You design and implement identity governance processes (Joiner‑Mover‑Leaver [JML], birthright access, recertifications, request/approval workflows) in Microsoft Entra ID Governance.
Modeling of identities, roles (RBAC/ABAC) and policies.
Integration of HR systems (e.g., SAP/Workday) and target systems via SCIM/REST/AD/Entra, including connector design.
Implementation of Access Reviews and Entitlement Management campaigns, SoD (Segregation of Duties) rules, delegation and recertification processes; automation of controls.
Alignment with PIM (Privileged Identity Management), logging/monitoring and regulatory requirements (e.g., ISO 27001, SOX, NIS2/DORA — client-specific).
Conducting workshops, producing guidelines and operational concepts; leading workstreams, mentoring team members and ensuring quality assurance (concept/design reviews).
Requirements
Enthusiasm for identity & access topics, a structured working style and willingness to learn.
Basic knowledge of Microsoft Entra ID, AD DS and common authentication/authorization protocols (LDAP, Kerberos, OAuth 2.0, OIDC, SAML).
For junior profiles: initial practical experience in IGA or IAM (e.g., access reviews, entitlement requests, provisioning) from university, internships or 1–2 years of professional experience.
Basic skills in PowerShell/SQL or REST/SCIM APIs and an understanding of JML processes.
For experienced profiles (Senior/Architect): several years of end‑to‑end experience in designing and implementing an IGA suite (Microsoft Entra ID Governance, One Identity, SailPoint, Omada).