02 oct
|
Genpact
|
Guadalajara
02 oct
Genpact
Guadalajara
Role Overview The Security IAM Engineer owns all identity and access management activity across THE CLIENT, covering application access provisioning and review, support for third-party risk management (TPRM) audits, and technical support to HR-related investigations. The role sits at the intersection of identity operations, compliance and sensitive internal casework.
One position is being established in Mexico.
Key Responsibilities
- Handling all IAM activities across the environment.
- Managing activities related to application access.
- Supporting TPRM (third-party risk management) audits.
- Supporting HR-related investigations.
Required Skills & Experience †
- 5–8 years of experience in identity and access management engineering or operations.
- Strong hands-on Microsoft Entra ID experience: conditional access, MFA, SSO and application registration, privileged identity management, and access reviews.
- Strong Active Directory experience: group and OU design, delegation, group policy, and privileged account management.
- Demonstrated experience running joiner / mover / leaver processes and application access provisioning at scale.
- Experience designing and executing periodic user access reviews and certification campaigns.
- Practical GRC experience, including producing evidence for audits and supporting third-party risk assessments.
- Experience supporting sensitive internal investigations — for example HR or legal matters requiring access history, mailbox or file access forensics — with appropriate discretion and chain-of-custody awareness.
- Understanding of role-based access control (RBAC) and least privilege principles, and the ability to apply them pragmatically in a mixed legacy estate.
- Scripting capability, particularly PowerShell and the Microsoft Graph API, for bulk identity operations and reporting.
- Continuously improve access certification programs across enterprise applications, infrastructure platforms, privileged accounts, service accounts, and third-party access to ensure compliance with least-privilege, audit, and security requirements.
- Manage access review and certification activities across applications, infrastructure, privileged accounts, service accounts, and third-party access.
- Professional working proficiency in English and Spanish.
Preferred Qualifications †
- Experience with multi-tenant or multi-forest identity environments, and with tenant consolidation.
- Exposure to identity governance and administration (IGA) tooling and automated access certification.
- Familiarity with SOX or similar regulatory access control requirements.
- Experience with eDiscovery and Microsoft Purview for investigation support.
- Experience in a manufacturing or food production environment, including managing identity for a largely non-desk workforce.
Education & Certifications †
- Bachelor's degree in Computer Science, Information Security, Information Technology or a related discipline.
- Microsoft Certified: Identity and Access Administrator Associate (SC-300) (strongly desirable).
- CISSP, CIMP or equivalent (desirable).
📌 IAM Engineer (Guadalajara)
🏢 Genpact
📍 Guadalajara