Identity & Access Management Operations

FPT ASIA PACIFIC PTE. LTD.Singaporemycareersfuturepublished 09/30/2026
Must-have:CloudFinTechSecuritySeniorLead

Role Overview

We are seeking a senior Identity & Access Management (IAM) professional to lead enterprise IAM operations and strategy across System Access Management, Privileged Access Management (PAM), and Identity Governance & Administration (IGA).

The role combines operational leadership, technical ownership, governance, risk management, and strategic transformation. The successful candidate will oversee IAM platforms and operations while driving automation, identity governance, regulatory compliance, and the organisation's long-term IAM roadmap.

Key Responsibilities

IAM Operations & Leadership

  • Lead System Access Operations teams responsible for user provisioning, deprovisioning, and end-to-end Joiner, Mover, and Leaver (JML) processes.
  • Manage 24x7 IAM operations and ensure appropriate service availability, operational performance, and incident management.
  • Manage IAM vendors and managed service providers, including service performance and delivery.
  • Drive continuous improvement and automation across IAM operational processes.
  • Promote strong identity hygiene and compliance with information security policies and standards.

Privileged Access Management (PAM)

  • Lead PAM operations, including onboarding systems and applications into CyberArk.
  • Manage privileged credentials, privileged sessions, and break-glass access processes.
  • Provide technical ownership and operational support for the CyberArk platform.
  • Ensure privileged access follows least-privilege, security, governance, and audit requirements.
  • Support secret management and privileged identity governance across enterprise environments.

Identity Governance & Administration (IGA)

  • Provide technical ownership and operational support for the Saviynt platform.
  • Manage IGA operations, including HR-to-Active Directory integration and birthright access provisioning.
  • Drive the onboarding of applications into Saviynt as the IGA programme and automation coverage expand.
  • Support access certification, recertification, entitlement governance, and Segregation of Duties (SoD) controls.
  • Improve automation across identity lifecycle and access governance processes.

IAM Architecture & Solutioning

  • Participate in IAM solution design for new applications, platforms, and digital initiatives.
  • Contribute to entitlement design, role engineering, identity lifecycle management, and access model design.
  • Review and challenge application roles and entitlement models to ensure least-privilege principles are maintained.
  • Design and govern Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) models.
  • Support identity integrations across on-premises, cloud, and SaaS environments.
  • Apply identity standards and protocols including SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and SCIM.

Strategy, Governance & Transformation

  • Define and own the enterprise IAM strategy, operating model, and multi-year transformation roadmap.
  • Drive IAM transformation, modernisation, and automation initiatives across System Access Management, PAM, and IGA.
  • Establish IAM standards, policies, controls, and governance frameworks across on-premises, cloud, and SaaS environments.
  • Act as the technology risk owner for IAM platforms and services, ensuring risks are identified, assessed, mitigated, and appropriately reported.
  • Lead IAM resilience planning, including disaster recovery, business continuity, and cyber recovery capabilities.
  • Drive organisational capability through succession planning, talent development, and leadership coaching within the IAM function.

Audit, Risk & Compliance

  • Lead IAM-related internal and external audit activities.
  • Provide audit evidence and manage remediation activities through to closure.
  • Ensure IAM operations comply with applicable regulatory requirements, internal policies, and industry best practices.
  • Support compliance with requirements including MAS Technology Risk Management (TRM) guidelines and FSM-N04 Cyber Hygiene requirements.
  • Monitor IAM risks, control effectiveness, audit findings, and remediation progress.

Financial & Executive Management

  • Own IAM financial planning, including budget management, vendor contracts, licence optimisation, and investment prioritisation.
  • Provide executive reporting on IAM operational health, risk posture, audit status, transformation progress, and strategic initiatives.
  • Engage senior technology, cybersecurity, risk, and governance stakeholders on IAM strategy and operational priorities.

Requirements

  • Minimum 12 years of experience in Information Technology, Cybersecurity, Identity & Access Management, or related disciplines.
  • Minimum 8 years of direct experience across IAM domains, including System Access Management, PAM, IGA, and Identity Lifecycle Management.
  • Minimum 5 years of leadership experience managing IAM teams, vendors, or managed service providers.
  • Proven experience managing enterprise IAM operations within highly regulated environments such as financial services, insurance, or banking.
  • Demonstrated experience leading IAM transformation, modernisation, and automation initiatives.
  • Strong experience with Joiner, Mover, and Leaver (JML) processes and identity lifecycle management.
  • Strong understanding of birthright access, enterprise roles, role hierarchies, entitlements, and fine-grained permissions.
  • Strong knowledge of Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Segregation of Duties (SoD).
  • Experience with access certification, recertification, and access governance.
  • Understanding of human and machine identities, secret management, and Privileged Access Management.
  • Hands-on experience with CyberArk, Saviynt, Active Directory, Entra ID, and identity integrations.
  • Good understanding of SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and SCIM.
  • Experience contributing to IAM solutioning, role engineering, entitlement modelling, and access governance design.
  • Experience supporting regulatory and audit requirements, including MAS TRM, FSM-N04, internal audits, and external audits.
  • Strong leadership, stakeholder management, communication, and decision-making capabilities.

Education & Certifications

  • Bachelor's degree in Computer Science, Information Security, Information Systems, Engineering, or a related discipline.
  • Professional certifications such as CISSP or CISM are highly desirable.
  • CyberArk, Saviynt, or other relevant IAM certifications are highly desirable.