You design and implement identity governance processes (JML, birthright access, recertifications, request/approval workflows) in Microsoft Entra ID Governance
Model identities, roles (RBAC/ABAC) and policies; integrate HR systems (e.g., SAP/Workday) and target systems via SCIM/REST/AD/Entra, including connector design
Implement campaigns, SoD rules, delegation and recertification processes; automate controls
Integrate with PIM, logging/monitoring and regulatory requirements (e.g., ISO 27001, SOX, NIS2/DORA — customer-specific)
Run workshops, create guidelines and operations concepts; provide technical leadership for workstreams, mentor team members and ensure quality assurance (concept/design reviews)
Requirements
Enthusiasm for identity & access topics
A structured approach to work and eagerness to learn
Basic knowledge of Microsoft Entra ID, AD DS and common authentication/authorization protocols (LDAP, Kerberos, OAuth 2.0, OIDC, SAML)
Initial practical experience in IGA or IAM (e.g., access reviews, entitlement requests, provisioning) — from study, internships or 1–2 years of professional experience for junior profiles
Basic skills in PowerShell/SQL or REST/SCIM APIs and an understanding of JML processes
Several years of end-to-end experience in designing and implementing an IGA suite (Microsoft Entra ID Governance, One Identity, SailPoint, Omada) for experienced profiles (Senior/Architect)