Luxoft DXC Technology Company is an established company focusing on consulting and implementation of complex projects in the financial industry. At the interface between technology and business, we convince with our know-how, well-founded methodology and pleasure in success. As a reliable partner to our renowned customers, we support them in planning, designing and implementing the desired innovations. Together with the customer, we deliver top performance! For one of our Client in the Insurance Segment, we are searching for Senior IAM Engineer.
This role requires a candidate with architect/SME-level expertise and the ability to work during US business hours (EST).
The IAM Engineer and Analyst will play a key role in the design, maintenance, and ongoing support of processes related to Identity & Access Management. These processes include user onboarding, off-boarding, role management, user access re-certifications, monitoring, report generation, access provisioning, audits, and compliance.
This role will participate heavily in ongoing IAM program enhancements, monitor and analyze events to proactively address operational issues and thwart threats to the customer environment. You will be responsible for the following:
Define and document business and technical requirements for Identity and Access Management systems, including requirements for establishing role, entitlements, and access definitions, defining the provisioning lifecycle processes, user account lifecycle processes, reconciliation, certification, provisioning, and de-provisioning processes.
Participate in IAM projects and initiatives.
Work with customer team members, business partners/analysts, and application teams to understand access requirements.
Create reports to identify provisioning inconsistencies or conflicts and operationalize processes to regularly identify and remediate issues.
Automate or streamline existing processes and workflows.
Define, validate, and maintain user access roles.
Analyze user access roles and processes to independently assess compliance with defined standards.
Support user access re-certifications, as defined by customer policies.
Strictly adhere to audit and regulatory controls, as well as IAM standards. Independently identify gaps and propose solutions.
Regularly review and maintain documentation to ensure it reflects current processes and procedures and identify opportunities for process improvement.
Participate in IAM audits and review access control reports to identify potential risks.
Maintain up-to-date knowledge of identity and access management best practices.
Design, develop and manage IAM solutions based on best of bread IAM platforms
Develop and maintain identity lifecycle workflows and identity mappings
Provide subject matter expertise for customer IAM infrastructure not limited to: Single Sign-On, access management, identity federation, multifactor authentication (MFA), risk-based authentication (RBA)
Support customer business groups to efficiently integrate with IAM platforms and services.
Good knowledge of directory servers and LDAP protocol technologies (Active Directory).
EST working hours
Must have
Highlight of required skills:
With at least 10 years of experience, you are an IAM Engineer who can administer and act as an SME for multiple IAM technologies. The required skillset includes:
Expertise in Active Directory (AD), User Access Management (UAM), Privileged Access Management (PAM), and OKTA
Hands-on experience with Role-Based Access Control (RBAC), PAM, and Segregation of Duties
SME-level knowledge of Active Directory, Entra ID, and Okta, including IAM-related features (user and group management, file share permissions, federation)
Proficiency in authentication, authorization, and auto-provisioning services such as Active Directory, AWS, SSO, SAML, OAuth, and OpenID
Detailed required skills:
Minimum 5+ years of experience working within an IAM capacity, at least 2 years in a senior-level capacity
Bachelor's degree in computer science, information technology, or a related field or equivalent experience
Strong analytical skills
Good organizational skills and attention to detail
Experience with modern Identity and Access Management concepts
Hands-on experience with Role Based Access Control (RBAC), Privileged Access Management (PAM), and Segregation of Duties
Subject Matter Expert with Active Directory, Entra ID, and Okta to include IAM-related features (user and group management, file share permissions, federation)
Proficient in authentication, authorization, and auto-provisioning services, including Active Directory, Amazon Web Services, SSO, SAML, OAuth, and OpenID
Understanding of standard integration protocols, APIs, and connectors
Familiarity and practical experience in Agile methodology
Strong written and verbal communication skills needed; ability to tailor approach based upon audience and message
Familiarity with database concepts and relational databases, such as Microsoft SQL Server
Security domain knowledge
Knowledge of IT operations, infrastructure services support (Systems NT, UX, Storage, Backups, DB's or Network management), security incident and security processes
Understanding of ITSM/ITIL processes
Detailed knowledge and working experience with Privileged Access Management (PAM) SaaS environments
Experience in programming (Perl, Python, PowerShell, Administrative scripting)
Experience with dashboards and reporting programming (PowerQuery, PowerBI, ServiceNow Reporting)
Understanding of high-availability (HA) and failover implementations for network infrastructure and server systems
Nice to have
Insurance domain
Languages
English: C1 Advanced
Seniority
Senior
Get notified when new jobs are added by luxsoft