IAM Security Engineer – Identity and Cloud Security
Would you like to join a leading Digital Solution Company and contribute to innovative solutions that are built on a daily basis?
Our client is a leading global provider of IT solutions and services, known for their customer-centric approach to digital transformation. With a rich history dating back to 1996, they have continually evolved to meet the changing needs of their customers. Their services encompass consulting, technology, and outsourcing, delivering innovative solutions to complex challenges. They have also been honored multiple times as a top employer, including being named a Great Place To Work from 2015 to 2023.
Role Overview:
We are seeking a IAM Security Engineer with 4–5 years of experience specializing in identity security, cloud security, and automation. This role focuses on strengthening and managing our Microsoft 365 and Azure environments, implementing identity governance, and enhancing privileged access controls. The ideal candidate will be skilled in PowerShell and Python automation, and capable of driving improvements across IDAM, PIM, and PAM processes. This position is ideal for someone who understands identity as the core of modern security and enjoys building secure, automated, and scalable solutions.
Key Responsibilities:
Identity and Access Management (IDAM)
Manage user lifecycle processes including provisioning, deprovisioning, and access reviews.
Maintain and optimize Azure AD identity governance, Conditional Access, MFA, and SSO integrations.
Implement and enforce leastprivilege and zerotrust identity principles.
Support onboarding of applications into Azure AD for SSO and federation.
Privileged Identity Management (PIM)
Administer Azure AD PIM for justintime (JIT) access.
Configure activation policies, approval workflows, and role expiration.
Monitor privileged role usage and generate compliance and audit reports.
Reduce standing privileges across cloud and hybrid environments.
Privileged Access Management (PAM)
Support deployment and operations of PAM solutions (e.g., CyberArk, BeyondTrust, Microsoft Entra Permissions Management).
Manage privileged session controls, credential vaulting, and password rotation.
Harden privileged accounts, service accounts, and breakglass procedures.
Conduct periodic privileged access reviews and enforce governance policies. Microsoft 365 & Azure Security
Strengthen security posture across Microsoft 365, Azure AD, and Azure resources.
Configure and maintain security baselines, policies, and compliance controls.
Support identityrelated configurations for Exchange Online, SharePoint, Teams, and other M365 services.
Work with cloud and infrastructure teams to embed secure configurations and identity best practices.
Automation and Engineering
Develop PowerShell scripts to automate identity workflows, reporting, and governance tasks.
Build Pythonbased tools for integration, data processing, and automation.
Integrate identity and access workflows with APIs and cloud services.
Maintain documentation, runbooks, and architectural diagrams.
Required Skills and Experience:
4–5 years of experience in cybersecurity or cloud security roles.
Strong handson experience with Azure AD, Microsoft 365, and identity governance.
Solid understanding of IDAM, PIM, and PAM concepts and tools.
Proficiency in PowerShell for automation and administrative tasks.
Working knowledge of Python for scripting and integration.
Familiarity with authentication and authorization protocols (SAML, OAuth, OIDC).
Experience with Azure AD Connect and hybrid identity environments.
Understanding of cloud security principles and Microsoft Zero Trust architecture.
Preferred Qualifications:
Experience with PAM platforms such as CyberArk, BeyondTrust, or Microsoft Entra Permissions Management.
Exposure to identity governance tools (IGA platforms).
Certifications such as SC300, AZ500, SC100, or equivalent.
Experience with API integrations and automation frameworks.
- Department
- IAM
- Locations
- Bucharest
- Remote status
- Fully Remote