Transforming smiles,
changing lives.
Engineer, Identity & Access Governance
Role expectations
- Identity Federation & Lifecyle Management: Assist in the management of identity federation services and identity lifecycle workflows.
- Role-Based Access Control (RBAC): Coordinate role-based access entitlement definition, controls and reviews, ensuring alignment with organizational structures, business needs and work duties.
- User Access Governance: Coordinate user access controls, including provisioning, de-provisioning, and maintaining user entitlements across various systems and applications. Assist technology teams with the onboarding into single sign-on (SSO) to streamline user authentication and access.
- Privileged User Access Governance: Conduct regular privileged access reviews, ensuring that privileged user access is appropriate based on roles, responsibilities, and compliance requirements.
- Non-human Account Governance: Review categorization and ownership of non-human accounts, ensuring accuracy and mapping with CMDB. Monitor and coordinate secret rotations with IT teams.
- Monitoring Control & Compliance: Ensure continuous operational enforcement of identity and access management (IAM) policies, procedures, and compliance with regulatory requirements. Conduct periodic control design and operating assessments to identity improvement areas.
- Phishing-resistant MFA: Ensure timely user onboarding into Passwordless sign-in, Device Conditional Access and Windows Hello for Business with phishing-resistant MFA methods. Actively monitor onboarding and report progress update with high accuracy and relevant breakdowns such as region, entity, methods.
- Project Management: Review project questionnaire and documentation, ensuring alignment with identity & access policies and standards. Track implementations until completion.
- Guidance & Awareness: Develop guidelines to onboard end-users into standard practices and tools such as Passwordless and Windows Hello.
- Documentation & Reporting: Create effective documentation on identity & access governance policies, procedures, standards, controls, and configurations. Produce periodic reports with key metrics on governance activities, monitoring controls, usage patterns and compliance status. Provide insights for ongoing improvements in security posture.
- Service Delivery: Process service requests as per defined service levels (on-time, on-quality) in partnership with key stakeholders.
- Collaboration & Communication: Work closely with IT, Information Security, HR, and business units to ensure seamless identity & access lifecycle management.
- Continuous Improvement: Stay up-to-date with emerging trends, tools, and good practices in identity & access management. Propose improvements on processes, controls, technologies and tools.
- Other duties as assigned to meet business needs, contribute to broader projects and support colleagues.
What we're looking for
- Education: Bachelor's degree or equivalent work experience.
- Experience: 5+ years' working experience ideally in information security or information technology.
- Communication: Presentation and communication skills.
- Analytical Skills: Ability to analyze security challenges and propose actionable solutions.
- Problem Solving: Ability to address and resolve issues in identity and access governance.
- Teamwork: Strong ability to work both collaboratively and independently achieving some of the goals set with little guidance.
- Project Management: Ability to collaborate in multiple projects, priorities, and deadlines in a fast-paced environment.
Complementary skills
- Strong English-speaking skills with experience working at a global company.
- Understanding of the Microsoft 365 suite of tools relating to managing user identities, entitlement and accesses.
- Solid understanding of IAM concepts, RBAC, SSO, MFA, least privilege, segregation of duty and need to know principles, and security frameworks.
- Certifications: Certified Identity Management Professional (CIMP), or other related credentials are a plus.
Pay Transparency
À propos de Align Technology
At Align, every smile matters. We’re committed to helping you thrive by supporting the health, growth, and well-being of our team members through a variety of tools and programs. While specific offerings may vary by location and role, Align employees can typically expect:
- Health and well-being programs to keep you thriving in both body and mind.
- Employee-exclusive discounts on Invisalign products.
- Learning opportunities through online learning resources and support for your individual development plans.
- Inclusive, global workplace that fosters collaboration, recognition and belonging.
Discover Align:
We are a global community of game-changers and smart team players, united by our belief in the power of a smile. Our dynamic team of exceptional employees is dedicated to transforming the industry and creating extraordinary outcomes every day.
As part of our commitment to innovation, Align Technology includes exocad and Cubicure, companies that enhance our offerings and extend our impact to industry transformation.
Eager to learn how we embrace our global differences and nurture employee well-being?
Explore Align's culture here!
Review our Applicant Privacy Policy for additional information.
Equal Opportunity Statement:
Align Technology is an equal opportunity employer. We are committed to providing equal employment opportunities in all our practices, without regard to race, color, religion, sex, national origin, ancestry, marital status, protected veteran status, age, disability, sexual orientation, gender identity or expression, or any other legally protected category. Applicants must be legally authorized to work in the country for which they are applying, and employment eligibility will be verified as a condition of hire.
Notre processus d'embauche
Couldn’t find what you are looking for?