- Location
- Ankara, Ankara, Turkey · Offshore
- Department
- Security
- Experience
- 5+ years
Description
About us:
Amach is an industry-leading technology driven company with headquarters located in Dublin and remote teams in UK and Europe.
Our blended teams of local and nearshore talent are optimised to deliver high quality and collaborative solutions.
Founded in 2013, Amach was created to solve a specific problem in aviation: too much complexity, too little usable intelligence. We help airlines modernise their operating model using cloud, data and Al-delivered by teams with deep aviation domain expertise.
Our goal is to maximize airlines' operational efficiency by optimizing resource use, reduce costs and increase customer experience and satisfaction.
We are seeking an Identity Security Engineer to be embedded with our customer, a leading organisation in the aviation industry, where you will serve as a core engineering team member responsible for governance and continuous improvement of their identity security posture, including privileged access management. This hands-on role supports the delivery of identity security standards, secure-by-design architectures, identity lifecycle management and access controls under the direction of a senior engineer, working closely with the customer's technology, cyber and business teams.
Key responsibilities & duties include:
- Lead ownership of identity and privileged security policies, standards and architecture patterns across Active Directory, Entra and IGA services, ensuring consistency and alignment with the customer's security objectives
- Implement and maintain identity lifecycle workflows and governance processes including joiners, movers and leavers, access requests and access reviews using SailPoint, working with the customer's teams to drive adoption and operational excellence
- Support implementation of a privileged access platform and develop privileged access controls as part of the customer's identity services, including governance and lifecycle processes
- Engineer continuous improvements to identity security controls, PAM and IAM lifecycle processes, enabling self-service and scalable services through automation and working with the customer's stakeholders
- Deliver identity posture monitoring and drive ongoing improvements to identity security controls, while providing specialist support for identity-related security incidents and investigations to enable containment and remediation
- Support the building of identity metrics and dashboards for centralised oversight of the customer's identity security controls coverage, effectiveness and risks, and collaborate with application and platform teams to embed secure-by-design identity patterns including authentication, authorisation, RBAC and least privilege
- Maintain documentation and blueprints for identity security standards and processes, manage configuration of the customer's identity security platforms, contribute to cross-domain security architecture reviews and partner with the customer's Cyber Defence function to ensure appropriate identity telemetry is monitored
Required Experience:
- Minimum of 10+ years' industry experience with at least 5+ years in identity management or identity security engineering roles
- Hands-on experience with Active Directory and/or Entra in an enterprise environment
- Hands-on experience designing, implementing and governing identity lifecycle and access lifecycle processes using an IGA platform
- Experience designing and implementing privileged access management controls and processes
- Strong understanding of IAM principles including zero trust, least privilege, RBAC, access reviews and certifications, segregation of duties concepts and lifecycle governance
- Ability to define secure identity architecture patterns and translate them into practical standards and blueprints, with proven capability to implement identity standards and controls consistently and document outcomes
Desirable skills:
- Relevant certifications such as Microsoft identity or security credentials, CISSP, CISM, CIAM or CRISC
- Scripting and automation exposure such as PowerShell to improve identity governance processes
- Experience with identity threat detection concepts and integration with SOC monitoring, and familiarity with non-human identity governance patterns and modern authentication protocols
- Engineering experience with identity protection and governance platforms including SailPoint, CyberArk, BeyondTrust, Microsoft Defender for Identity, Crowdstrike Identity or SilverFort
What’s in it for you:
- An opportunity to join a fast-growing company
- Options for career advancement
- Learning and development opportunities
- Flexible working environment
- Competitive salaries based on experience
Equal Opportunity Employer:
Amach is an equal opportunity employer and makes employment decisions on the basis of merit. We celebrate diversity and are committed to creating an inclusive environment for all employees. This job description is intended to convey essential responsibilities and qualifications for this role, but it is not an exhaustive list of tasks that an employee may be required to perform.
If you are passionate about driving customer success, advising on strategic solutions, and contributing to product innovation, we would love to hear from you!
Not for you?
Check out all of our open positions in our careers page and follow us on LinkedIn for future opportunities.
P.S. Share this with friends and co-workers! Don't be afraid they'll steal it from you, if you're amazing and smart we'll find a role for you. We are growing fast and we are always looking for talented people.
At Amach, we strive to be an inclusive community of open-minded individuals with different backgrounds and we are committed to fostering, cultivating and preserving a culture of diversity, equity and inclusion. We strongly believe that a diversity of experience and background is essential to create a fulfilling environment and better solutions for our people and our customers. All Amach employees and contractors are expected to honour this policy and act to ensure that every individual is respected in the workplace.
Your personal data
Amach will process your personal information in accordance with the EU's General Data Protection Regulation (GDPR). We will comply with data protection law and principles, which means that your data will be:
- Used lawfully, fairly and in a transparent way
- Collected only for valid purposes and not used in any way that is incompatible with those purposes
- Relevant to the purposes we have told you about and limited only to those purposes
- Accurate and kept up to date
- Kept only as long as necessary for the purposes we have told you about
- Kept securely
If you would like to contact us about your data, please use the following address: [email protected]