17 ago
|
Viterbit
|
Sevilla
We are seeking an IAM Governance Analyst who combines strong risk and compliance expertise with a modern, automation-first mindset. In this role, you will bridge the gap between technical security engineering and business operations, ensuring our cloud infrastructure and specialized applications remain secure, compliant, and well-documented. While the primary focus is on IAM Governance, Risk, and Compliance (GRC), we are actively looking for a professional who also leverages technical skills (Python, AWS Lambdas) to automate manual workflows, build control efficiencies, and support our IAM Tech teams with a governance approach.
Key Responsibilities:
IAM Governance, Risk & Compliance:
- Design, implement, and maintain organizational identity policies, least-privilege access frameworks, and Role-Based Access Control (RBAC) matrices.
- Conduct periodic access reviews, identity audits, and application inventory reviews to ensure alignment with security baselines and regulatory standards.
- Define and document governance requirements for cloud environments, enterprise SaaS, and specialized internal applications.
Advanced Escalations & Ticket Management
- Act as the Tier-2/Tier-3 escalation point for complex governance tickets, broken workflows, and elevated entitlement requests following initial Service Desk triage.
- Analyze recurring access issues to identify root causes and implement permanent, automated fixes.
Stakeholder Management & Project Leadership
- Serve as the central liaison between IAM Tech, business application owners, and external auditors.
- Lead small-to-medium security initiatives, driving deliverables, tracking milestones, and delivering clear status updates to leadership.
Technical Automation & Operational Efficiency
- Identify manual, repetitive governance and operational processes and develop automated solutions.
- Write clean, maintainable scripts (Python) and deploy serverless resources (AWS Lambda, Step Functions) to streamline application inventory tracking, access reporting, and audit collection.
- Partner closely with IAM Technical and DevOps teams to co-develop automated provisioning and de-provisioning workflows.
Requirements:
- IAM & Security Core: Strong understanding of foundational IAM concepts, including RBAC/ABAC, Principle of Least Privilege, Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Identity Lifecycle Management.
- Communication: Exceptional written and verbal English skills, with a proven ability to translate complex technical requirements into actionable business policies and clear documentation.
- Project & Task Management: Demonstrated track record of managing cross-functional technical projects, tracking application inventories, and meeting delivery schedules independently.
- Automation & Scripting: Practical experience writing scripts in Python (or JavaScript) to interact with REST APIs, parse data, and automate operational tasks.
- Cloud Infrastructure: Technical familiarity with cloud platforms—specifically AWS (experience with AWS Lambda, Step Functions, IAM, and CloudWatch is highly desirable)—along with exposure to Azure or GCP.
📌 Iam & Risk Governance Analyst (Sevilla)
🏢 Viterbit
📍 Sevilla