> Markdown version of [/jobs/ext/1687510-web-access-management-engineer-rdt-identity-access-management](https://www.wearedevelopers.com/jobs/ext/1687510-web-access-management-engineer-rdt-identity-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Web Access Management Engineer - Rdt Identity & Access Management - **Company:** Roche - **Location:** Madrid, Spain - **Contract:** Permanent contract - **Skills:** Configuration Management, Cyber Security, Web Development, Web Servers, Identity and Access Management, OAuth, OpenID, Ping (Networking Utility), Openid Connect, Azure Active Directory, Security Assertion Markup Language (SAML), Web Application Security, Session Management, Software Engineering, User Provisioning Software, Okta, Information Technology, Web Technologies, Api Gateway, Software Version Control - **Published:** July 31, 2026 - **Apply:** https://www.buscojobs.com.es/web-access-management-engineer-rdt-identity-access-management-en-madrid-ID-364208386 ## About the Role * 1-2 years in IT Helpdesk, Systems Admin, junior Web Development, or junior SOC role * Bachelor's Degree in Computer Science, Software Engineering, Cyber Security, or equivalent practical experience * Working knowledge of IAM domain and web technologies * Understanding of IdP based authentication and basic security concepts ## Description Experteer Overview Join Roche's IAM team to help secure web access across our applications.In this role you will support SSO, MFA, and identity federation workflows while learning to automate access tasks.You will collaborate with engineers to ensure smooth authentication across environments and contribute to scalable security practices.This is an opportunity to grow in a mission-driven company that values open dialogue and personal growth.You will work with cross-functional teams to strengthen trusted access at scale.Compensaciones / Beneficios* Support day-to-day administration of IAM and Web Access Control platforms (Okta, Microsoft Entra ID, Ping Identity, Auth0) including basic policy management and troubleshooting* Assist in integrating applications with central IdPs using SAML, OAuth 2.0, and OpenID Connect (OIDC)* Support deployment and validation of MFA mechanisms (TOTP, security keys, passwordless)* Participate in automating routine access management tasks, user provisioning policies (JIT, SCIM), and configuration management using scripting* Collaborate with senior engineers to troubleshoot session management, token validation (JWT), and secure communications across web servers and API gateways* Collaborate to automate access configuration and user lifecycle tasks using scripting and version control* Maintain internal wikis, SOPs, and runbooks for integrations and access lifecycles* Route and validate authentication tokens, access policies, and gateways across staging and production environments* Identify and propose minor process improvements to reduce manual provisioning frictionResponsabilidades* 1-2 years in IT Helpdesk, Systems Admin, junior Web Development, or junior SOC role* Bachelor's Degree in Computer Science, Software Engineering, Cyber Security, or equivalent practical experience* Working knowledge of IAM domain and web technologies* Understanding of IdP based authentication and basic security conceptsRequisitos principales* ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Secure and Accessible Login Systems - Ramona Schwering](https://www.wearedevelopers.com/videos/1847-secure-and-accessible-login-systems-ramona-schwering) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Mastering Remote Work: Tips for Developers](https://www.wearedevelopers.com/magazine/558-mastering-remote-work-tips-for-developers)