Director, IT Security, Identity & Access Management, Global

Olympus
Hamburg, Germany
10 days ago
Apply on www.xing.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Shift work
Job source

Tech stack

Application Programming Interfaces (APIs) Cyber Security Information Systems Identity and Access Management Systems Development Life Cycle Role-Based Access Control Zero Trust Network Access Systems Integration Okta Cyberark Information Technology Performance Monitor
+1 more
SailPoint

Job description

This role is responsible for defining and executing the IAM strategy in partnership with the Head of IT Security, overseeing internal teams and managed service providers, and ensuring the effective delivery of IAM services. The position provides leadership across authentication, authorization, identity governance, privileged access, and access certification, while driving the adoption of modern IAM technologies and Zero Trust principles. As the global IAM service owner, the role leads the design, implementation, operation, and continuous improvement of enterprise IAM solutions, partnering with security, architecture, engineering, development, and business teams to deliver scalable and compliant capabilities that support evolving business and regulatory requirements. The position also provides oversight for IAM governance, architecture, service providers, compliance, vendor management, policies and standards, budget management, and performance reporting. In addition, the role maintains strong relationships with global and regional business stakeholders to align IAM priorities, address regional requirements, and support the successful execution of global initiatives.

Deine Aufgaben

    • Ownership and continuous development of the global Identity and Access Management (IAM) strategy, architecture, and roadmap, ensuring alignment with business objectives, regulatory requirements, industry standards, and Zero Trust principles across cloud, on-premises, and hybrid environments.
    • Governance and oversight of IAM operations delivered in partnership with managed service providers, including SLA adherence, escalation management, issue resolution, and operational continuity.
    • Evaluation, governance, and continuous improvement of IAM services across the full identity lifecycle for both human and non-human identities, including service accounts, API keys, machine identities, and automation agents.
    • Ownership and administration of the global Identity Governance and Administration (IGA) platform, driving security enhancements, process optimization, and improved user experience.
    • Representation of IAM interests across global security, privacy, and business planning activities through ongoing collaboration with internal stakeholders, regional CIO organizations, and external service partners.
    • Review, design, and governance of IAM solutions, controls, integrations, and technologies to ensure compliance with enterprise security standards and Zero Trust architecture requirements.
    • Leadership and delivery of IAM programs, projects, and transformation initiatives in collaboration with architecture, engineering, development, and business teams.
    • Provision of expert guidance on authentication, authorization, identity governance, Zero Trust, and least-privilege principles to technical and business stakeholders.
    • Oversight of IAM compliance, controls, policies, and practices to ensure adherence to applicable regulatory, audit, and data privacy requirements, including support for internal and external assessments.
    • Definition, monitoring, and reporting of IAM performance indicators and risk metrics, including access governance effectiveness, provisioning performance, and identity-related risk exposure, with recommendations for risk mitigation.
    • Support of security incident response activities involving IAM systems and controls, including investigation, containment, remediation, and integration of IAM capabilities into business continuity and disaster recovery planning.
    • Leadership, coaching, development, and performance management of IAM team members to ensure a high-performing and future-ready organization.

Requirements

    • Bachelor’s degree in Information Technology, Information Systems, Business, Technology, or a related discipline; Master’s degree or equivalent combination of advanced education and relevant professional experience preferred.
    • Professional security certification such as CISM, CISSP, CISA, CRISC, CCSK, Certified CISO, PMP, or a comparable industry-recognized credential.
    • Leadership and/or management experience within information security, identity and access management, or related technology functions.
    • 15 years of experience in identity and access governance, including role-based access control, access request management, access reviews, and access certification processes.
    • Extensive experience managing projects throughout the full system development lifecycle from planning and design through implementation and operational support.
    • Proven experience in the development, implementation, and architecture of enterprise information systems and security solutions.
    • Strong technical architecture expertise in integrating identity management, access management, and identity governance solutions within complex enterprise environments.
    • Hands-on experience with the installation, integration, deployment, and operational management of IAM technologies such as SailPoint, CyberArk, ForgeRock, BeyondTrust, Okta, or comparable platforms.
    • Recognized subject matter expertise in identity and access management with a demonstrated ability to influence technology, security, and business practices across internal and external stakeholder groups.
    • Demonstrated consulting and advisory experience related to IT security strategy, governance, organizational change management, communication, and performance measurement frameworks.
    • Proven ability to lead organizational change and foster a culture of security-focused thinking, innovation, continuous improvement, and operational excellence.

Benefits & conditions

  • Deliver Results
  • Lead People
  • Lead Self
  • Model and champion Our Core Values

Deine Vorteile

  • Flexible working hours, remote work possible (up to 40%)
  • 30 days of holidays per year
  • Modern office and an inspiring working environment
  • Employee restaurant with live cooking and healthy food (subsidized)
  • Public transport ticket (100 % subsidized) or free parking space
  • Company sport groups and an inhouse company gym
  • Employee Assistance Program to support your health, mental and emotional well-being
  • A comprehensive company pension scheme
  • Company medical officer and vaccination offers
  • Childcare through our ‘Buttje&Deern’ partner
  • Company car, also for private use (for field staff only)
  • Bike leasing Jetzt bewerben

  • Teilen:
  • Twitter
  • Xing

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.xing.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · World Congress 2023

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

2:08 min

Managing complex structures and corporate guidelines

Alexandra Petri · World Congress 2023

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

2:20 min

Addressing security risks with central single sign-on setups

Gift Egwuenu · World Congress 2023

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

Videos

See all

Related articles

See all