1 month ago
Bucharest, RomaniaSenior
Responsibilities
- Own and stabilize the IAM request queue, including backlog prioritization and time-to-resolution standards.
- Build and maintain SCIM auto-provisioning and deprovisioning flows for SaaS tools including Okta, Slack, and GitHub.
- Deliver IAM enrollment improvements, including Mac and Windows enrollment, the Okta rollout, and fallback workflows in Tines.
- Partner with GRC on automated access reviews and certification campaigns, including associated workflows and data pipelines.
- Own IAM technical debt, JIT/PAM initiatives, least-privilege audit evidence, and the automation roadmap for context-aware access.
- Reduce identity and provisioning workload for Workplace Technology and collaborate with Engineering, infrastructure, compliance, and People teams.
Requirements
- Production experience shipping identity or access management systems.
- Experience with Okta or similar identity providers, SCIM provisioning, access review workflows, and identity systems at scale.
- Ability to build automation using Python, Go, or similar technologies and integrate tools such as Tines, Okta, and cloud IAM services.
- Understanding of least privilege, deprovisioning, and audit trails.
- Strong operational ownership and ability to prioritize IAM requests and determine when engineering support is needed.
- Ability to translate business requirements into working systems and collaborate with non-engineering functions.
Benefits
- Fully remote and globally distributed work arrangement.
- Competitive share options.
- Uncapped holiday with a 25-day minimum.
- Co-working space access across major cities.
- Workations and an annual company retreat.
- Equipment appropriate for the role.
- £500 toward home office setup.
- Generous learning budget.
- Private Medical Insurance.
- Additional location-dependent perks and benefits.