the-loop approval gates, rollback paths, and security and privacy controls
Track AI-assisted IAM automations in production, measure their accuracy and impact, and tune prompts, tools, and workflows based on results and feedback
Produce and maintain operational documentation, runbooks, and standard operating procedures, and support audits and compliance evidence requests
требования
Bachelor's degree in Computer Science, Cybersecurity, Engineering, or equivalent practical experience
At least 2 years of hands-on experience implementing or operating IAM solutions, including experience with at least one enterprise IAM, IGA, PAM, or federation platform
Understand IAM concepts, including identity lifecycle, authentication, authorization, SSO, federation, MFA, RBAC/ABAC, least privilege, and privileged access
Know IAM protocols and standards, including SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, and Kerberos
Have expertise configuring IAM controls, policies, connectors, and access governance workflows
Be familiar with cloud IAM concepts on at least one major cloud platform: Azure, AWS, or GCP
Have scripting and automation skills in at least one of PowerShell, Python, or Bash, and experience with REST APIs, SCIM, or Terraform
Be able to work with developers, architects, infrastructure engineers, security operations, compliance teams, and business stakeholders, and follow, maintain, and improve defined IAM and security processes
Be comfortable executing changes from tickets, runbooks, and designs provided by senior engineers and architects, and escalating design-level questions rather than owning them
Have practical experience with AI-assisted productivity and automation beyond basic chatbot usage, including building or configuring AI agents, automating repetitive IAM or security tasks, integrating LLMs with tools, APIs, and workflows, prompt engineering, and secure AI use with awareness of sensitive identity data
Have strong communication skills and be able to explain IAM issues, technical decisions, and remediation steps to technical and non-technical stakeholders
English proficiency at Upper-Intermediate level (B2) or higher
Будет плюсом: experience with Microsoft Entra ID, Active Directory, Okta, Ping Identity, ForgeRock, Auth0, SailPoint, Saviynt, or CyberArk; experience with CIAM, B2B/B2C identity, customer identity, external identity, or partner access scenarios and SIEM/SOAR integrations; CI/CD-based IAM deployment, configuration-as-code, and automated testing of IAM changes; familiarity with Azure OpenAI, Amazon Bedrock, Microsoft Copilot Studio, LangChain, AutoGen, or Power Automate, and understanding of AI security risks; security or IAM certifications such as SC-300, Okta, SailPoint, Saviynt, CyberArk, Ping Identity, CISSP, CISM, CISA, CCSK, CCSP, SSCP, AI-900, or AWS Certified AI Practitioner