Pwrteams are seeking a IAM Engineer to join multi-disciplinary team of experts across Architecture, Engineering, DevOps and Agile Delivery providing services across the group ex. UK, Ireland, Sweden, Norway, Denmark, Finland, Germany, Belgium and The Netherlands.
The IAM product team has as goal to deliver IAM as a product. This means that all functions/services within IAM can be received with just a click on button. The business and development teams do not need to worry about IAM tasks and just focus on their delivery. Being able to plugin IAM as a product will reduce their burden and increase IAM security for TUI as a group.
As an IAM Engineer you will be responsible for the delivery of new or improved functionalities and assisting with daily operational tasks, within IAM, on platforms as Active Directory, Azure AD, AWS, GCP, etc. You are an active member in a self driving team working together with your colleagues and peers, constantly looking to increase IAM security, improvements & automation with the aim that the IAM product can be received as just a simple click on the button. You will drive, ensure and collaborate with the audit and compliance team assuring all IAM components and solutions are compliant and take corrective measure wherever necessary. You will be actively involved in the IAM programs that will deliver the IAM roadmap like SSO federation, Identity Governance and Administration, Privileged Access Management, etc.
About TUI Group
TUI is a global business with over 70,000 employees and a legacy of excellence in the travel industry. We operate travel agencies, hotels, airlines, cruise ships, and retail shops around the world, all united by our goal to deliver exceptional travel experiences. TUI is focused on building a digital future, embracing new technologies and solutions that will shape the next generation of travel.
Responsibilities
- Integrate and manage applications in cloud federation
- Identify, analyze and resolve system design weaknesses. Troubleshoot and manage the resolution of issues related identities, systems, access, accounts, authentication, authorization, entitlements, and permissions. Determine and recommend the most appropriate response to identified more complex problems, issues and/or defects by assessing impact and prioritization.
- Ensure the maintenance and monitor IAM systems. Troubleshoot, support and resolve system incidents, problems and changes, as required.
- Produce IAM technical documentation such IAM detailed design, configuration guides etc.
- Managing access and permissions where necessary and implementing automated solutions.
- Provide level 2 and level 3 support and troubleshooting and managing issues related to identities, systems access accounts, authentication, authorization, entitlements, and permissions.
- Coach other members of the organization on the best practices that should be followed in identity and access management.
- Stay up-to-date on current IAM threats and industry solutions.
Qualifications
- Proven deep knowledge of Microsoft Azure AD and related services like for example Enterprise Applications, Conditional Access, B2B/B2C accounts, Active Directory and Microsoft 365
- Minimum of 3 years’ experience as IAM engineer
- Knowledge of engineering workflows
- Comprehensive knowledge and experience with authentication standards and technologies
- Extensive hands-on knowledge of identity and access management best practices, procedures, and software solutions
- Extensive knowledge and experience with identity and access management technology, such as single sign-on (SSO), two-factor authentication, Conditional Access, privileged access management, etc. in Azure
- Experience with Windows, Linux, scripting (Bash, Powershell, Visual basic or Perl), LDAP, SQL, and web services.
- Experience of working with O365 security capabilities (e.g. Guard Duty...).
- Good interpersonal skills so that you can work well with and influence your information security, and IT operations colleagues from around the world.
- Problem solving skills to identify creative and elegant technical solutions.
- Good communicator and able to work under pressure.
Nice to have
- Profound security knowledge within cloud and system solutions
- Experience in AWS cloud solutions
- knowledge of languages like Java, C#, C/C++, others
- Experience in IAM sulutions such as: CyberArk, Oracle, ForgeRock, Radius, RSA, PKI, SailPoint, Thycotic, BeyondTrust, Ping Identity
Pwrteams offers:
- Family-like environment and personal attention to each specialist
- Direct cooperation with European and USA clients and their innovative products
- Competitive salary and regular reviews
- The work-life balance you deserve: 24 working days of paid vacations
- Educational reimbursement, funded language classes, certifications
- "Benefit Cafe with various categories like sport, leisure, books, fuel, etc.
- Health care: 10 paid sick leaves, on-demand medical insurance, vaccinations
- Cozy workplace and WFH opportunities
- Exciting events and lovely gifts for your family
In your resume please allow our company to use your personal data.