Padmi

Senior Identity & Access Management (IAM) Engineer L3

BangalorePosted 1 month ago
CybersecuritySeniorFull Time; Regular
Apply at Sonata Software

Opens the source posting on shine.com

Source description

About the role

View original

IAM L3 Lead / Senior Engineer Job Description Position Senior Identity & Access Management (IAM) Engineer L3 Experience 8+ Years Location:Bengaluru Role Summary The IAM L3 Engineer will act as the technical lead for Identity Governance, Access Management, Privileged Access Management, and Enterprise Application integrations. The role is responsible for governance, escalations, architecture reviews, operational excellence, and continuous improvement of IAM services across the organization. Key Responsibilities Identity Lifecycle Management (JML) Lead HR-driven Joiner, Mover, and Leaver (JML) processes.Design and improve identity lifecycle workflows.Resolve complex identity synchronization issues.Troubleshoot provisioning failures and automation issues.Govern dormant, stale, and disabled account management.Authentication & Access Management Manage and optimize MFA deployment and operations.Review and maintain Conditional Access policies.Support Passwordless Authentication initiatives.Analyze risky sign-ins and authentication anomalies.Govern Conditional Access exceptions and legacy authentication remediation.Privileged Access Management (PIM/RBAC) Manage Microsoft Entra PIM operations.Govern privileged role assignments and activations.Conduct segregation of duties (SoD) reviews.Lead least-privilege implementation initiatives.Support privileged access audits and compliance requirements.Enterprise Applications Lead SSO integrations using SAML, OAuth, OIDC, and SCIM.Support onboarding/offboarding of enterprise applications.Manage AWS IAM Identity Center integrations.Support AI application governance and access controls.Oversee certificate lifecycle management for enterprise applications.Guest Access Governance Define and enforce guest user governance policies.Review guest access and lifecycle controls.Ensure MFA and application restrictions for external identities.Monitoring & Governance Review IAM operational KPIs and service metrics.Lead audit preparation and evidence collection.Track IAM policy changes and governance compliance.Drive process improvements and automation initiatives.Technical Skills Microsoft Entra ID (Azure AD)Microsoft Entra PIMConditional Access PoliciesIdentity GovernanceMFA and Passwordless AuthenticationSAML, OAuth 2.0, OpenID Connect (OIDC)SCIM ProvisioningAWS IAM Identity CenterActive Directory & Hybrid IdentityPowerShell AutomationIAM Audit & ComplianceMicrosoft Defender for Identity (Preferred)Deliverables Ownership Monthly Governance ReportsMonthly Privileged Access ReportsConditional Access Review ReportsAudit Evidence PacksIAM Governance DocumentationOperational Runbooks and SOPsRequired Certifications (Preferred) Microsoft Certified: Identity and Access Administrator Associate (SC-300)Microsoft Certified: Cybersecurity Architect Expert (SC-100)AWS Security Specialty (Preferred) IAM L3 Lead / Senior Engineer Job Description Position Senior Identity & Access Management (IAM) Engineer L3 Experience 8+ Years Location:Bengaluru Role Summary The IAM L3 Engineer will act as the technical lead for Identity Governance, Access Management, Privileged Access Management, and Enterprise Application integrations. The role is responsible for governance, escalations, architecture reviews, operational excellence, and continuous improvement of IAM services across the organization. Key Responsibilities Identity Lifecycle Management (JML) Lead HR-driven Joiner, Mover, and Leaver (JML) processes.Design and improve identity lifecycle workflows.Resolve complex identity synchronization issues.Troubleshoot provisioning failures and automation issues.Govern dormant, stale, and disabled account management.Authentication & Access Management Manage and optimize MFA deployment and operations.Review and maintain Conditional Access policies.Support Passwordless Authentication initiatives.Analyze risky sign-ins and authentication anomalies.Govern Conditional Access exceptions and legacy authentication remediation.Privileged Access Management (PIM/RBAC) Manage Microsoft Entra PIM operations.Govern privileged role assignments and activations.Conduct segregation of duties (SoD) reviews.Lead least-privilege implementation initiatives.Support privileged access audits and compliance requirements.Enterprise Applications Lead SSO integrations using SAML, OAuth, OIDC, and SCIM.Support onboarding/offboarding of enterprise applications.Manage AWS IAM Identity Center integrations.Support AI application governance and access controls.Oversee certificate lifecycle management for enterprise applications.Guest Access Governance Define and enforce guest user governance policies.Review guest access and lifecycle controls.Ensure MFA and application restrictions for external identities.Monitoring & Governance Review IAM operational KPIs and service metrics.Lead audit preparation and evidence collection.Track IAM policy changes and governance compliance.Drive process improvements and automation

One address, no account. We’ll tell you when matching roles go live.

More at Sonata Software

Related open roles

View all roles