IAM Access Operations & Automation Engineer
Listed on 2026-02-28
-
IT/Tech
Cybersecurity, Data Security, Systems Engineer
Sygnum is a global digital asset banking group, founded on Swiss and Singapore heritage. We empower professional and institutional investors, banks, corporates and DLT foundations to invest in digital assets with complete trust. Our team enables this through institutional-grade security, expert personal service and a portfolio of regulated digital asset banking, asset management, tokenisation and B2B services.
In Switzerland, Sygnum holds a banking licence and has CMS and Major Payment Institution Licences in Singapore. The group is also regulated in established global financial hubs including Abu Dhabi and Luxembourg.
We believe that the future has heritage. Our crypto-native team of banking, investment and digital asset technology professionals are building a trusted gateway between the traditional and digital asset economies — Future Finance.
Our ValuesA key pillar of our success are the Sygnum values that define and unite us as a team — our SYGN values:
- S – Seek and seize opportunities, and take ownership to deliver results
- Y – Say Yes to integrity and fairness in everything we do
- G – Grow and win together by supporting and challenging one another
- N – Nose for value: focus on what matters to clients, partners and each other
Sygnum is committed to diversity and inclusion. We believe diverse perspectives strengthen our teams, decision-making, and innovation. We embrace equal opportunity throughout hiring, development, and promotion.
About the roleWe’re seeking an IAM Access Operations & Automation Engineer to modernise and automate identity and access management across our cloud environments. This role focuses on applying Infrastructure-as-Code principles to streamline access provisioning, governance, and lifecycle management while maintaining strong compliance and audit readiness.
You will work hands‑on with scripting, automation, and Dev Ops tooling to improve IAM operational maturity, reduce manual effort, and enforce least‑privilege access across human and non‑human identities.
Core Responsibilities- Design, build, and maintain IAM automation using Power Shell and/or Python, integrating with Microsoft Graph and cloud identity APIs
- Apply Infrastructure as Code (IaC) principles using Terraform to manage identity artefacts such as users, groups, service principals, secrets, access packages, and conditional access policies
- Automate joiner‑mover‑leaver (JML) lifecycle processes for both workforce and service identities
- Partner with business units and application owners to define access models, entitlements, approval flows, and certifications
- Identify and remediate access risks including orphaned accounts, access drift, over‑privileged identities, and unsanctioned privileged access
- Support access reviews, audits, and regulatory requests by providing clear evidence and traceability
- Maintain operational documentation, runbooks, and audit trails to ensure repeatability and resilience
- Work cross‑functionally with Security, Platform, and Compliance teams to continuously improve IAM posture
You are an automation‑driven IAM engineer who enjoys simplifying complex identity environments through code and governance. You’re comfortable operating in regulated environments, understand the importance of auditability, and enjoy working closely with security and engineering teams to deliver practical, scalable access controls.
Qualifications- Strong scripting experience with Power Shell and/or Python, including use of REST APIs (Microsoft Graph preferred)
- Hands‑on experience with Infrastructure as Code tools such as Terraform or Bicep
- Experience integrating IAM automation into CI/CD pipelines (Git Hub Actions, Git Lab, Azure Dev Ops, or Azure Automation)
- Solid understanding of Microsoft Entra other cloud identity platforms (e.g., Okta, Auth0, AWS IAM)
- Experience working with Azure and/or AWS cloud environments
- Strong written and verbal communication skills in English
- Knowledge of identity protocols including SAML, OAuth2, OpenID Connect, and SCIM
- Understanding of IAM governance concepts: JML, RBAC/ABAC, SoD, access certification
- Familiarity with regulatory frameworks such as FINMA, GDPR, or DORA
- Exposure to access reviews, audit…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: