IAM Engineer - Identity Governance

Sandoz
Municipality of Madrid, Spain
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate

Job location

Municipality of Madrid, Spain

Tech stack

Application Integration Architecture
Cloud Computing Security
Configuration Management
Data Mapping
Software Debugging
Identity and Access Management
JSON
Role-Based Access Control
SAP Applications
Data Streaming
Information Technology
Api Design
SailPoint
REST
Data Inconsistencies
GXP

Job description

Sandoz is a global market leader in Biosimilar and Generics medicine, a market leader in a sector is helped pioneer. Our Vision is to be the world's leading and most valued generic and biosimilar medicine company. We are pursuing access to medicine goals in two areas:

  • ensuring responsible access to critical antibiotics which is seen as the backbone of modern medicine, and

  • democratizing access to biologic therapies through healthy competition As a Senior Sailpoint ISC Engineer you will support the evolution of our Identity & Access Management governance platform with a strong focus on implementation, integration and continuous improvement of Sailpoint ISC capabilities in a complex and regulated environment. This role will focus primarily on application integrations, complex troubleshooting and end-to-end implementation of IAM processes, including lifecycle management, least privilege access, role modeling, solution design and connector deployment. Your responsibilities will include:

  • Execute end-to-end onboarding of applications into Sailpoint ISC, including attribute mapping, entitlement modeling and connector configuration (OOTB and custom) and API-based integrations (SAP integration experience is desirable)

  • Troubleshoot and resolve complex issues related to identity data, provisioning failures and connector performance.

  • Ensure data consistency and quality across identity sources, including troubleshooting data inconsistencies and reconciliation issues.

  • Implement and support identity lifecycle processes (Joiner, Mover, Leaver), ensuring correct automation, data mapping and alignment with downstream provisioning and access processes.

  • Configure, maintain, and enhance Sailpoint ISC components: sources, entitlements, roles, access profiles, lifecycles, UAR, rule-based policies, including identity profiles, transforms, workflows and provisioning policies.

  • Implement and maintain access controls based on the principle of least privilege, including policy configuration (SoD, birthright access, dynamic access where applicable).

  • Support testing activities (unit, integration and UAT) ensuring quality of deployments.

  • Coordinate with internal teams and external vendors to ensure high-quality delivery for integration and troubleshooting activities.

  • Review technical changes within the IAM domain and propose operational improvements within Sailpoint ISC configurations and integrations.

  • Contribute to the definition and maintenance of role models and access policies, including implementation of RBAC roles and support to role mining activities.

  • Collaborate with security, compliance and business teams to ensure alignment with regulatory requirements (GxP, GDPR…).

  • Own and maintain technical documentation related to design changes, configurations, integrations ensuring documentation is accurate and aligned with implementation. What You Need To Bring To The Role

Requirements

  • University degree or equivalent experience in computer science, engineering or information technology or other relevant field
  • Certifications in Sailpoint ISC Engineer / Professional or equivalent hands-on experience
  • Minimum 5-7 years of experience in IAM projects, preferably in the pharmaceutical or other highly regulated industries.
  • Minimum 3-5 years of hands-on experience with Sailpoint Identity Security Cloud (ISC), including identity profiles, workflows, transforms, provisioning and access certifications.
  • Strong understanding of the end-to-end IAM processes, including identity lifecycle, role modeling, provisioning, user access review and data reconciliation challenges.
  • Experience working with complex, non-standard integrations and identity data flows.
  • Hands-on experience with API-based integrations including REST APIs and JSON-based integrations (SAP integration experience is a plus).
  • Strong analytical skills with ability to debug complex identity and provisioning issues across multiple systems.
  • Ability to translate business requirements into effective IAM solutions and propose technical improvements when needed.
  • Strong problem-solving skills and excellent communication abilities with ability to work in cross-functional teams.
  • Fluent in written and spoken English

About the company

Why Sandoz? Generic and Biosimilar medicines are the backbone of the global medicines industry. Sandoz, a leader in this sector, provided more than 900 million patient treatments across 100+ countries in 2024 and while we are proud of this achievement, we have an ambition to do more! With investments in new development capabilities, production sites, new acquisitions, and partnerships, we have the opportunity to shape the future of Sandoz and help more patients gain access to low-cost, high-quality medicines, sustainably. Join us! Commitment To Diversity & Inclusion We are committed to building an outstanding, inclusive work environment and diverse teams representative of the patients and communities we serve. Hiring decisions are only based on the qualification for the position, regardless of gender, ethnicity, religion, sexual orientation, age and disability. #Sandoz Skills Desired Communication Skills, Cyber-Security Regulation, Cyber Threat Hunting, Cyber Threat Intelligence (Cti), Cyber Threat Management, Cyber Vulnerabilities, Decision Making Skills, Influencing Skills, Information Security Risk ManagementInscribirse en esta oferta Recibir ofertas similares por correo electrónico Al crear una alerta, aceptas nuestros Términos y condiciones y Política de privacidad, y el uso de cookies., Roche Madrid Osiris Volver a la última búsqueda Trabajos ) Senior IAM Engineer - Identity Governance ( volver a la última búsqueda Recibir ofertas similares por correo electrónico No gracias, llévame a la oferta de empleo Al crear una alerta, aceptas nuestros Términos y condiciones y Política de privacidad, y el uso de cookies. Inscribirse en esta oferta Profesiones + Técnico + Recepciónista + Administrador + Ventas + Enfermero

Apply for this position