IT and programming
Identity & PAM Security Engineer - remote job
Sporty Group
The link takes you to the original advert. Donator takes no applications.
Identity & PAM Security Engineer - IT and programming, remote
Sporty Group is hiring a Identity & PAM Security Engineer. The role sits in IT and programming and is fully remote. The company hires candidates based in Europe.
The employer did not publish a figure; that is settled at interview. The advert sets no condition on working hours.
This vacancy passed an automated check: the list excludes any advert requiring a foreign work permit, visa sponsorship, a particular citizenship, or residence in a specific country.
In brief
- Company
- Sporty Group
- Category
- IT and programming
- Who may apply
- From anywhere in Europe
- Work mode
- Fully remote
- Employment type
- Full time
- Posted
- 13 August 2026 (11 days ago)
- Active
- until 22 September 2026
- Source
- Jobicy
Get new IT and programming jobs by email
The board updates several times a day. We write only when a new, checked vacancy appears. No spam, no account needed.
Already subscribed? Manage your settings
The employer's description
About the role This team is responsible for the security, stability, and scalability of the company's software systems and infrastructure. We monitor system performance, identify and mitigate risks, and ensure our platforms remain secure, resilient, and capable of supporting continued growth. As an Identity & PAM Security Engineer, you will be responsible for designing, implementing, and managing identity security controls across the enterprise. Your focus will include privileged access management, identity governance, service account security, and conditional access controls. Working closely with Security, Infrastructure, and Engineering teams, you will help ensure that access to critical systems and resources is secure, appropriately governed, and aligned with least-privilege principles. What you'll be doing
* Manage privileged access controls, including Privileged Identity Management (PIM), just-in-time (JIT) access, approval workflows, and privileged role assignments.
* Define and maintain administrative access processes for high-risk roles, privileged sessions, and break-glass accounts.
* Lead and support access review processes, track remediation activities, and ensure access rights remain aligned with least-privilege principles.
* Manage the lifecycle of service and machine accounts, including ownership, permissions, credential rotation, monitoring, and decommissioning.
* Configure, maintain, and monitor conditional access policies, multi-factor authentication (MFA), and identity risk controls.
* Design and implement automation for identity workflows, approvals, access validation, reporting, and remediation activities.
* Collaborate with Security, Infrastructure, and Engineering teams to strengthen identity security across cloud and enterprise environments.
* Support security audits, incident response activities, and identity-related investigations.
* Contribute to the ongoing improvement of identity governance, privileged access management, and security operations practices.
What you'll bring
* 4+ years of experience in Identity and Access Management (IAM), Cloud Security, Infrastructure Security, or Security Engineering.
* Hands-on experience administering and securing Microsoft Entra ID and Google Cloud IAM environments.
* Strong understanding of identity security concepts including least privilege, role-based access control (RBAC), multi-factor authentication (MFA), conditional access, access governance, and privileged access management.
* Experience managing service accounts, machine identities, secrets, API keys, and credential rotation processes.
* Experience building automation using workflow management platforms, APIs, PowerShell, Python, or similar technologies.
* Strong analytical and problem-solving skills with a security-first mindset.
* Excellent documentation, communication, and stakeholder management skills.
* Ability to work effectively in a fast-paced, distributed environment.
Even better if
* Experience implementing or operating Privileged Access Management (PAM) solutions at scale.
* Familiarity with Identity Governance and Administration (IGA) frameworks and best practices.
* Experience integrating identity security controls into cloud-native environments and automation pipelines.
* Exposure to security monitoring, SIEM platforms, or log analysis tools.
* Relevant certifications such as SC-300, AZ-500, CISSP, CCSP, or equivalent.
Role specific tools
* Microsoft Entra ID
* Privileged Identity Management (PIM)
* Conditional Access
* Multi-Factor Authentication (MFA)
* Google Cloud IAM
* Service Account Management
* Workflow Management Platforms
* HashiCorp Vault
* Azure Key Vault
* Google Secret Manager
* PowerShell
* Python
* REST APIs
* SIEM and Log Analysis Tools
What's in it for you
* Sporty is a remote-first company in pursuit of sustainability
* A competitive salary plus individual performance-based bonuses every quarter
* 28 days paid annual leave
* Core working hours of 10am-3pm in your local time zone, with flexibility outside of these hours
* Referral bonuses and flash bonuses
* Top-of-the-line equipment
* Annual company retreats that provide opportunities to connect and collaborate with colleagues from around the world
If you're interested, we encourage you to apply. Every application is reviewed by a member of our team, and we aim to respond within 48 hours.
The text is kept in the employer's original language, because that is the language you will apply in.
Frequently asked questions about this job
Can I apply for Identity & PAM Security Engineer from where I live?
Yes. Sporty Group accepts candidates for this vacancy from anywhere in Europe, so you need no work permit for a foreign country. The advert passed an automated check: had the employer required a work permit, visa sponsorship or residence in a specific country, it would not be on this board.
What pay is stated?
Sporty Group did not publish pay for this vacancy. Most remote adverts publish no figure; it is settled at interview.
How do I apply?
You apply directly to the employer, through the original advert published on Jobicy. Donator takes no applications, charges no commission and stores no CV.
What kind of vacancy is this?
A fully remote role in IT and programming. Hybrid adverts and anything requiring office attendance are not published on this board.
Free certificates for this vacancy
The free certificates that carry the most weight in this field. Each one is verified on the provider's own page.
Applied Skills (scenario-based credentials)
exam is free tooMicrosoft · ~1 h
Microsoft's only free verifiable credential: a lab task in 30-45 minutes, with no proctor, no ID check and no card. Retakes are allowed.
It has to be finished in one session; there is no save and resume.
strong brandOCI Foundations Associate
exam is free tooOracle · ~12 h
A rare case where the certification exam itself is free and needs no Pearson VUE: you sit it inside MyLearn. Take the 2026 track, not the 2025 one.
Oracle's pages load via JS; confirm the $0 on the final step of registration.
strong brandValid: 18-24 monthsCS50x: Introduction to Computer Science
certificateHarvard CS50 · ~100 h
Harvard's own branded certificate is free once you pass every problem set and the final project. The edX verified certificate is a separate paid product and is not needed.
strong brandCS50P: Programming with Python
certificateHarvard CS50 · ~60 h
Same mechanism as CS50x: at least 70% on every assignment plus a final project. The certificate does not expire.
strong brand
Similar jobs
Executive Director, Lifecycle Leader
$290k - $330k a yearIovance Biotherapeutics · today
NewFrom anywhereApplied Researcher - All Levels
$89k - $287k a yearMiris · today
NewFrom anywhereMachine LearningSenior Full-Stack Engineer
Private Identity · today
NewFrom anywherePythonSenior Full Stack Engineer
Fueled · today
NewFrom anywhereReactTypeScript
