- Location
- São Paulo, Brazil
- Workplace
- Hybrid
- Type
- Full-time
- Department
- Engineering
- Education
- Master
- Closing date
- Today
- Source
- Workday
Description
Position: Security - IAM Engineer
Work Model: Hybrid
Location: Lapa/SP
What you will do day to day:
- Security - IAM Engineer with an emphasis in Pathlock/Sailpoint/MIM,Azure Active Directory, Active Directory, Powershell, Intune MDM. The Engineer will provide Level 2 support for identity issues as well as other initiatives to improve our authentication/authorization security. This individual manages, maintains, supports, troubleshoots, and optimizes the identity and access management environment.
Roles and Responsibilities:
- Administer and support Identity and Access Management (IAM) platforms including Pathlock, SailPoint, Microsoft Identity Manager (MIM), Microsoft Entra ID (Azure AD Enterprise Applications, App Registrations, and MFA), and Active Directory.
- Manage and secure user identities and access across cloud and hybrid environments by implementing IAM best practices, governance controls, and security policies.
- Perform daily IAM operations, including user provisioning, deprovisioning, role modifications, and access management across multiple enterprise platforms.
- Conduct privileged access reviews and user access certification activities to support internal audit, compliance, and regulatory requirements.
- Enhance identity governance, monitoring, security controls, and compliance posture within Microsoft Entra ID (Azure AD).
- Administer, troubleshoot, and support Microsoft Azure Multi-Factor Authentication (MFA) solutions to strengthen enterprise security.
- Develop and utilize advanced PowerShell scripts and automation solutions for Microsoft 365, Microsoft Entra ID, and on-premises Active Directory administration.
- Configure, manage, and support Mobile Device Management (MDM) enrollment and device compliance activities.
- Administer on-premises Active Directory environments, including management of users, groups, organizational units (OUs), and access controls.
- Perform Privileged Access Management (PAM) operations, including secret onboarding, account lockout investigations, password rotation validation, and issue resolution within CyberArk, Delinea, and related platforms.
- Execute daily health checks, monitoring, and operational support for IAM and associated infrastructure systems to ensure availability, security, compliance, and operational stability.
Who we are looking for:
Minimum Qualification:
- A bachelor's degree in Computer Science, Information Security, Information Technology, Engineering, or a related field is highly desirable.
- 3+ years of hands-on experience with identity and access management (IAM) solutions such as MIM/FIM, Pathlock, SailPoint, or Saviynt, along with Microsoft Entra ID (Azure AD), Active Directory, Microsoft Intune MDM, PowerShell, Single Sign-On (SSO), and SQL queries.
- Strong experience with at least one Identity Governance and Administration (IGA) tool is required. Proven expertise in Microsoft Entra ID (Azure AD), PowerShell scripting, Azure AD Connect, Azure AD Enterprise Applications, and Active Directory user and group management.
- Experience with Privileged Access Management (PAM) solutions is mandatory. Knowledge of identity lifecycle management, access governance, authentication, and authorization processes is highly preferred.
- Strong troubleshooting, analytical, and problem-solving skills with the ability to support complex IAM environments.
Differential
- Exceptional problem-solving and troubleshooting skills are required. Strong organizational and project management abilities.
- Proven ability to manage multiple tasks/projects, deadlines, and to identify project interdependencies, resource needs, potential risks/pitfalls, and mitigation plans.
- Recognized as a connector and solution provider. Ability to exercise good judgment and maintain confidentiality when handling information and issues that arise, following defined policies and practices.
- Possesses good teamwork skills and, when needed, supports unforeseen tasks through personal initiative.
- Strong verbal and written communication skills.
- Proven experience in preparing and delivering presentations that convey key concepts and recommend actions to different management levels.
- International or global experience is desirable.
About Solenis
We are a chemical company committed to solving complex challenges in water treatment, process improvement, and hygiene for customers in the consumer, industrial, institutional, food and beverage, and pool and spa water markets. We do this through people, expertise, and technology. We are a global leader in the production and application of specialty chemicals, focused on delivering sustainable solutions for water-intensive industries, including the consumer, industrial, institutional, food and beverage, and pool and spa water markets.
Our mission is to be a trusted partner and deliver value by solving operational and sustainability challenges with the right people, the right expertise, and the right technology—offering solutions that help preserve natural resources and promote cleaner and safer environments.
At Solenis, you’ll find an excellent work environment with autonomy, challenges, and growth opportunities. We value diversity and are continuously working to become a more diverse and inclusive company every day, which is reflected in our recruitment processes.
We emphasize that everyone is welcome, regardless of gender, race, sexual orientation, gender identity, age, disability, or any other characteristic. The selected candidate must demonstrate exemplary work ethics and high standards of integrity.
Come be part of the Solenis team!