إدارة وصيانة أنظمة الهوية وإدارة الوصول (IAM) في المنظمة لضمان وصول آمن وسلس للمستخدمين. تنفيذ ومراقبة حلول إدارة امتياز الوصول (PAM) باستخدام أدوات مثل CyberArk أو Wallix أو BeyondTrust. تطوير وتطبيق سياسات ومعايير وإجراءات IAM، مع الامتثال للمتطلبات التنظيمية وأفضل الممارسات في الصناعة. إجراء مراجعات دورية لحقوق وامتيازات الوصول للمستخدمين للحفاظ على مبادئ الحد الأدنى من الامتياز. تصميم ونشر حلول تلقائية لعمليات IAM، بما في ذلك تهيئة المستخدمين وتفكيكهم والتحكم في الوصول المعتمد على الأدوار (RBAC). تطوير وتنفيذ حلول أتمتة باستخدام Python وBash وPowerShell وأتمتة Excel لتبسيط عمليات IAM. الاستفادة من أدوات أتمتة الواجهة مثل Power Automate لتحسين خطوط سير عمل تسجيل دخول المستخدمين وطلبات الوصول. إجراء تدقيقات وتقييمات منتظمة لتكوينات IAM لتحديد الثغرات وتحسين الوضع الأمني. تحسين وأتمتة إدارة الهوية والوصول لمنصات AWS وAzure وOracle Cloud، لضمان عمليات فعالة وآمنة. دمج حلول IAM مع التطبيقات ومنصات السحابة وأنظمة الطرف الثالث لتعزيز حوكمة الهوية. مراقبة والاستجابة للحوادث المرتبطة بـ IAM، وحل مشكلات الوصول وتنفيذ استراتيجيات الإصلاح. التعاون مع فرق تكنولوجيا المعلومات والأمن السيبراني وأعمال لإعداد متطلبات IAM وضمان محاذاة الأدوار بشكل صحيح. دعم تنفيذ وإدارة المصادقة متعددة العوامل (MFA) وتسجيل الدخول الأحادي (SSO). البقاء على اطلاع باتجاهات IAM والأدوات والتقنيات، وتقديم توصيات للتحسين المستمر. إعداد تقارير تفصيلية عن مقاييس IAM وحالة الامتثال وتقدم المشروع لعرض الإدارة.
الملف المرشح المرغوب فيه
المهارات والتقنيات المطلوبة
أنظمة إدارة الهوية والوصول باستخدام أدوات مثل Okta وSailPoint وPing Identity وMicrosoft Entra.
إدارة الوصول الامتيازي (PAM) باستخدام أدوات مثل CyberArk وWallix وBeyondTrust.
خبرة في خدمات الدليل مع Active Directory وAzure AD وLDAP.
التحكم في الوصول باستخدام أساليب مثل التحكم في الوصول بناءً على الدور (RBAC) والتحكم في الوصول بناءً على السمات (ABAC).
المصادقة والتفويض باستخدام حلول مثل MFA وSSO وبروتوكولات الهوية الموحدة (OAuth وSAML وOpenID Connect).
دمج أمان السحابة لـ IAM مع منصات مثل AWS وAzure وOracle Cloud، بما في ذلك الأتمتة والتحسين.
أتمتة البرمجة: Python وPowerShell وBash وأتمتة Excel.
أتمتة الواجهة: Power Automate لتبسيط خطوط سير العمل وعمليات المستخدمين.
مراقبة IAM والتقارير باستخدام أدوات مثل Splunk أو Microsoft Sentinel لتتبع التدقيق والامتثال.
المؤهلات
درجة البكالوريوس في علوم الكمبيوتر أو تكنولوجيا المعلومات أو الأمن السيبراني أو مجال ذي صلة (يفضل درجة الماجستير).
الخبرة
حد أدنى من 3-5 سنوات خبرة في IAM أو أدوار الأمن السيبراني ذات الصلة.
Manage and maintain the organization s Identity and Access Management (IAM) systems to ensure secure and seamless access for users. Implement and monitor Privilege Access Management (PAM) solutions using tools like CyberArk, Wallix, or BeyondTrust. Develop and enforce IAM policies, standards, and procedures, ensuring compliance with regulatory requirements and industry best practices. Perform periodic reviews of user access rights and privileges to maintain least privilege principles. Design and deploy automated solutions for IAM processes, including user provisioning, deprovisioning, and role-based access control (RBAC). Develop and implement automation solutions using Python, Bash, PowerShell, and Excel Automation to streamline IAM operations. Leverage UI automation tools like Power Automate to enhance user onboarding and access request workflows. Conduct regular audits and assessments of IAM configurations to identify vulnerabilities and improve security posture. Optimize and automate identity and access management for AWS, Azure, and Oracle Cloud platforms, ensuring efficient and secure operations. Integrate IAM solutions with applications, cloud platforms, and third-party systems to enhance identity governance. Monitor and respond to IAM-related incidents, troubleshooting access issues, and implementing remediation strategies. Collaborate with IT, cybersecurity, and business teams to define IAM requirements and ensure proper role alignment. Support the implementation and management of Multi-Factor Authentication (MFA) and Single Sign-On (SSO) solutions. Stay current with IAM trends, tools, and technologies, providing recommendations for continuous improvement. Prepare detailed reports on IAM metrics, compliance status, and project progress for management review.
Desired Candidate Profile
Skills & Technologies Required
Identity and Access Management Systems using tools such as Okta, SailPoint, Ping Identity, Microsoft Entra.
Privilege Access Management (PAM) using tools such as CyberArk, Wallix, BeyondTrust.
Directory Services expertise with Active Directory, Azure AD, and LDAP.
Access Control using methods like Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC).
Authentication and Authorization using solutions like MFA, SSO, and federated identity protocols (OAuth, SAML, OpenID Connect).
Cloud Security integration for IAM with platforms such as AWS, Azure, and Oracle Cloud, including automation and optimization.
Automation Scripting: Python, PowerShell, Bash, and Excel Automation.
UI Automation: Power Automate for streamlining workflows and user processes.
IAM Monitoring and Reporting using tools such as Splunk or Microsoft Sentinel for audit and compliance tracking.
Qualifications
Bachelor s degree in computer science, information technology, cybersecurity, or a related field (master s degree preferred).
Experience
A minimum of 3 5 years of experience in IAM or related cybersecurity roles.