
Cybersecurity Identity and Access Management Engineer
- Manila City, Metro Manila
- Permanent
- Full-time
- Collaborate with the Security Governance, Risk & Compliance team to turn compliance requirements into project plans and automation that consistently produce accurate data.
- Partner with the IAM directory services expert to implement an automation framework for distributed directory services.
- Assess pre-identified workflow opportunities for automation by evaluating resource optimization, complexity, cost-effectiveness, and feasibility, assisting management in pinpointing quick wins and contributing to their development.
- Skilled in crafting technical documentation and process documentation, such as deployment diagrams and account creation flow charts.
- Examine account metadata, logging, and code repositories to enhance the accuracy of identity repositories.
- Generate reports to meet various audit and compliance needs.
- Assist in quarterly access reviews to ensure adherence to the principle of least privilege.
- Strengthen security controls and methodologies to meet industry best practices, emerging compliance requirements, and prevent threats.
- Participate in ongoing process improvement initiatives to enhance the quality of security service delivery and mitigate risk.
- Bachelor's or master’s degree in Computer Science or equivalent.
- 3-4 years of development experience & good understanding of security basics.
- Experience developing in any programming stacks not limited to SQL, Python, PowerShell, Javascript, Shell Scripting, REST API, YAML.
- Solid understanding of HTTP protocol & well-versed in REST API Development.
- Prior experience in Orchestration/automation solutions would be helpful.
- Experience with identity repositories such as Active Directory, Okta, Azure AD, SailPoint, especially with access logs
- General understanding of authentication, authorization, role-based access, least privilege and segregation of duties concepts
- Experience in writing process documentation (e.g. flow charts for account creation)
- Good problem-solving skills.
- Strong debugging skills
- Experience as an administrator of at least one Identity & Access Management system (e.g. Okta, Sailpoint, local Active Directory domain, ADFS, Azure AD, AWS IAM, CyberArk, Centrify, BeyondTrust or other products in those families)
- Written and oral communication & ability to engage partner teams in driving conversations.
- Strong team player.
- Ability to provide on-the-job training and knowledge sharing to other engineers.
- Self-initiative with strong time management.
- Must be willing to work on shifting schedule
- The opportunity to join an S&P 500 company with over 45 years of sustainable growth powered by the entrepreneurial spirit of a start-up.
- Support for your total well-being. This includes health, life, and disability insurance, as well as retirement savings plans and a discounted employee stock purchase program, plus paid time off for holidays, family leave, and company-wide wellness days.
- Flexible work accommodations. We value work/life harmony and offer our employees a range of accommodations to help them achieve success both at work and in their personal lives.
- A global community dedicated to volunteerism and sustainability, where collaboration is always encouraged, and individuality drives solutions.
- Career progression planning with dedicated time each month for learning and development.