AI-Augmented IAM Security Engineer

Brak informacji o wynagrodzeniu
MidFull-time
#447644·Dodano 3 dni temu·0
Źródło: justjoin.it
Aplikuj teraz

Tech Stack / Keywords

Identity and Access ManagementSSOSAMLOAuth 2.0Privileged Access ManagementOpenId ConnectSCIMPowershellPrompt Engineering

Firma i stanowisko

EPAM is a global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and startups. With over thirty years of expertise in custom software, product, and platform engineering, EPAM empowers clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.

Wymagania

  • Bachelor's degree in Computer Science, Cybersecurity, Engineering, or equivalent practical experience
  • 2+ years hands-on experience implementing or operating IAM solutions
  • Experience with at least one enterprise IAM, IGA, PAM, or federation platform
  • Understanding of IAM concepts including identity lifecycle, authentication, authorization, SSO, federation, MFA, RBAC/ABAC, least privilege, and privileged access
  • Knowledge of IAM protocols and standards such as SAML, OAuth 2.0, OpenID Connect, SCIM, LDAP, and Kerberos
  • Experience configuring IAM controls, policies, connectors, and access governance workflows
  • Working knowledge of cloud IAM concepts on platforms like Azure, AWS or GCP
  • Scripting and automation experience with PowerShell, Python, Bash, REST APIs, SCIM, or Terraform
  • Ability to work with developers, architects, infrastructure engineers, security operations, compliance teams, and business stakeholders
  • Competency in executing IAM and security processes from tickets, runbooks, and designs
  • Practical understanding of AI-assisted productivity and automation including building AI agents, integrating LLMs, prompt engineering, and secure AI tool usage
  • Good communication skills to explain IAM issues and technical decisions to technical and non-technical stakeholders

Nice to have:

  • Familiarity with IAM platforms like Microsoft Entra ID, Active Directory, Okta, Ping Identity, ForgeRock, Auth0, SailPoint, Saviynt, CyberArk
  • Experience with CIAM, B2B/B2C identity, external identity scenarios, and SIEM/SOAR integrations for IAM
  • Experience with CI/CD-based IAM deployment, configuration-as-code, and automated IAM testing
  • Familiarity with AI/LLM platforms such as Azure OpenAI, Amazon Bedrock, Microsoft Copilot Studio, LangChain, AutoGen, Power Automate
  • Understanding of AI security risks like data leakage, prompt injection, excessive agency, model governance, and sensitive identity data exposure
  • Certifications such as SC-300, Okta Certified Professional, SailPoint, CISSP, CISM, CISA, CCSK, CCSP, SSCP, AI-900, AWS Certified AI Practitioner

Obowiązki

  • Implement, configure, and operate IAM solutions based on architecture and standards defined by IAM architects and security leadership
  • Maintain identity lifecycle processes, including automated provisioning and deprovisioning
  • Configure core IAM capabilities like SSO, federation, MFA, passwordless authentication, conditional access, and role models
  • Develop and deploy IAM integrations and connectors with cloud platforms, SaaS applications, enterprise systems, directories, databases, and APIs
  • Execute access certification and review campaigns, entitlement cleanup, and configure segregation-of-duties (SoD) rules
  • Operate Privileged Access Management controls including credential vaulting, secrets rotation, session management, just-in-time and just-enough access
  • Develop automation scripts, workflows, and tooling using PowerShell, Python, REST APIs, SCIM, Terraform
  • Monitor IAM platform health, troubleshoot incidents, perform patching, upgrades, and configuration hardening
  • Maintain IAM logging, alerting, monitoring, and run backup and recovery procedures
  • Deploy AI-assisted automations and workflows to reduce manual effort across IAM operations
  • Integrate AI agents and LLM-backed automations into IAM systems and operational pipelines
  • Develop and maintain reusable prompts, structured-prompting patterns, and prompt templates
  • Implement output verification, human-in-the-loop approval, and rollback paths for AI-assisted workflows
  • Implement security and privacy controls for IAM AI usage
  • Monitor AI-assisted IAM automations in production, tune prompts and workflows, and produce operational documentation

Benefity

  • Opportunity to work with top tech minds driving AI, cloud, and digital platform innovation
  • Supportive team with an agile, startup-like culture
  • Hybrid mode with opportunity to work remotely within Poland
  • Chance to work abroad for up to 60 days annually
  • Business-driven relocation opportunities
  • Career development programs including mentoring, soft skills, and well-being
  • Certification support for Anthropic, Gemini, GCP, Azure, AWS
  • English language classes
  • Stable pay
  • Participation in Employee Stock Purchase Plan with 15% discount
  • Benefits package including health insurance, multisport, shopping vouchers
  • Referral bonuses up to $2,000
  • Offices with entertainment and relaxation zones, table tennis, football, free snacks, coffee
  • Corporate, social, and well-being events
Elastyczne godziny
Pakiet relokacyjny
Szkolenia wewnętrzne
Budżet konferencyjny
Dofinansowanie szkoleń
Spotkania integracyjne
Kursy językowe
Karta sportowa
Opieka zdrowotna
Ubezpieczenie
Premie
Udziały pracownicze
Darmowe przekąski
Napoje w biurze

Inne informacje

Klikając w przycisk „Aplikuj” lub w inny sposób wysyłając zgłoszenie rekrutacyjne, zgadzasz się na przetwarzanie Twoich danych osobowych przez EPAM Systems (Poland) sp. z o.o. z siedzibą w: Fabryczna 1A, 31-553 Kraków (Pracodawca), jako administratora danych osobowych w celu przeprowadzenia rekrutacji na stanowisko wskazane w ogłoszeniu zgodnie Polityką Prywatności dostępną na stronie: https://www.epam.com/applicant-privacy-notice

EPAM Systems

EPAM Systems

1197 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz