- Location
- Makati, Philippines
- Type
- Full-time
- Department
- Engineering
- Experience
- 3+ years
- Source
- Workday
Description
Job Title
In this job you will:
- Handle IAM/IGA operational requests and incidents, ensuring timely resolution in line with SLA commitments and escalating complex cases where appropriate.
- Participate in the design, development, and implementation of IGA solutions, with a focus on One Identity Manager or comparable platforms.
- Support the integration of IAM systems with enterprise applications, including requirements gathering, entitlement mapping, connector configuration, and go-live validation.
- Facilitate workshops with system owners and application teams to define role structures, access models, and provisioning requirements.
- Contribute to Join-Move-Leaver (JML) workflows, ensuring accurate and timely provisioning and deprovisioning of access across connected systems.
- Prepare, execute, and monitor access recertification campaigns, coordinating with reviewers and application owners to ensure timely completion and proper closure reporting.
- Identify and remediate orphan accounts, excessive entitlements, and access anomalies surfaced through recertification or audit activities.
- Ensure compliance with security protocols, policies, and regulatory requirements (including PCI DSS where applicable).
- Collaborate with cross-functional teams - security, compliance, IT, and business units - to address identity-related challenges and continuously improve IAM processes.
- Maintain accurate documentation of processes, integration specifications, and recertification outcomes to support audit readiness.
About the ideal candidate:
- Bachelor’s degree in Information Technology, Computer Science, or related field.
- Overall 3-5+ years of experience in IT, with a minimum of 2 years in an operational, security or implementation role.
- Hands-on experience with an IGA platform — One Identity Manager strongly preferred; SailPoint, Saviynt, or equivalent considered.
- Good understanding of IAM/IGA concepts: JML lifecycle, RBAC, least privilege, access certification, and provisioning/deprovisioning.
- Experience supporting application integrations within an IAM context, including entitlement analysis and connector requirements.
- Knowledge of directory services and identity stores (Active Directory, Microsoft Entra ID / Azure AD).
- Familiarity with scripting or development skills relevant to IAM automation (PowerShell, SQL, .NET, or equivalent).
- Understanding of cybersecurity principles and compliance frameworks (e.g., PCI DSS, SOC, ISO 27001).
- Ability to design and support solutions using IGA platform processes, workflows, and orchestration tools.
- Excellent written and verbal communication skills, with the ability to explain complex IAM/IGA topics clearly to both technical and non-technical audiences.
- Strong ownership mindset and ability to manage tasks autonomously while keeping stakeholders informed.
- Collaborative and results-oriented, with a proven ability to work effectively across geographically distributed teams.
- Organized and detail-oriented, with a structured approach to documentation, follow-up, and issue tracking.
- Leadership capability and initiative — able to drive topics forward, facilitate workshops, and coordinate across teams without direct authority.
- Shift Information: This position requires working a mid-shift as the platform support requires to follow CET business hours. Flexibility is expected to handle other shifts as needed by the business
- Hybrid Work Setup (2-3 days a week onsite). Location: BGC, Taguig
Diversity & Inclusion
Amadeus aspires to be a leader in Diversity and Inclusion in the tech industry, enabling every employee to reach their full potential by fostering a culture of belonging and fair treatment, attracting the best talent from all backgrounds, and as a role model for an inclusive employee experience.
Amadeus is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to gender, race, ethnicity, sexual orientation, age, beliefs, disability or any other characteristics protected by law.
Be aware of recruitment scams
Amadeus Group never charges fees, requests payment, or asks for financial information during recruitment. All legitimate opportunities are communicated solely through official Amadeus channels, including our careers website. Any payment request or outreach via unofficial platforms (e.g., WhatsApp, Telegram) should be treated as fraudulent.