Descrição da Vaga
Job Description
Responsible for designing, implementing, and maintaining robust Identity and Access Management (IAM) solutions. This role ensures secure, compliant, and efficient authentication and authorization processes across hybrid and multi‑cloud environments. The position requires strong technical expertise, hands‑on experience with modern IAM platforms, and the ability to act as a technical reference for IAM architecture.
What You'll Do
- Design, evolve, and maintain the companys IAM architecture aligned with security best practices.
- Design and maintain RBAC (Role-Based Access Control) models, including role modeling, role mining, Segregation of Duties (SoD) controls, and role lifecycle management.
- Define and enforce Privileged Access Management (PAM) controls to secure elevated and high-risk accounts.
- Implement and maintain Identity Governance (IGA) processes, including access reviews, certifications, and compliance controls.
- Manage and configure IAM tools such as Okta and Ping Identity.
- Ensure secure integration of internal and external applications with IAM solutions.
- Develop automation scripts for provisioning, deprovisioning, and access reviews using Python, PowerShell, or similar languages.
- Develop, maintain, and review scripts, services, and automations related to Identity and Access Management (IAM)
- Operate IAM services within AWS and support expansion into Azure.
- Apply secure identity practices across multi‑cloud environments.
- Implement and maintain IAM governance, policies, and regulatory compliance processes.
- Support internal and external audits and access review cycles.
- Collaborate with engineering, security, and business teams to ensure secure and efficient identity workflows.
This is a remote position. A remote position does not require job duties be performed within proximity of a Visa office location.
Qualifications
Basic Qualifications
- Be based in Brazil.
- English (B2).
- Bachelors degree in computer science, Engineering, Information Systems, or related field.
Preferred Qualifications
- Solid hands on experience configuring IAM platforms, including Okta, Ping Identity or Microsoft Entra ID.
- Strong knowledge of RBAC methodologies and access management practices.
- Experience with cloud environments for Access Management and Cybersecurity, Azure knowledge preferred.
- Familiarity with authentication and authorization protocols (SAML, OAuth 2.0, OpenID Connect).
- Ability to work independently as well as in distributed, multicultural teams.
- Strong analytical and communication skills for interaction with business, technical teams, and auditors.
- Experience integrating IAM controls into DevSecOps and CI/CD pipelines, including identity management for service accounts, machine identities, and automated workloads, ensuring secure and scalable access controls.
- Knowledge of Zero Trust Architecture.
- Certifications such as Okta Certified Professional, Ping Identity, AWS Security Specialty, Microsoft Identity and Access Administrator.
- Proficiency in automation and scripting (Python, PowerShell, or Bash).
Sobre a Empresa
Mais vagas na Pismo → Pismo is a technology company providing a complete processing platform for payments and banking. Large banks, marketplaces, and fintechs already use our cloud-native microservices platform. Our clients are launching next-generation solutions while migrating their legacy systems ont...[Ver Mais]
Você será redirecionado para o site da empresa