IAM/PAM PKI Engineer-Saudi National

Reposted 25 Days Ago
Be an Early Applicant
Amman, JOR
In-Office
Senior level
Information Technology • Software
The Role
The IAM/PAM PKI Engineer will enhance identity security by operating MFA and PAM technologies, manage enterprise integrations, and support PKI processes.
Summary Generated by Built In
Company Description

IT Security C&T is an innovative, fast-growing security consulting and training company. Our management team combined with our consultants and engineers work together to deliver comprehensive security solutions to our customers around the MENA region.
IT Security C&T is continuously expanding its team of qualified professionals for a wide range of opportunities. Interested candidates are required to apply via our Career webpage on our website (www.itsecurityct.com)

 

Job Description

Operate and improve enterprise Identity security capabilities with focus on Cerebra mPass (MFA) and CyberArk (PAM). You will stabilize day to day operations, drive onboarding and policy improvements, and prepare the roadmap for Windows Hello for Business migration and future adoption of SailPoint (IGA), BeyondTrust (PAM), and Thales HSM for PKI. Strong troubleshooting, documentation, and audit evidence discipline are essential.

Key Responsibilities

MFA. Cerebra mPass

  • Design, configure, and support Cerebra mPass MFA policies, integrations, and user onboarding.
  • Integrate MFA with enterprise systems (VPN, remote access, cloud apps, internal applications) using standard authentication protocols.
  • Monitor authentication flows, troubleshoot access issues, and improve reliability and user experience.
  • Prepare and execute the migration roadmap from mPass to Windows Hello for Business, including pilot planning, risk management, and cutover support.

PAM. CyberArk (Current). BeyondTrust (Future)

  • Operate and scale CyberArk (safes, platforms, CPM/PSM health, onboarding, rotations, access workflows).
  • Drive privileged account onboarding and operational hygiene (break glass, vault policies, RBAC, session controls).
  • Support evaluation and future rollout of BeyondTrust as needed (requirements, migration planning, operational model).

IGA. SailPoint (Future)

  • Support readiness for IGA adoption (joiner mover leaver flows, SoD concepts, connector requirements, campaign approach, reporting needs).
  • Contribute to implementation planning and operational runbooks once adopted.

PKI coordination. Thales HSM (Future)

  • Coordinate certificate lifecycle processes and integrations with the AD and PKI stakeholders.
  • Support discovery, inventory, renewal tracking, and certificate operational processes.
  • Participate in planning for HSM-backed PKI with Thales (key ceremony concepts, dual control, CRL/OCSP operational readiness). Note: day to day AD CS administration is owned by the AD team.

Operations, compliance, and delivery hygiene

  • Ensure IAM, MFA, and PAM events are visible in SIEM. Maintain health KPIs and reduce alert noise.
  • Execute changes via ITSM with clear testing, validation, rollback, and post change checks.
  • Lead or support RCA for major incidents. Publish SOPs, runbooks, and hardening guidance.
  • Produce audit ready evidence aligned with KSA cybersecurity requirements, including access controls and privileged access governance.

Automation

  • Use PowerShell, Python, and REST APIs to automate onboarding, rotations, reporting, and operational checks.

Qualifications

Required Qualifications

  • Saudi national. Bachelor’s degree or equivalent experience.
  • Typically 5+ years in IAM. Hands on experience in MFA and PAM operations at enterprise scale.
  • Strong experience with Cerebra mPass (or equivalent MFA platform) and CyberArk.
  • Solid understanding of authentication and identity concepts, including SAML, OAuth 2.0, OpenID Connect, AD and LDAP.
  • Strong troubleshooting, stakeholder communication, and documentation skills.
  • Practical scripting skills (PowerShell or Python). Comfortable with REST APIs.

Preferred Qualifications

  • Experience with enterprise MFA rollout and user adoption strategies.
  • Exposure to Windows Hello for Business, SailPoint, or BeyondTrust.
  • Experience operating in regulated environments with strong evidence and audit readiness.
  • Certifications are a plus (CyberArk, Microsoft Identity, CISSP/CISM, ITIL).

Additional Information

Job Location: KSA

Skills Required

  • Saudi national
  • Bachelor's degree or equivalent experience
  • 5+ years in IAM
  • Hands on experience in MFA and PAM operations at enterprise scale
  • Strong experience with Cerebra mPass and CyberArk
  • Solid understanding of authentication and identity concepts like SAML, OAuth 2.0, OpenID Connect, AD and LDAP
  • Strong troubleshooting, stakeholder communication, and documentation skills
  • Practical scripting skills in PowerShell or Python, comfortable with REST APIs
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
93 Employees
Year Founded: 2011

What We Do

IT Security C&T was incorporated in March 2011 with the vision to be the leading information security and technology risk management resource center in the Middle East and North African Region. We are specialized in the delivery of affordable high-end information security and technology risk management services that are hard to find within the region at the same cost. Our team is formed by leading specialists in their field, with experience track records of 10 - 20 years serving at key locations within the MENA region and around the world. The mission is to use this accumulated experience, knowledge, and skills, to develop highly trained bilingual consultants and trainers who are able to deliver world-class services to clients within the region. We provide information security consulting services that range from information security and risk management strategy development to technical penetration testing and digital forensics services aimed to enable customers at various verticals to understand business and technology threats and apply appropriate controls all within a framework of industry best practices based on international standards like ISO 27000, COBIT, and ISO 20000. See Consulting for more information. The Information security training services are aimed to provide customers with the necessary skills and knowledge to apply information security best practices within their organizations and to allow IT professionals to develop a career path in information security and risk management. See Training for more information. The information security solutions we provide are specialized integrated solutions that address customer’s complex requirement and provides the organization with state of the art information security controls to mitigate the enterprise risk. We partner with leading vendors and provide customized solutions to meet the increasing demand of our customers to holistically address their security risks. See Solutions for more information.

Similar Jobs

Capco Logo Capco

Architect

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
10 Locations
6000 Employees

Ericsson Logo Ericsson

Chief Technology Officer

Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
In-Office
Amman, JOR
88000 Employees
10-10 Annually

Capco Logo Capco

Information Technology Business Analyst

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Remote or Hybrid
10 Locations
6000 Employees

Infobip Logo Infobip

Account Manager

Mobile • Software
In-Office
2 Locations
3100 Employees

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account