Design and implementation of identity governance processes (JML, birthright access, recertifications, request/approval workflows) in Microsoft Entra ID Governance
Lifecycle & Provisioning: modeling identities, roles (RBAC/ABAC) and policies; integration of HR systems (e.g., SAP/Workday) and target systems via SCIM/REST/AD/Entra
Access Reviews & Entitlement Management: implementing campaigns, SoD rules, delegation and recertification processes; automation of controls
Privileged Access & Compliance: integration with PIM, logging/monitoring as well as regulatory requirements (e.g., ISO 27001, SOX, NIS2/DORA — client-specific)
Adoption & Enablement: workshops, guidelines, operational concepts; depending on seniority, technical leadership of workstreams, mentoring and quality assurance (concept/design reviews)
Requirements
Enthusiasm for identity & access topics
Structured working style and willingness to learn
Basic knowledge of Microsoft Entra ID, AD DS and common auth/authz protocols (LDAP, Kerberos, OAuth 2.0, OIDC, SAML)
Initial practical experience in IGA or IAM (e.g., access reviews, access requests, provisioning) — from studies, internships, or 1–2 years of professional experience (for junior profiles)
Basic skills in PowerShell/SQL or REST/SCIM APIs as well as an understanding of JML processes
Several years of end-to-end experience in designing & implementing an IGA suite (Microsoft Entra ID Governance, One Identity, SailPoint, Omada) including data/role modeling, SoD, access reviews, lifecycle workflows (for experienced profiles)