CrawlJobs Logo

Specialist IS Security Engineer – Identity Management

amgen.com Logo

Amgen

Location Icon

Location:
Portugal , Lisbon

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Join our team at AMGEN Capability Center Portugal, the #1 company in Best Workplaces™ (201–500 employees' category) in Portugal in 2024 by the Great Place to Work Institute. With over 500 talented individuals from more than 40 nationalities, our Lisbon center thrives at the intersection of innovation, excellence, and inspiration. This is your opportunity to explore the future of healthcare through technology and digital innovation, supporting our mission To Serve. At AMGEN, Technology isn’t just a support function—it’s a catalyst for discovery, transformation, and real-world impact. Here, your ideas fuel innovation that improves and saves lives of patients in dire need of our medicines.

Job Responsibility:

  • Design, implement, administer, and maintain security controls for Amgen’s identity and access management ecosystem, including provisioning, authentication, and authorization systems
  • Engineer and support secure identity provisioning solutions aligned with IAM and RBAC frameworks across on-premises and cloud environments
  • Serve as a security engineering lead for IdM and access-related initiatives, ensuring solutions meet security architecture standards, governance requirements, and regulatory expectations
  • Conduct security reviews, threat modeling, and risk assessments for identity-related systems and integrations
  • Partner with project and application teams to embed security best practices into system designs, configurations, and deployments
  • Monitor security, operational, and performance metrics for managed systems
  • develop KPIs to track security posture, availability, and growth trends
  • Support incident response activities related to identity, access, and authentication issues, including investigation, containment, remediation, and documentation
  • Develop and maintain security documentation, including system security designs, operational procedures, incident response playbooks, and access control policies
  • Evaluate emerging security tools, technologies, and industry trends to continuously improve identity and access security capabilities
  • Ensure compliance with internal security standards, industry frameworks, and regulatory requirements (e.g., NIST, ISO 27001, GDPR, HIPAA)

Requirements:

  • Master’s degree and 4 years of Information Systems or Information Security experience
  • Bachelor’s degree and 6 years of Information Systems or Information Security experience
  • Associate’s degree and 8 years of Information Systems or Information Security experience
  • Strong experience with identity and access management (IAM) and identity security solutions
  • Hands-on experience integrating SailPoint with enterprise applications (on-prem and cloud)
  • Solid understanding of identity governance concepts, including RBAC, access certifications, least privilege, and user lifecycle management
  • Proficiency with identity platforms such as SailPoint, Okta, Azure AD / Entra ID
  • Knowledge of authentication and provisioning protocols (SCIM, SAML, OAuth, OpenID Connect)
  • Experience working with APIs and secure integration patterns
  • Strong understanding of directory services (LDAP, Active Directory)
  • Familiarity with security frameworks and compliance requirements (NIST, ISO 27001, GDPR, HIPAA)
  • Ability to perform security risk assessments, vulnerability analysis, and remediation planning
  • Strong analytical, problem-solving, and troubleshooting skills

Nice to have:

  • Scripting and automation skills (PowerShell, Python)
  • Experience in broader Information Security domains (e.g., security engineering, IAM security, cloud security)
  • Experience working in Agile delivery environments
  • Exposure to security monitoring, logging, and alerting concepts
  • Cloud certifications (Microsoft Azure, AWS, or GCP)
  • Identity, Access Management, or Information Security certifications
  • SailPoint certification
What we offer:
  • Work That Matters – Build tech that accelerates scientific breakthroughs and helps patients worldwide
  • Modern Tech Stack – Cloud-first, automation-focused, AI-powered
  • Global Scale, Agile Mindset – Collaborate across continents while working in nimble, high-impact teams
  • Continuous Learning – Access to certifications, trainings, mentorship, and career mobility
  • AMGEN Total Rewards Plan – Comprehensive benefits in healthcare, finance, and well-being
  • Flexibility – Hybrid work model with time split between our Lisbon office and remote work

Additional Information:

Job Posted:
January 15, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Specialist IS Security Engineer – Identity Management

Head of cyber threat exposure and attack surface management

Lead the enterprise-wide Continuous Threat Exposure Management (CTEM) strategy, ...
Location
Location
United Kingdom , Knutsford
Salary
Salary:
Not provided
barclays.co.uk Logo
Barclays
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in cybersecurity with direct exposure to vulnerability management, red teaming, or threat exposure reduction
  • Proven track record leading programs integrating CSPM, SSPM, ASM, BAS, or exposure correlation technologies
  • Strong understanding of attack paths, adversary emulation, and continuous validation concepts
Job Responsibility
Job Responsibility
  • Own and drive the global CTEM strategy, establishing a continuous, threat-driven exposure management lifecycle aligned with NIST, MITRE, and CISA Secure-by-Design principles
  • Lead and develop a high-performing CTEM team, fostering collaboration, technical excellence, and an outcome-driven culture
  • Integrate and oversee key exposure management technologies, including Cloud Security Posture Management (CSPM), SaaS Security Posture Management (SSPM), Attack Surface Management (ASM), Breach & Attack Simulation (BAS), and other exposure correlation platforms
  • Correlate assets, identity, vulnerability, and configuration to identify high-impact, exploitable attack paths and inform prioritized remediation strategies
  • Collaborate with Application Security, Vulnerability Management, Red Team, and Security Operations to synchronize discovery, validation, and remediation of exposures across the enterprise
  • Align CTEM outputs with real-world adversary behaviors, leveraging Red Team and Threat Intelligence input to validate attack paths and focus on exploitable conditions
  • Drive automation and AI-enabled analytics to continuously map, assess, and measure reductions in the organization’s attack surface
  • Translate technical findings into business risk language, enabling senior leadership and risk committees to make data-driven investment decisions
  • Define and lead CTEM governance and operating models, ensuring exposure assessments, validation, and remediation tracking are embedded in operational processes
  • Establish clear KRIs and maturity metrics that demonstrate continuous improvement in visibility, validation, and response effectiveness
What we offer
What we offer
  • Competitive holiday allowance
  • Life assurance
  • Private medical care
  • Pension contribution
  • Fulltime
Read More
Arrow Right

Project Manager, Google Cloud Professional Services

As a Project Manager at Premier Cloud, you will lead the successful delivery of ...
Location
Location
United States; Canada
Salary
Salary:
Not provided
premiercloud.com Logo
Premier Cloud
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of project management experience with at least 2 years focused on cloud technology projects
  • Demonstrated success managing complex projects on-time and on budget with teams of 5–10+ members
  • Proven ability to manage multiple concurrent projects with varying complexity and stakeholder needs
  • Experience with Agile/Scrum methodologies and iterative delivery approaches
  • Strong track record of building client relationships and achieving 85%+ satisfaction scores
  • Google Cloud Associate Cloud Engineer certification is preferred (or Professional Cloud Architect/Developer/DevOps Engineer)
  • If not currently certified: commitment to achieve Associate Cloud Engineer within 3 months and Professional Cloud Architect within 12 months of hire
  • Hands-on familiarity with core GCP services: Compute Engine, GKE, Cloud Run, BigQuery, Cloud Storage, Cloud SQL, Pub/Sub, and Cloud Functions
  • Understanding of cloud migration methodologies (lift-and-shift, re-platform, re-architect) and infrastructure modernization patterns
  • Solid understanding of cloud architecture concepts including networking, security, identity management, and infrastructure-as-code
Job Responsibility
Job Responsibility
  • Lead End-to-End Google Cloud Implementations
  • Manage 3–6+ concurrent Google Cloud projects at different stages spanning migrations, infrastructure modernization, data analytics platforms, and AI/ML implementations
  • Own project planning, scope management, resource allocation, budget tracking, and timeline execution
  • Coordinate cross-functional teams including cloud architects, DevOps engineers, data engineers, security specialists, and client stakeholders
  • Drive projects using Agile methodologies with 2-week sprints, daily standups, and iterative delivery milestones
  • Serve as Trusted Client Advisor
  • Act as primary point of contact for client executives, IT leadership, and project stakeholders
  • Guide clients through complex cloud transformation decisions, balancing technical possibilities with business constraints
  • Provide weekly status updates, executive summaries, and transparent risk/mitigation reporting
  • Build relationships that extend beyond project completion, achieving 75%+ reference willingness and identifying expansion opportunities
What we offer
What we offer
  • Competitive Compensation: A package that reflects your experience and impact
  • Growth & Development: Continuous training, certifications, and opportunities to work on cutting-edge Google Cloud projects
  • Collaboration with Google: Work directly with Google teams on transformative client initiatives
  • Comprehensive Benefits: Including health coverage, paid time off, and relocation assistance (if applicable)
  • Fulltime
Read More
Arrow Right

Senior Security Architect

Rackspace Technology is looking for a Senior Security Architect to support 'Clou...
Location
Location
Egypt
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven track record in security consulting
  • Experience designing and securing Landing Zones (LZs) in cloud environments
  • Experience designing secure platforms on major hyperscalers (AWS, Azure, or GCP - GCP preferred)
  • Demonstrable experience designing secure cloud-native systems
  • Demonstrable experience in relevant legislation, industry regulations and standards (ISR, EU GDPR, HIPAA, ISO27001, ISO 22301, ISO/IEC 20000-1, ISO 22301, NCEMA, NIST CSF, PCI DSS, Cloud Security Alliance CCM, CIS, OWASP, Cyber Essentials)
  • In-depth knowledge of Well-architected frameworks and best practices of major cloud providers
  • Ability to lead engagements and take ownership for successful delivery
  • Specialist cloud security architectural knowledge in: Account governance, Identity and Access Management (IAM), Asset management and data protection, Infrastructure and platform security, Application security including threat modelling and secure CI/CD, Change management practice and detection capabilities, Boundary defence, Cloud Logging and Monitoring, Continues vulnerability and patch management systems, Incident response and threat mitigation, Cloud backup/recovery and disaster recovery (DR)
  • Client-facing consultancy experience within large enterprises
  • Ability to identify and plan to resolve technical and organizational challenges
Job Responsibility
Job Responsibility
  • Advise and guide customers on cloud security journey as Subject Matter Expert (SME)
  • Engage with customers to assess cloud security posture
  • Ensure subsequent cloud design and build is appropriately secured
  • Provide guidance on cloud security roadmap
  • Assist on defining right-size cloud security controls
  • Liaise with customer's architects and engineers
  • Advise, design and deliver innovative cloud security Proof of Concepts
  • Evolve existing Rackspace security services
  • Implement new services under 'Cloud Security Service' banner
  • Establish best-practices for consultancy
  • Fulltime
Read More
Arrow Right

Conditional Access & Identity Protection Operations Specialist

We are seeking a skilled Conditional Access & Identity Protection Operations Spe...
Location
Location
India , Bangalore
Salary
Salary:
Not provided
vodafone.com Logo
Vodafone
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Security, or a related field
  • 5–6 years of experience in cybersecurity operations, preferably in identity and access management
  • Hands-on experience with Microsoft security stack: Azure AD, Conditional Access, MDCA, MDI, and Defender for Identity
  • Familiarity with SIEM tools and integration workflows (e.g., ArcSight, Sentinel, GoogleSecOps)
  • Strong understanding of authentication protocols, MFA, and passwordless strategies
  • Knowledge of governance, compliance frameworks, and risk mitigation strategies
  • Strong analytical and troubleshooting skills with effective communication and stakeholder management
Job Responsibility
Job Responsibility
  • Operate and maintain Conditional Access policies, Microsoft Defender for Cloud Apps (MDCA), Azure AD Identity Protection (AAIP), and Microsoft Defender for Identity (MDI)
  • Monitor and respond to identity-related security incidents, including risky sign-ins, MFA challenges, and session control triggers
  • Manage BAU operations: ticket handling, SLA adherence, change requests, and incident escalations
  • Collaborate with engineering teams to onboard new policies, integrate with SIEM tools, and support security automation
  • Participate in governance reviews, compliance audits, and risk assessments
  • Contribute to continuous improvement initiatives, including cross-skilling and upskilling within the CAIP domain
  • Drive problem-solving and innovation in operational challenges while ensuring effective collaboration and knowledge sharing
What we offer
What we offer
  • Opportunity to work on cutting-edge Microsoft Cloud Security technologies
  • Exposure to global security operations and compliance frameworks
  • Collaborative work environment with continuous learning and development opportunities
  • Be part of a team driving innovation in identity protection and cloud security
Read More
Arrow Right

Senior Account Security Lead

The Account Security team protects Shopify’s platform and merchants from account...
Location
Location
Salary
Salary:
Not provided
shopify.com Logo
Shopify
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Account security, fraud prevention, risk management, or a related field, with a focus on ATO and identity-related threats
  • Leading a large operational team in different time zones, supporting individual growth, providing feedback, identifying areas for efficiency gains, and unlocking additional value
  • Acting as the key operational partner to product, engineering, and data teams
  • Using data to unlock insights into business processes and driving improvements and efficiencies
  • Responding to incidents, conducting retros and, investigations, and collaborating with cross-functional partners, specifically within the security or identity space
  • Working in ecommerce, fintech, or large-scale digital platforms
Job Responsibility
Job Responsibility
  • Build, lead, and develop a high-performing, globally distributed team of account security specialists
  • Own strategy and execution and key metrics for your function, balancing robust security with seamless experience and continuous improvement
  • Ensure swift, accurate verification and restoration of access for merchants, minimizing operational downtime while helping Shopify build the capabilities that enable merchants to self-serve and improve their security hygiene practices
  • Collaborate within the broader team on development of tooling and automation capabilities. Driving the development and continuous improvement of detection and automation to identify and respond to threats in real time
  • Contribute to incident response: triage, investigate, and resolve security incidents, collaborating across security, engineering, data, trust, and product teams
  • Use data in many capacities: Identify opportunities to gain efficiency and automate workflows
  • Identify trends and patterns within the security landscape
  • Sharing insights with engineering and product teams to enable Shopify to manage risk more effectively and grow responsibly
Read More
Arrow Right
New

Cloud Security Architect

We are looking for an experienced Security Architect to support our 'Cloud Secur...
Location
Location
India
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience with AWS/GCP will be highly advantageous
  • Proven track record in designing and delivering innovative technology security solutions built on the cloud
  • Experience of designing secure platforms on the major hyperscalers, AWS, Azure or GCP (GCP preferred)
  • Demonstrable experience in designing secure cloud-native systems and/or rebuilding an existing system on the cloud with a suitable security posture
  • Demonstrable experience in the relevant legislation, industry regulations and industry standards such as ISR, EU GDPR, HIPAA, ISO27001, ISO 22301, ISO/IEC 20000-1, ISO 22301, NCEMA, NIST CSF, PCI DSS, Cloud Security Alliance CCM, CIS, OWASP and Cyber Essentials etc.
  • In-depth knowledge of the Well-architected frameworks and best practices of the major cloud providers
  • Must have the ability to lead engagements, either directly or as part of a larger programme of work and take ownership for the successful delivery of customer value within budget, time and scope
  • Acting as a thought-leader, the right candidate is able to concisely and articulately present to both technical and non-technical audiences
  • You have built specialist and demonstrable cloud security architectural knowledge in the following areas
  • Account governance, Identity and Access Management (IAM), Asset management and data protection, Infrastructure and platform security, Application security including threat modelling and secure CI/CD, Change management practice and detection capabilities, Boundary defence, Cloud Logging and Monitoring, Continues vulnerability and patch management systems, Incident response and threat mitigation, Cloud backup/recovery and disaster recovery (DR)
Job Responsibility
Job Responsibility
  • Engage with customers and the wider Rackspace organization to advise, develop and deliver innovative security solutions leveraging a wide range of public cloud services
  • Help customers to assess their cloud security posture and to ensure any subsequent cloud design and build is appropriately secured
  • Be the Subject Matter Expert (SME) to advise and guide customers on their cloud security journey and establish a long-term trusted advisor role
  • Provide guidance to customers on their cloud security roadmap and assist on defining the right-size cloud security controls
  • Liaise closely with the customer’s architects and engineers and advise, design and deliver innovative cloud security Proof of Concepts
  • Evolve existing Rackspace security services, as well as implement new ones, under the ‘Cloud Security Service’ banner
  • Establish best-practices for the consultancy resulting in standardized engagement models and repeatable ways-of-working
  • Mentor and train other security architects within the wider Rackspace Security Solutions Architecture community on modern multi-cloud security domains and topics
  • Evangelize the security cloud-native paradigm through the delivery of blogs, customer presentations and public speaking engagements
  • Deliver high-quality work to customers as part of consulting engagements that can be delivered through workshops, presentations or security solutions architecture designs
  • Fulltime
Read More
Arrow Right

Identity and Access Management (IAM) Engineer

Looking for a skilled and proactive Identity and Access Management (IAM) Enginee...
Location
Location
India , Gurgaon
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science
  • information technology or a related field
  • Minimum of 5 years of experience in identity and access management or a related field
  • Specialist Knowledge: Entra ID (Azure Active Directory) and AD Connect
  • Active Directory (AD)
  • Operational windows support experience required, managing physical and virtual infrastructure
  • Managing Active directory and DNS applications and underlying infrastructure
  • Supporting and upgrading Microsoft Azure AD connect
  • Managing Entra ID, users, groups, attributes, designing, implementing and regular review of conditional access policies, high risk users, PIM and more
  • Experience of managing ADFS
Job Responsibility
Job Responsibility
  • Supporting and managing multi domain directory services (authentication and authorization)
  • Federation of applications and services
  • Conditional access policies to enforce security policies including Multi-factor authentication and lifecycle management
  • Help modernise the existing whilst helping to maintain high levels of security, compliance standards and best practices
  • Fulltime
Read More
Arrow Right

Security Software Services Specialist

Public Key Infrastructure (PKI) is central to how we protect our organisation, o...
Location
Location
United Kingdom , Bristol
Salary
Salary:
Not provided
plus.net Logo
Plusnet
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands on experience managing enterprise PKI environments, including certificate authorities, HSMs, and associated tooling
  • Familiarity with NIST and ISO frameworks, and awareness of quantum‑safe cryptography guidelines such as those from the EIC
  • The ability to translate complex security topics into clear, actionable guidance for technical and non‑technical stakeholders
  • A proactive approach to problem‑solving, with strong analytical skills and the ability to assess risk in a security‑critical environment
  • An understanding of security‑cleared working environments and the ability to meet the requirements needed to obtain clearance (if not already held)
  • A collaborative mindset, committed to inclusive ways of working and contributing positively to a specialist security community
  • Eligibility for UK Security Clearance at the required level is essential for this role
Job Responsibility
Job Responsibility
  • Designing and maintaining our core PKI services—the digital identity layer that keeps BT secure
  • Making sure we meet key security standards (like NIST and ISO) and preparing for future risks such as quantum‑safe cryptography
  • Managing certificate lifecycles, fixing issues quickly, and improving automation to keep services resilient
  • Giving clear, practical advice to engineers, architects, and security teams
  • Supporting audits and assurance activity to maintain trust in our systems
  • Working in a security‑cleared environment, handling sensitive systems responsibly
  • Helping shape the future of BT’s cryptographic strategy
What we offer
What we offer
  • An annual bonus of up to 10% (company & personal performance dependent)
  • BT Pension scheme
  • minimum 5% employee contribution, BT contribution 10%
  • Life Assurance
  • Exclusive colleague discounts on our latest and greatest BT broadband packages
  • 50% off EE mobile pay monthly or SIM only plans and 50% discount for friends and family on EE SIM only plans
  • BT TV, including TNT Sport and the NOW Entertainment membership, and 25% off NOW Sport, Cinema and Kids
  • Great support for working parents including pay whilst on maternity, adoptive, and paternity leave
  • Option to join the Healthcare Cash Plan or other benefits such as dental insurance, gym memberships etc.
  • 25 days annual leave (not including bank holidays), increasing with service
  • Fulltime
Read More
Arrow Right