01 oct
|
Scopely
|
España
Scopely is looking for a Senior IAM Security Enginee "r to join our Information Security team on a remote basis in Spain. This role will focus on building, scaling, and securing Scopely’s identity and access management ecosystem across our cloud, SaaS, AI, and remote access environments, with a strong emphasis on Terraform-based IAM automation, access workflow engineering, least-privilege design, identity risk reduction, and AI-assisted operational workflows.
This is a highly technical, hands‑on role for someone who can operate across AWS, GCP, Okta, AWS IAM Identity Center, Zero Trust access models, identity governance workflows, and modern AI-enabled engineering environments, while building scalable identity systems through Infrastructure as Code, workflow orchestration, and automation‑first security engineering.
Build and Evolve Modern IAM Architecture
~ Design and evolve Scopely’s IAM architecture to support a high-scale, cloud-first environment across AWS, GCP, SaaS applications, AI tooling, and remote access platforms.
RBAC and ABAC models for cloud and SaaS environments
Centralized access models using Okta, AWS IAM Identity Center, Google Cloud IAM, and cloud-native IAM services
Secure cross-account and cross-project access patterns
Zero Trust identity and access control design
Build scalable identity controls for a fast-moving engineering environment
Own Terraform-Based IAM and Access Automation
~ Own and improve Terraform-based IAM and access automation across Scopely’s cloud and identity environment.
Reusable Terraform modules for IAM roles, policies, permission sets, group mappings, and access patterns
Terraform workflows for Okta app assignments, group-based access, and IAM Identity Center automation
Terraform-driven onboarding and offboarding flows for identity-related systems
Access reporting and audit visibility pipelines connected to code-based IAM workflows
Standardization of IAM modules, variables, role definitions, and policy structures
Reduction of manual IAM operations
Ensure mature Terraform engineering practices around:
Rollback planning
Blast-radius awareness for IAM changes
Build scalable automation for identity lifecycle management, access requests, entitlement changes, access reviews, and day-to-day IAM operations.
IAM Identity Center permission set automation
Operational tooling that reduces repetitive IAM work
Terraform and Infrastructure as Code workflows
Python, Bash, PowerShell, and APIs
ServiceNow, ticketing, and operational workflow integrations
Reduction of manual IAM work
Design and implement controls for:
AWS IAM Access Analyzer
GCP‑native IAM and audit services
CIEM, CSPM, and related cloud security platforms
Partner with IAM, platform,
and security teams to strengthen Zero Trust and privileged access controls across Scopely’s environment.
Identity‑aware remote access controls
Adaptive access controls
Federated access into AWS, GCP, SaaS platforms, and internal tools
Secure vendor and contractor access patterns
Privileged session control
Support Identity Investigations, Monitoring, and Audit Readiness
~ Partner with Security Operations, Compliance, and Infrastructure teams to improve identity monitoring, investigation, and audit readiness.
IAM troubleshooting runbooks
IAM logging and monitoring design
Documentation of IAM controls and workflows
AI‑assisted access review analysis
Internal copilots for IAM operations and knowledge support
Human‑in‑the‑loop approval controls
Least‑privilege access to tools and data
Prompt and data handling safeguards
Partner with engineering, platform, IT, and studio teams to align IAM strategy with Scopely’s operational and business goals.
Modern IAM architecture
IAM automation strategy
Terraform design patterns for identity and access management
Automate IAM safely
Improve cloud and SaaS access consistency
Build scalable and maintainable identity controls
Automation‑first IAM operations
Engineering‑driven IAM design
8–12+ years in IAM security engineering, cloud security, identity architecture, or related security engineering roles
~ Strong experience operating in cloud‑first, high‑scale environments
~ Experience designing and operating IAM solutions for global organizations with complex access needs
~ Proven experience building automation and reusable engineering patterns, not just handling manual IAM operations
Cloud and Identity
AWS IAM, AWS Organizations, IAM Identity Center, SCPs, IAM roles and policies, CloudTrail, GuardDuty, IAM Access Analyzer, SSM
GCP IAM, service accounts, workload identity patterns, organization/folder/project models, and audit services
Cross‑account and cross‑project access controls
Twingate administration or comparable ZTNA and remote access platforms, including connectors, resources, access policies, and policy troubleshooting
Terraform‑based IAM and access automation in production
Designing reusable Terraform modules for IAM roles, policies, permission sets, group mappings, and access patterns
Terraform state management, drift detection, rollback planning, and safe deployment of IAM changes
Python, Bash, PowerShell, or similar scripting languages
Policy‑as‑code and automation‑first IAM
How to convert manual IAM processes into reusable code‑driven workflows
Security controls for SaaS and cloud identity systems
Builder mindset - creates scalable IAM systems, not one‑off fixes
Systems thinker - connects IAM, cloud, SaaS, developer workflows, and operational risk
Strong communicator - able to explain IAM risks and solutions to engineers, IT, and leadership
Experience with Britive, CyberArk, SailPoint, or similar PAM/PIM platforms
Experience in gaming, SaaS, or multi‑studio environments
Experience building AI‑assisted workflows for IAM operations, documentation, access reviews, or investigations
Security certifications such as CISSP, AWS Security Specialty, or relevant IAM/cloud certifications
This role is ideal for someone who is excited about building modern identity security beyond traditional approaches and wants to help Scopely scale secure access across cloud, SaaS, AI, and engineering environments. If you enjoy solving IAM challenges with Terraform, automation, reusable engineering patterns, and well‑designed identity systems, we’d love to hear from you.
Scopely is a leading video game and global interactive entertainment company, home to many of the world’s most beloved and enduring experiences, including two of the most successful mobile games of all‑time “MONOPOLY GO!” Across mobile, web, PC, and console, Scopely creates, develops, publishes, and live‑operates one of the most diversified and award‑winning portfolios in the games industry — bringing hundreds of millions of players together through a shared love of play.
Together, these strengths have fueled Scopely’s position as the #1 mobile games company in the U.Whether building global sensations like “MONOPOLY GO!” from the ground up, or expanding through strategic acquisitions, including the FoxNext, GSN, and Scopely Explore games businesses — Scopely consistently delivers experiences players love today and return to for years to come.
Recognized multiple times as one of the "100 Most Influential Companies in the World" by TIME magazine and one of Fast Company’s "World's Most Innovative Companies" and “Best Workplaces for Innovators,” Scopely believes that video games can be a force for good — creating meaningful connections, vibrant communities, and making life better through play.
Scopely has general operations and partners across four continents in more than a dozen countries worldwide. Should you have any questions or encounter any fraudulent requests/emails/websites, please immediately contact Our job applicant privacy policies are available here: We also consider qualified applicants with arrest or conviction records, consistent with applicable federal, state and local law.
#
📌 Senior IT Security Engineer (España)
🏢 Scopely
📍 España