
Identity & Access Management (IAM/PAM) Specialist
At a Glance
- Category
- 💻 Technology
- Level
- Mid-Level
- Type
- Full-time
Spot the Problem
- Find what's costing you interviews at CCDS
- Get AI-rewritten bullet points
- Download Gulf-ready CV
60 seconds. $5.88 one-time.
Location: On-site – Riyadh, Saudi Arabia
Contract/engagement: Project-based managed cybersecurity services (13-month RFP term)
Minimum experience: 6+ years
Role Purpose
Operate and govern enterprise identity, access, authentication, IGA, and privileged-access services across the entity's environment.
Key Responsibilities
- Manage joiner, mover, and leaver identity lifecycle processes and automated account provisioning across connected systems.
- Review access requests, approvals, role assignments, segregation-of-duties conflicts, and least-privilege controls.
- Operate SSO and MFA services and investigate failed, suspicious, or anomalous authentication activity.
- Monitor identity synchronization, resolve provisioning failures, and maintain identity-data consistency.
- Run access-certification campaigns, coordinate with business owners, and escalate overdue reviews.
- Identify and remediate inactive, orphaned, excessive, or high-risk accounts and entitlements.
- Govern privileged access requests, session monitoring, recordings, shared accounts, and just-in-time access.
- Support audits, compliance evidence, IAM/PAM incident investigation, remediation tracking, and periodic operational reporting.
Technical and Professional Requirements
- Bachelor’s degree in Computer Science, Information Security, or a related field.
- At least 6 years of experience in IAM governance, engineering, or operations.
- Hands-on experience with enterprise IAM, IGA, and PAM platforms.
- Strong understanding of identity lifecycle, access-control models, SSO, MFA, RBAC, least privilege, and segregation of duties.
- Experience integrating IAM solutions with enterprise applications and applying Zero Trust and modern authentication principles.
- Knowledge of Saudi regulatory requirements and international identity-security practices.
Personal Requirements
- Strong stakeholder coordination and service ownership.
- Careful, systematic, and able to handle sensitive access data responsibly.
- Strong troubleshooting, reporting, and documentation skills.
- Able to balance operational responsiveness with strict governance controls.
Professional Certifications
Preferred: CIAM, CISSP, Microsoft Identity certification, or equivalent IAM-related certification.
Application Note
Candidates should clearly state their nationality, years of relevant experience, current location, notice period, and valid professional certifications in their application. Shortlisted candidates may be asked to provide supporting documents and participate in technical interviews.
Requirements
- •Bachelor’s degree in Computer Science, Information Security, or a related field
- •At least 6 years of experience in IAM governance, engineering, or operations
- •Hands-on experience with enterprise IAM, IGA, and PAM platforms
- •Strong understanding of identity lifecycle, access-control models, SSO, MFA, RBAC, least privilege, and segregation of duties
- •Experience integrating IAM solutions with enterprise applications
- •Knowledge of Saudi regulatory requirements and international identity-security practices
- •Strong stakeholder coordination and service ownership
- •Strong troubleshooting, reporting, and documentation skills
Nice to Have
- •CIAM certification
- •CISSP certification
- •Microsoft Identity certification
- •Equivalent IAM-related certification
Responsibilities
- •Manage joiner, mover, and leaver identity lifecycle processes and automated account provisioning
- •Review access requests, approvals, role assignments, segregation-of-duties conflicts, and least-privilege controls
- •Operate SSO and MFA services and investigate failed, suspicious, or anomalous authentication activity
- •Monitor identity synchronization, resolve provisioning failures, and maintain identity-data consistency
- •Run access-certification campaigns and coordinate with business owners
- •Identify and remediate inactive, orphaned, excessive, or high-risk accounts and entitlements
- •Govern privileged access requests, session monitoring, recordings, shared accounts, and just-in-time access
- •Support audits, compliance evidence, IAM/PAM incident investigation, and periodic operational reporting
Related Jobs4 similar jobs
Browse Similar
- Find what's costing you interviews at CCDS
- Get AI-rewritten bullet points
- Download Gulf-ready CV
60 seconds. $5.88 one-time.
