Planning, deployment and operation of on‑premises platforms with a focus on directory services, federated authentication, public key infrastructure (PKI) and identity & access management
Configuration, optimisation and integration of these services across the ICT landscape – including network access control, multi‑factor authentication and business‑critical applications
Contribute as a subject‑matter specialist to the overall ICT architecture for authentication services and their interfaces to adjacent systems
Take platform ownership for all authentication services across the entire ICT infrastructure
Further develop and standardise the authentication services with regard to high availability, data security and integrity – with a clear focus on automation
Operate authentication platforms actively and provide hands‑on support to the team in day‑to‑day ICT infrastructure operations
Work closely and cross‑disciplinarily with specialists from networking, virtualization and server infrastructure teams
Perform in‑depth fault analyses, performance diagnostics and capacity planning for the systems under management
Create and maintain system documentation and ensure compliance with internal policies and regulatory requirements
Requirements
Completed education in computer science or a comparable technical qualification with solid, multi‑year practical experience in Identity & Access Management
Proven experience in planning, implementing and operating Active Directory, IAM solutions and PKI infrastructures
Sound foundational knowledge of IT infrastructure topics such as compute, storage, server and client virtualization, and application operations
Strong security awareness in the design and operation of IT platforms within regulated and highly available environments
Experience with standardisation and automation as a basis for cost‑efficient and reliable platform operations
Intrinsic motivation to deepen and develop professionally in a specialised, security‑critical environment over the long term
Independent, structured and analytical working style with a high degree of personal responsibility
Strong written and verbal communication skills – both within the team and when interacting with business units
Excellent spoken and written German and good English skills
Willingness to participate in paid maintenance and on‑call rotations (4–5 weeks distributed across the year – typically one week at a time), a clean criminal record (no convictions) and a valid Category B driver’s license are required
Tech Stack
TypeScript
Benefits
Flexible working hours with the option to work up to 50% remotely
Above‑average social benefits: generous pension fund contributions, 100% continued salary in the event of illness or accident and access to mental‑health services
Attractive family benefits, including generous parental leave arrangements and a subsidy for childcare costs
A collegial, diverse team with an open communication culture that tackles demanding technical challenges together
Technically challenging and socially relevant working environment