6 hours ago
Dublin, IrelandSenior
Responsibilities
- Design and evolve IAM architecture across AWS, GCP, SaaS applications, AI tooling, and remote-access platforms.
- Lead federated identity, least-privilege, RBAC, ABAC, workforce identity, workload identity, and Zero Trust access initiatives.
- Build and maintain reusable Terraform modules and workflows for IAM roles, policies, permission sets, group mappings, Okta assignments, and IAM Identity Center automation.
- Automate provisioning, deprovisioning, access requests, approvals, entitlement changes, access reviews, reporting, and identity operations.
- Reduce excessive permissions, privilege escalation, long-lived credentials, risky trust relationships, and non-human identity risk.
- Strengthen Twingate, privileged access, PAM, MFA, passwordless, vendor-access, and identity-aware remote-access controls.
- Support IAM investigations, detection and triage workflows, monitoring, access reviews, evidence collection, and SOC 2 and ISO 27001 audit readiness.
- Build safe AI-assisted IAM workflows for access review analysis, troubleshooting, triage, documentation, chatops, and remediation recommendations.
- Partner with engineering, infrastructure, security operations, compliance, IT, and studio teams to establish scalable and secure identity patterns.
- Provide technical leadership on IAM architecture, automation, least-privilege engineering, Zero Trust, access governance, and safe AI adoption.
Requirements
- 8–12+ years of experience in IAM security engineering, cloud security, identity architecture, or related security engineering roles.
- Strong hands-on experience with AWS IAM, AWS Organizations, IAM Identity Center, SCPs, IAM roles and policies, CloudTrail, GuardDuty, IAM Access Analyzer, and SSM.
- Strong hands-on experience with GCP IAM, service accounts, workload identity, organization/folder/project models, and audit services.
- Strong Okta administration experience, including groups, rules, application integrations, assignments, lifecycle management, and troubleshooting.
- Experience with SAML, OIDC, OAuth, SCIM, federated identity, cross-account access, cross-project access, and workload identity governance.
- Experience administering Twingate or comparable ZTNA and remote-access platforms.
- Production experience with Terraform-based IAM and access automation, reusable modules, state management, drift detection, rollback planning, and safe IAM deployments.
- Experience with Git-based workflows, pull requests, code review, scripting, API integrations, provisioning and deprovisioning automation, reporting, and CI/CD integration.
- Understanding of policy-as-code, automation-first IAM, scalable access patterns, and safe production change practices.
- Experience or strong interest in Claude Code, Codex, MCP integrations, agent-based automation, AI-assisted security workflows, prompt security, model safety, and human-in-the-loop controls.
- Strong understanding of least privilege, role engineering, RBAC, ABAC, identity threat modeling, privileged and just-in-time access, identity lifecycle management, logging, monitoring, access reviews, and audit readiness.
- Strong communication, ownership, systems thinking, and ability to explain IAM risks and solutions to engineers, IT, and leadership.
- Preferred experience with Britive, CyberArk, SailPoint, Okta Workflows, CIEM, identity governance tooling, Wiz, Astrix, passwordless authentication, WebAuthn, FIDO2, AI security frameworks, or security certifications such as CISSP or AWS Security Specialty.
- Experience in gaming, SaaS, or multi-studio environments is a bonus.
Benefits
- Remote work is available, with a hybrid option for candidates located in Barcelona.
- Candidates should attach a résumé or CV written in English.
Tech Stack
Categories
About Scopely
Scopely develops, publishes, and live-operates free-to-play games across mobile, PC, and console, including MONOPOLY GO!, Stumble Guys, Star Trek Fleet Command, MARVEL Strike Force, WWE Champions, and Yahtzee With Buddies. Founded in 2011 and headquartered in Culver City, California, it uses its Playgami technology platform and collaborates with studios worldwide. In 2023, Scopely was acquired by Savvy Games Group and continues to operate as an independent subsidiary.