вчера

security engineer for enterprise identity systems

ориентир по рынку
вакансия зп не указана
в среднем 188 293 ₽
Загрузи резюме, чтобы видеть мэтчи с вакансией

подготовься к отклику

ai-инструменты

Чтобы адаптировать резюме под вакансию или составить сопроводительное письмо, загрузи резюме

Рекламный баннер: ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ"
О рекламодателе
ОБЩЕСТВО С ОГРАНИЧЕННОЙ ОТВЕТСТВЕННОСТЬЮ "ЦЕНТР НАЦИОНАЛЬНЫХ ИНТЕЛЛЕКТУАЛЬНЫХ СИСТЕМ"
ИНН: 9704271170

описание

Описания нет

задачи

  • Implement, configure, and operate IAM solutions and controls according to established architecture, standards, and designs
  • Build and maintain identity lifecycle processes, including automated provisioning and deprovisioning
  • Configure and maintain SSO, federation, MFA, passwordless authentication, conditional access, RBAC/ABAC role models, and least-privilege access
  • Develop and maintain IAM integrations and connectors for cloud platforms, SaaS applications, enterprise systems, directories, authoritative source systems, databases, and APIs
  • Run access certification and review campaigns, clean up entitlements, and configure segregation-of-duties rules
  • Operate Privileged Access Management controls, including credential vaulting, secrets rotation, session management, and just-in-time and just-enough access
  • Develop and maintain automation scripts, workflows, and IAM tooling
  • Monitor IAM platform health, troubleshoot and resolve incidents and access issues, and perform patching, upgrades, and configuration hardening
  • Maintain IAM logging, alerting, and monitoring, and run backup and recovery procedures
  • Build, deploy, and maintain AI-assisted automations and agentic workflows for daily IAM operations
  • Integrate AI agents and LLM-backed automations into IAM systems and operational pipelines
  • Design, test, and maintain reusable prompts, structured-prompting patterns, and prompt templates for recurring IAM tasks
  • Deploy retrieval over IAM policies, role catalogs, runbooks, and documentation, and implement output verification, human-in-the-loop approval gates, rollback paths, and security and privacy controls
  • Track AI-assisted IAM automations in production, measure their accuracy and impact, and tune prompts, tools, and workflows based on results and feedback
  • Produce and maintain operational documentation, runbooks, and standard operating procedures, and support audits and compliance evidence requests

требования

  • Bachelor's degree in Computer Science, Cybersecurity, Engineering, or equivalent practical experience
  • At least 2 years of hands-on experience implementing or operating IAM solutions, including experience with at least one enterprise IAM, IGA, PAM, or federation platform
  • Understand IAM concepts, including identity lifecycle, authentication, authorization, SSO, federation, MFA, RBAC/ABAC, least privilege, and privileged access
  • Know IAM protocols and standards, including SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, and Kerberos
  • Have expertise configuring IAM controls, policies, connectors, and access governance workflows
  • Be familiar with cloud IAM concepts on at least one major cloud platform: Azure, AWS, or GCP
  • Have scripting and automation skills in at least one of PowerShell, Python, or Bash, and experience with REST APIs, SCIM, or Terraform
  • Be able to work with developers, architects, infrastructure engineers, security operations, compliance teams, and business stakeholders, and follow, maintain, and improve defined IAM and security processes
  • Be comfortable executing changes from tickets, runbooks, and designs provided by senior engineers and architects, and escalating design-level questions rather than owning them
  • Have practical experience with AI-assisted productivity and automation beyond basic chatbot usage, including building or configuring AI agents, automating repetitive IAM or security tasks, integrating LLMs with tools, APIs, and workflows, prompt engineering, and secure AI use with awareness of sensitive identity data
  • Have strong communication skills and be able to explain IAM issues, technical decisions, and remediation steps to technical and non-technical stakeholders
  • English proficiency at Upper-Intermediate level (B2) or higher
  • Будет плюсом: experience with Microsoft Entra ID, Active Directory, Okta, Ping Identity, ForgeRock, Auth0, SailPoint, Saviynt, or CyberArk; experience with CIAM, B2B/B2C identity, customer identity, external identity, or partner access scenarios and SIEM/SOAR integrations; CI/CD-based IAM deployment, configuration-as-code, and automated testing of IAM changes; familiarity with Azure OpenAI, Amazon Bedrock, Microsoft Copilot Studio, LangChain, AutoGen, or Power Automate, and understanding of AI security risks; security or IAM certifications such as SC-300, Okta, SailPoint, Saviynt, CyberArk, Ping Identity, CISSP, CISM, CISA, CCSK, CCSP, SSCP, AI-900, or AWS Certified AI Practitioner

условия

  • Условий в вакансии нет

Глобальная компания в сфере digital engineering, product development и технологического консалтинга.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайся: это мошенничество.

Спроси Хайрика про вакансию

Сверит с твоим резюме, подскажет вилку и вопросы на собесе.

Если просят выйти из iCloud, прислать код из SMS, запустить или установить что-то, перевести деньги — не соглашайся: это мошенничество.