Identity and Access Management Specialist

2 days ago


Manila, National Capital Region, Philippines Aurecon Full time $104,000 - $130,878 per year

Just imagine your future with us…
At Aurecon we see the future through a very different lens. Do you?

Innovation, eminence and digital are at the heart of everything we do. Are you excited about the future?

Are you driven by the opportunity to work on some of the most challenging and complex projects around the world and to learn from the best? We are.

Diversity is at the core of everything we do. We work together to create a culture based on respect, trust and inclusiveness. Our differences are what fuel our creativity.

What will you do?
Identity and Access Management (IDAM)
, is an IT security discipline, framework, and set of solutions for managing digital identities and access to resources. IDAM encompasses the provisioning and de-provisioning of identities, securing and authenticating identities, and authorizing access to resources and/or performing certain actions.

While a person (user) has a singular digital identity, they may have multiple accounts representing them, each with different access controls depending on the resource and context. The overarching goal of IDAM is to ensure that any given identity has access to the right resources (applications, databases, networks, etc.) within the correct context.

The
Identity and Access Management Specialist
is responsible for ensuring that the right people and things have the right access to the right resources at the right time, thereby maintaining security, efficiency, and compliance within the organization.

Here are the key things you will do to 'bring ideas to life'.

  • Managing user onboarding, termination, and role changes.
  • Managing file share access provisioning and user access provisioning/de-provisioning.
  • Administering user authentication using tools such as Multi-Factor Authentication (MFA).
  • Managing access to software and systems based on Active Directory.
  • Managing admin consent requests in Azure Active Directory.
  • Handling manual onboarding, termination, and role changes for privileged accounts.
  • Managing RBAC roles to ensure appropriate access control across systems and applications.
  • Regularly review and update role assignments to align with organizational needs and security policies.
  • Conducting regular account reviews, including those for expired, dormant, and late-terminated accounts.
  • Managing access to shared and personal mailboxes, creating shared mailboxes, and handling the creation and administration of distribution lists (DLs).
  • Working closely with IT teams and stakeholders to integrate IAM solutions with existing systems and applications
  • Implement & Configure enterprise app integrations in Azure AD, ensuring secure authentication and provisioning.
  • Translate & Action Designs – Work from approved architectural designs, ensuring secure and efficient implementation.
  • Manage Change & Risk – Raise, document, and implement changes while mitigating security risks.
  • Optimize & Troubleshoot – Identify and resolve authentication, provisioning, and authorization issues.
  • Configure and enforce Conditional Access Policies (CAP) to secure authentication and reduce attack surface.
  • Implement risk-based access controls, including MFA enforcement, device compliance, and session controls.

What can you bring to the team?
Skills
Firstly, strong sense of responsibility, flexibility, and adaptability to varying request. Demonstrate excellent time management and organisational skills. And as part of a new team, you will have the opportunity to shape this role and have input into how we evolve it over time to WOW our employees and make an even bigger impact on the world. You will also need the following:

  • At least 3 years of working experience in the related field is required for this position
  • Has solid understanding of Group Policy and network architecture
  • Knowledge and experience in the use of Service Management systems/tools (desirable)
  • Experience in Microsoft Active Directory or CyberArk
  • Has background with Azure Cloud Active Directory
  • Experience in Azure Enterprise Applications, SAML, and SCIM integrations with deep knowledge of identity security best practices
  • Expert understanding of Admin Consent workflows and User Delegated Permissions in OAuth/OpenID Connect
  • Experience in reading and modifying scripts using PowerShell
  • Experience with the concepts of user directories, identity lifecycle management, and identity attestation.
  • Experience in Privileged Access Management
  • Experience in Microsoft Office 365 platforms
  • Experience with the concepts of authentication (e.g., Multi-Factor Authentication or MFA), authorization, Role-Based Access Control (RBAC), Single Sign-On (SSO)
  • Proven experience in eliciting requirements and testing is a plus
  • Familiar with ITIL v3/v4
  • Experience in a global shared services organisation (desirable)

Our
Aurecon Attributes
describe the types of people we bring together for clients. We don't expect you to have all eight of the attributes, but one that is unique to you.

Finally, we value that each of our team members brings something different to Aurecon. We look for people who have had a broad range of experiences throughout their career and can demonstrate how they have worked as part of a team to bring ideas to life. Does that sound like you?

About Us
We've re-imagined engineering.

Aurecon is an engineering and infrastructure advisory company, but not as you know it

For a start, our clients' ideas drive what we do. Drawing on our deep pool of expertise, we co-create innovative solutions with our clients to some of the world's most complex challenges. And through a range of unique creative processes and skills, we work to re-imagine, shape and design a better future.

We listen deeply and intently, which helps us see opportunities, possibilities and potential that others can't. Think engineering. Think again.

Want to know more?
You can learn more about what it's like to work at Aurecon by visiting the careers section of our website.

If you are intrigued or excited by what you have read, then we want to hear from you. Apply now



  • Manila, National Capital Region, Philippines beBeeidentity Full time $60,000 - $80,000

    Identity and Access Management SpecialistAbout TurnkeyWe are a global consulting provider of risk management, identity and access management and cyber security solutions to companies who run enterprise software. Our goal is to help businesses manage their risks and protect their most important assets from internal and external threats.We offer a fast-paced...


  • Manila, National Capital Region, Philippines Hunter�s Hub, Incorporated Full time $60,000 - $80,000 per year

    Job Description Manage, maintain, and optimize eDirectory and related identity infrastructure. Lead and support migrations involving Novell services. Serve as a senior escalation point for incidents and requests. Build, deploy, and document changes in eDirectory environments. Design and implement automation, provisioning, and synchronization logic. ...


  • Manila, National Capital Region, Philippines UnionDigital Bank Full time $90,000 - $120,000 per year

    Role Overview:UnionDigital Bank is seeking a dynamic and experiencedHead of Identity and Access Management (IAM)to lead our IAM unit. This pivotal role will drive the strategy, implementation, and optimization of IAM processes to ensure robust security, regulatory compliance, and operational efficiency in a fast-paced digital banking environment. The...


  • Manila, National Capital Region, Philippines Metropolitan Bank & Trust Company Full time ₱600,000 - ₱1,200,000 per year

    Be #InGoodHands with MetrobankHere at Metrobank, we don't simply hire employees—we hone future leaders. We provide opportunities that enhance your skills and unlock your talents, helping you evolve into a well-rounded individual. We supply you with all the pieces you need to do your best work, unleashing your full potential to help you secure your future...


  • Manila, National Capital Region, Philippines beBeeIdentity Full time ₱900,000 - ₱1,200,000

    Identity and Access Management Specialist Job DescriptionThis position involves managing user onboarding, termination, and role changes, as well as provisioning and de-provisioning file share access and user access.The specialist will also administer user authentication using Multi-Factor Authentication (MFA) tools and manage access to software and systems...


  • Manila, National Capital Region, Philippines beBeeAccess Full time ₱50,000 - ₱120,000

    Job Title: Access Control Specialist">Description:This role involves overseeing and managing access controls to safeguard data and resources globally, leading identity and access management processes.The purpose of this position is to ensure the security and integrity of QBE systems by handling complex access requests, supporting senior analysts and team...


  • Manila, National Capital Region, Philippines beBeeIdentity Full time $90,000 - $120,000

    Job Title: IT Security SpecialistCanva is seeking a skilled IT Security Specialist to join our Workforce Access Management (WAM) team. This role will be responsible for delivering secure and scalable Identity & Access Management services for Canvanauts.The WAM team is a pivotal part of the IT Platform, aiming to innovate the foundational infrastructure of...


  • Manila, National Capital Region, Philippines Macquarie Bank Limited Full time

    Join our Cybersecurity UAM business operations team and play a pivotal role in enhancing efficiency, driving automation, and spearheading continual service improvement with a focus on innovation and technology.At Macquarie, our advantage is bringing together diverse people and empowering them to shape possibilities. We are a global financial services group...


  • Manila, National Capital Region, Philippines beBeeDesign Full time ₱2,400,000 - ₱3,200,000

    Visual Identity SpecialistThe role of the Visual Identity Specialist is pivotal in creating and maintaining a brand's visual identity.Main Responsibilities:Establish and enforce design standards for corporate branding, encompassing logos, color schemes, typography, and imagery.Collaborate with cross-functional teams to ensure consistency in design across all...


  • Manila, National Capital Region, Philippines Canva Full time

    Systems Engineer, Workforce Access ManagementJoin to apply for the Systems Engineer, Workforce Access Management role at Canva.OverviewJoin the team redefining how the world experiences design. This role is part of Canva's Workforce Access Management (WAM) team within the IT Platform group, focused on delivering secure and scalable Identity & Access...