Solenis

Security - IAM Engineer | Lapa/SP

São PauloFull timePosted 4 days ago
Apply on Solenis →

Sign in to see who you know at Solenis.

Position: Security - IAM Engineer Work Model: Hybrid Location: Lapa/SPWhat you will do day to day:Security - IAM Engineer with an emphasis in Pathlock/Sailpoint/MIM,Azure Active Directory, Active Directory, Powershell, Intune MDM. The Engineer will provide Level 2 support for identity issues as well as other initiatives to improve our authentication/authorization security. This individual manages, maintains, supports, troubleshoots, and optimizes the identity and access management environment.Roles and Responsibilities: Administer and support Identity and Access Management (IAM) platforms including Pathlock, SailPoint, Microsoft Identity Manager (MIM), Microsoft Entra ID (Azure AD Enterprise Applications, App Registrations, and MFA), and Active Directory.Manage and secure user identities and access across cloud and hybrid environments by implementing IAM best practices, governance controls, and security policies.Perform daily IAM operations, including user provisioning, deprovisioning, role modifications, and access management across multiple enterprise platforms.Conduct privileged access reviews and user access certification activities to support internal audit, compliance, and regulatory requirements.Enhance identity governance, monitoring, security controls, and compliance posture within Microsoft Entra ID (Azure AD).Administer, troubleshoot, and support Microsoft Azure Multi-Factor Authentication (MFA) solutions to strengthen enterprise security.Develop and utilize advanced PowerShell scripts and automation solutions for Microsoft 365, Microsoft Entra ID, and on-premises Active Directory administration.Configure, manage, and support Mobile Device Management (MDM) enrollment and device compliance activities.Administer on-premises Active Directory environments, including management of users, groups, organizational units (OUs), and access controls.Perform Privileged Access Management (PAM) operations, including secret onboarding, account lockout investigations, password rotation validation, and issue resolution within CyberArk, Delinea, and related platforms.Execute daily health checks, monitoring, and operational support for IAM and associated infrastructure systems to ensure availability, security, compliance, and operational stability.Who we are looking for:Minimum Qualification:A bachelor's degree in Computer Science, Information Security, Information Technology, Engineering, or a related field is highly desirable.3+ years of hands-on experience with identity and access management (IAM) solutions such as MIM/FIM, Pathlock, SailPoint, or Saviynt, along with Microsoft Entra ID (Azure AD), Active Directory, Microsoft Intune MDM, PowerShell, Single Sign-On (SSO), and SQL queries.Strong experience with at least one Identity Governance and Administration (IGA) tool is required. Proven expertise in Microsoft Entra ID (Azure AD), PowerShell scripting, Azure AD Connect, Azure AD Enterprise Applications, and Active Directory user and group man...