IAM Engineer - Security
Must-have:AzureSecurity
Machine translation — original language: Portuguese.Show original
We are excited to announce an opportunity for one of our clients who is looking for an experienced professional to act as an IAM Engineer with an emphasis on Pathlock/SailPoint/MIM, Azure Active Directory, Active Directory, PowerShell, and Intune MDM. The engineer will provide Level 2 support for identity-related issues, as well as participate in other initiatives to enhance our authentication and authorization security. This professional manages, maintains, supports, troubleshoots, and optimizes the identity and access management environment.
Responsibilities and assignments
- Administer and support Identity and Access Management (IAM) platforms, including Pathlock, SailPoint, Microsoft Identity Manager (MIM), Microsoft Entra ID (Azure AD Enterprise Applications, App Registrations, and MFA), and Active Directory.
- Manage and protect user identities and access in cloud and hybrid environments, implementing IAM best practices, governance controls, and security policies.
- Execute daily IAM operations, including user provisioning and deprovisioning, role modifications, and access management across various corporate platforms.
- Perform privileged access reviews and user access certification activities to support internal audit, compliance, and regulatory requirements.
- Enhance identity governance, monitoring, security controls, and compliance posture in Microsoft Entra ID (Azure AD).
- Administer, troubleshoot, and support Microsoft Azure Multi-Factor Authentication (MFA) solutions to strengthen corporate security.
- Develop and utilize advanced PowerShell scripts and automation solutions for Microsoft 365, Microsoft Entra ID, and on-premises Active Directory administration.
- Configure, manage, and support device enrollment and compliance activities in Mobile Device Management (MDM).
- Administer on-premises Active Directory environments, including management of users, groups, organizational units (OUs), and access controls.
- Perform Privileged Access Management (PAM) operations, including secrets integration, account lockout investigations, password rotation validation, and troubleshooting in CyberArk, Delinea, and related platforms.
- Execute daily integrity checks, monitoring, and operational support for IAM and associated infrastructure systems to ensure availability, security, compliance, and operational stability.
Requirements and qualifications
- Advanced or fluent English, verbal and written (will be tested).
- Degree in Computer Science, Information Security, Information Technology, Engineering, or a related field.
- More than 3 years of hands-on experience with identity and access management (IAM) solutions, such as MIM/FIM, Pathlock, SailPoint, or Saviynt, as well as Microsoft Entra ID (Azure AD), Active Directory, Microsoft Intune MDM, PowerShell, Single Sign-On (SSO), and SQL queries.
- Experience with at least one Identity Governance and Administration (IGA) tool. Proven experience in Microsoft Entra ID (Azure AD), PowerShell scripting, Azure AD Connect, Azure AD Enterprise Applications, and Active Directory user and group management.
- Experience with Privileged Access Management (PAM) solutions is mandatory. Knowledge of identity lifecycle management, access governance, authentication, and authorization processes is highly preferred.
- Strong diagnostic, analysis, and problem-solving skills, with the ability to support complex IAM environments.
Additional information
- Hybrid work model
- Health Plan and Dental Plan
- Private Presidency
- Life Insurance
- Meal and Food Vouchers
- Pharmacy Agreement
- WellHub
- Childcare Allowance
- Transportation Voucher
- PLR </body>