Identity and Access Management (IAM) Engineer
At Provido Global, we’re more than a technology company. We are a global hub of innovation, creativity, and engineering excellence.
Our teams design and deliver intelligent, secure, and high-performance digital solutions that help organizations modernize operations, scale their platforms, and succeed in an increasingly digital world.
As part of a dynamic international ecosystem, we bring together forward-thinking engineers, technology specialists, designers, and delivery professionals who transform ideas into scalable, real-world solutions with measurable business impact.
If you are motivated by challenge, inspired by technology, and ready to grow with a company that truly invests in its people, your journey starts here.
👉 Why We Need You
The IAM Engineer ensures that user identities, authentication mechanisms, and access entitlements are secure, compliant, and auditable, while aligning with Zero Trust principles. The role also oversees and governs access to critical environments, including product back offices, payment gateways, and enterprise applications.
The IAM Engineer will also manage IP address whitelisting for product providers and payment gateways, and ensure secure access through proper governance, monitoring, and enforcement of security policies using DLP, CASB, PIM, and PAM solutions.
This is a hands-on role suited for an individual who combines strong technical expertise with a deep understanding of security principles, compliance requirements, and operational discipline.
👉 What You’ll Be Doing
Identity Lifecycle Management
Administer joiner, mover, and leaver (JML) processes in alignment with HR systems, Backoffice System and IAM policies.
Provision, modify, and deprovision user accounts, service accounts, and privileged accounts across directories and integrated applications.
Maintain accurate identity attributes (UPN, display name, job title, department, email) as defined by corporate IAM and HR policies.
Identity and Access Management
Administer user accounts, roles, and permissions across enterprise systems, cloud environments, and product back-office platforms.
Implement and maintain least privilege, role-based access control (RBAC), and just-in-time access policies.
Regularly review and audit user access to ensure compliance with internal and regulatory requirements.
Coordinate onboarding/offboarding processes with HR and IT teams to ensure timely account provisioning and deprovisioning.
Integrate IAM systems with HRIS, directory services (e.g., Active Directory, Azure AD), and cloud identity providers.
Access Control and IP Whitelisting
Manage IP address whitelisting for all product providers, payment gateways, and other business-critical systems.
Maintain documentation and governance of IP access rules to ensure visibility and consistency.
Collaborate with network and application teams to troubleshoot and validate access connectivity.
Privileged Access Management (PIM/PAM)
Manage and maintain PIM/PAM solutions to protect privileged credentials and monitor administrative access.
Enforce session recording, password rotation, and MFA for privileged accounts.
Conduct regular privileged account reviews and implement access remediation where necessary.
Data Protection and Monitoring
Work closely with the Security Operations team to monitor access and data movement using DLP (Data Loss Prevention) and CASB (Cloud Access Security Broker) tools.
Investigate and respond to alerts or anomalies related to unauthorized data access or transfer.
Define and enforce data classification and protection policies aligned with organizational standards.
Integration & Operations Support
Support IAM integrations with SaaS platforms, Microsoft 365, Intune, collaboration tools, and third-party applications.
Troubleshoot authentication, SSO, MFA, and access related issues escalated from Service Desk or application teams.
Participate in IAM related projects (including onboarding of the new Backoffice System), enhancements, and tenant improvements.
Governance, Compliance, and Reporting
Maintain IAM documentation including processes, standards, and access matrices.
Ensure IAM configurations comply with internal security policies, audit requirements, and baseline hardening standards.
Identify and remediate access violations, orphaned accounts, and policy deviations.
Support internal and external audits by providing access, review evidence and compliance reports.
Drive IAM process improvements and automation to reduce operational overhead.
👉 What You Bring to the Team
Bachelor’s degree in Information Security, Computer Science, or related field (or equivalent practical experience).
Strong knowledge of Active Directory, Azure AD, Okta, or similar IAM platforms.
Experience with PIM/PAM solutions (e.g., CyberArk, BeyondTrust, Azure PIM).
Familiarity with DLP and CASB technologies (e.g., Proofpoint).
Understanding of authentication protocols such as SAML, OAuth, OIDC, and MFA.
Experience managing IP whitelisting and firewall access controls in cloud and hybrid environments.
5 to 7 years of hands-on experience in Identity and Access Management or related security disciplines.
Strong understanding of IAM concepts (authentication, authorization, federation, identity lifecycle).
Proficiency in Microsoft Entra ID (Azure AD), Conditional Access, and identity protection features.
Knowledge of directory services (e.g., Active Directory, LDAP).
Familiarity with identity governance and administration (IGA) practices.
Ability to analyze access risks and implement appropriate controls.
Strong analytical and troubleshooting skills.
Understanding of Zero Trust architecture and security best practices.
Strong analytical and problem-solving abilities.
High attention to detail and strong sense of accountability
Excellent communication and documentation skills.
Ability to handle sensitive and confidential access information
Detail-oriented and process-driven with a focus on operational excellence.
Collaborative mindset — able to work effectively across technical and business teams.
High integrity and commitment to maintaining confidentiality and compliance.
👉 Preferred Skills
Experience integrating IAM with CSP (AWS, Azure, AliCloud) or any other tools (e.g. GitHub, etc.)
Working knowledge of automation and scripting (Python, PowerShell, or Bash) for access management.
Scripting or automation experience (PowerShell, workflows) is an advantage
Familiarity with compliance frameworks (ISO 27001, PCI DSS, GDPR).
Industry certifications such as CISSP, CISM, Microsoft Certified: Identity and Access Administrator, or CyberArk Defender.
👉 Why You’ll Love Working with Us
☐ Employee Benefits & Advantages
At Provido Global, we value our employees and nurture a culture of progress and creativity. Our team members enjoy a supportive, inclusive, and growth-focused environment.
☐ Competitive Compensation & Performance Incentives
Provido Global offers an attractive salary package and performance-based bonuses to recognize and reward your contribution.
☐ Flexible Working Options
We support remote and hybrid working models to help you maintain a healthy work-life balance.
☐ Health & Well-being Support
We provide comprehensive health insurance, wellness initiatives, and resources to support both physical and mental well-being.
☐ Career Advancement & Development Programs
We invest in continuous learning through training programs, mentorship, and clearly defined career development paths.
☐ Team-Oriented & Inclusive Workplace
Our culture is built on diversity, inclusion, and collaboration. Every voice matters and innovation is encouraged.
☐ Team Events & Social Activities
We organize regular team-building activities and social events to strengthen relationships and create a positive, connected workplace.
- Department
- Secuirty (GISD)
- Remote status
- Fully Remote
- Employment type
- Contract
- Job Category
- Tech Job
About Provido Global
At PROVIDO GLOBAL, we don’t just deliver technology. We enable organizations to grow, adapt, and compete in a digital-first world.
As a modern IT and software development company, PROVIDO GLOBAL partners with businesses to turn complex challenges into scalable, secure, and high-impact digital solutions. From infrastructure and software engineering to UX-driven digital experiences and technical service delivery, our teams support the full technology lifecycle with precision and creativity.
We work side by side with our clients, combining deep technical expertise, industry best practices, and a practical delivery mindset. Whether you are building new systems, modernizing existing platforms, or strengthening operational resilience, PROVIDO GLOBAL provides the insight, execution, and long-term partnership needed to move your business forward.
At PROVIDO GLOBAL, innovation, reliability, and collaboration define how we work. We believe technology should not only function. It should create real business value.
Our core service areas include:
• Bespoke software and mobile application development
• Website and digital platform development
• Cloud-based solutions and system integration
• Security and cyber protection services
• IT advisory, technical support, and service delivery
• Quality assurance and testing
• Infrastructure and operations support
• UX/UI design and digital experience design
We deliver scalable solutions that improve operational efficiency, enhance user experience, and help organizations remain competitive in an evolving digital landscape.
At PROVIDO GLOBAL, we are equally committed to the people behind the technology.
We offer our team:
• Competitive compensation and performance-based incentives
• Flexible and hybrid working models that support work-life balance
• Health and well-being programs, including medical insurance and wellness initiatives
• Structured learning, development, and career growth opportunities
• A diverse, inclusive, and team-oriented culture where every voice matters
• Regular team events and social activities that strengthen collaboration and connection
PROVIDO GLOBAL is a place where professionals grow, ideas turn into solutions, and technology becomes a true business advantage.