IT 与编程
Identity & PAM Security Engineer(远程职位)
Sporty Group
链接会跳转到原始招聘信息。Donator 不代收申请。
Identity & PAM Security Engineer:「IT 与编程」类别,完全远程
这条招聘信息来自 Sporty Group,岗位是 Identity & PAM Security Engineer。职位属于「IT 与编程」类别,完全远程。公司招的是居住在欧洲的候选人。
公司没有公布具体数字,这一项会在面试时谈定。对工作时间,招聘信息没有提出任何条件。
这个职位通过了自动核查:凡是要求外国工作许可、签证担保、特定国籍,或者必须居住在指定国家的招聘信息,都不会进入列表。
要点
- 公司
- Sporty Group
- 类别
- IT 与编程
- 谁可以申请
- 来自欧洲任何国家
- 工作方式
- 完全远程
- 用工形式
- 全职
- 发布时间
- 2026年8月13日 (11 天前)
- 有效期
- 截至 2026年9月22日
- 来源
- Jobicy
新职位邮件提醒:IT 与编程
职位板每天更新数次。只有出现新的、已核查的职位时才会写信。不发垃圾邮件,也不需要注册账号。
已经订阅过了? 管理订阅设置
公司发布的职位描述
About the role This team is responsible for the security, stability, and scalability of the company's software systems and infrastructure. We monitor system performance, identify and mitigate risks, and ensure our platforms remain secure, resilient, and capable of supporting continued growth. As an Identity & PAM Security Engineer, you will be responsible for designing, implementing, and managing identity security controls across the enterprise. Your focus will include privileged access management, identity governance, service account security, and conditional access controls. Working closely with Security, Infrastructure, and Engineering teams, you will help ensure that access to critical systems and resources is secure, appropriately governed, and aligned with least-privilege principles. What you'll be doing
* Manage privileged access controls, including Privileged Identity Management (PIM), just-in-time (JIT) access, approval workflows, and privileged role assignments.
* Define and maintain administrative access processes for high-risk roles, privileged sessions, and break-glass accounts.
* Lead and support access review processes, track remediation activities, and ensure access rights remain aligned with least-privilege principles.
* Manage the lifecycle of service and machine accounts, including ownership, permissions, credential rotation, monitoring, and decommissioning.
* Configure, maintain, and monitor conditional access policies, multi-factor authentication (MFA), and identity risk controls.
* Design and implement automation for identity workflows, approvals, access validation, reporting, and remediation activities.
* Collaborate with Security, Infrastructure, and Engineering teams to strengthen identity security across cloud and enterprise environments.
* Support security audits, incident response activities, and identity-related investigations.
* Contribute to the ongoing improvement of identity governance, privileged access management, and security operations practices.
What you'll bring
* 4+ years of experience in Identity and Access Management (IAM), Cloud Security, Infrastructure Security, or Security Engineering.
* Hands-on experience administering and securing Microsoft Entra ID and Google Cloud IAM environments.
* Strong understanding of identity security concepts including least privilege, role-based access control (RBAC), multi-factor authentication (MFA), conditional access, access governance, and privileged access management.
* Experience managing service accounts, machine identities, secrets, API keys, and credential rotation processes.
* Experience building automation using workflow management platforms, APIs, PowerShell, Python, or similar technologies.
* Strong analytical and problem-solving skills with a security-first mindset.
* Excellent documentation, communication, and stakeholder management skills.
* Ability to work effectively in a fast-paced, distributed environment.
Even better if
* Experience implementing or operating Privileged Access Management (PAM) solutions at scale.
* Familiarity with Identity Governance and Administration (IGA) frameworks and best practices.
* Experience integrating identity security controls into cloud-native environments and automation pipelines.
* Exposure to security monitoring, SIEM platforms, or log analysis tools.
* Relevant certifications such as SC-300, AZ-500, CISSP, CCSP, or equivalent.
Role specific tools
* Microsoft Entra ID
* Privileged Identity Management (PIM)
* Conditional Access
* Multi-Factor Authentication (MFA)
* Google Cloud IAM
* Service Account Management
* Workflow Management Platforms
* HashiCorp Vault
* Azure Key Vault
* Google Secret Manager
* PowerShell
* Python
* REST APIs
* SIEM and Log Analysis Tools
What's in it for you
* Sporty is a remote-first company in pursuit of sustainability
* A competitive salary plus individual performance-based bonuses every quarter
* 28 days paid annual leave
* Core working hours of 10am-3pm in your local time zone, with flexibility outside of these hours
* Referral bonuses and flash bonuses
* Top-of-the-line equipment
* Annual company retreats that provide opportunities to connect and collaborate with colleagues from around the world
If you're interested, we encourage you to apply. Every application is reviewed by a member of our team, and we aim to respond within 48 hours.
职位正文保留公司发布时的原文,因为投递的时候用的也是同一种语言。
关于这个职位的常见问题
我可以在自己居住的地方申请「Identity & PAM Security Engineer」这个职位吗?
可以。对于这个职位,Sporty Group 接受来自欧洲任何国家的候选人,所以你不需要其他国家的工作许可。这条招聘信息通过了自动核查:如果雇主要求工作许可、签证担保,或者必须居住在某个特定国家,它就不会出现在本站。
标明的报酬是多少?
对于这个职位,Sporty Group 没有公布报酬。多数远程招聘信息不给出具体数字,这件事会在面试时谈定。
怎么申请?
你通过发布在 Jobicy 上的原始招聘信息,直接向雇主提交申请。Donator 不代收申请,不收取佣金,也不保存简历。
这是什么类型的职位?
这是「IT 与编程」类别中的一个完全远程职位。混合办公的招聘信息,以及任何需要到办公室的职位,本站都不会发布。
适合这个职位的免费证书
这个领域里分量最重的几张免费证书。每一张都在发证方自己的页面上核实过。
Applied Skills (scenario-based credentials)
exam is free tooMicrosoft · ~1 h
Microsoft's only free verifiable credential: a lab task in 30-45 minutes, with no proctor, no ID check and no card. Retakes are allowed.
It has to be finished in one session; there is no save and resume.
strong brandOCI Foundations Associate
exam is free tooOracle · ~12 h
A rare case where the certification exam itself is free and needs no Pearson VUE: you sit it inside MyLearn. Take the 2026 track, not the 2025 one.
Oracle's pages load via JS; confirm the $0 on the final step of registration.
strong brandValid: 18-24 monthsCS50x: Introduction to Computer Science
certificateHarvard CS50 · ~100 h
Harvard's own branded certificate is free once you pass every problem set and the final project. The edX verified certificate is a separate paid product and is not needed.
strong brandCS50P: Programming with Python
certificateHarvard CS50 · ~60 h
Same mechanism as CS50x: at least 70% on every assignment plus a final project. The certificate does not expire.
strong brand
