IAM Specialist

Reposted 19 Days Ago
Be an Early Applicant
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur
In-Office
5-5
Senior level
Semiconductor
The Role
The IAM Specialist designs and manages identity lifecycle processes, ensures secure access management, and supports compliance in Nexperia's global IT environment.
Summary Generated by Built In

About the role

The IAM Specialist is a senior technical expert responsible for the end-to-end implementation and management of the enterprise Identity and Access Management framework, with a core focus on Identity Governance & Administration (IGA) and Privileged Access Management (PAM). This role is not just operational; it is strategic and project driven. A key requirement is proven experience working closely with vendors to lead the complete implementation lifecycle of an IGA solution, from selection and design to deployment and onboarding. The engineer ensures robust governance, secure authentication, and strict adherence to the principle of least privilege, acting as the crucial link between technical implementation, business policy, and vendor management.

What you will do
IGA (Identity Governance & Administration) Implementation & Management:

  • Lead the end-to-end implementation of an IGA platform (e.g., SailPoint, Saviynt, ForgeRock) in collaboration with the chosen vendor. This includes requirements gathering, design, configuration, testing, and deployment.

  • Work closely with the vendor to ensure the solution is tailored to meet specific business processes and integration needs, particularly with HR systems (e.g., Workday, SAP) for Joiner-Mover-Leaver (JML) automation.

  • Develop and manage access certification campaigns, Role-Based Access Control (RBAC) models, and access request workflows.

  • Act as the primary technical owner and administrator for the IGA platform post-implementation

PAM (Privileged Access Management) Implementation & Management:

  • Implement, configure, and maintain the PAM solution (e.g., CyberArk, BeyondTrust, Thycotic) to secure, manage, and monitor privileged accounts.

  • Manage the vaulting, rotation, and session isolation of privileged credentials for systems, network devices, databases, and applications.

  • Establish and enforce policies for privileged session monitoring, recording, and auditing.

Governance, Risk & Compliance:

  • Work closely with Legal and Compliance teams to align IAM practices with regulations (GDPR, SOX, PCI-DSS).

  • Act as a primary point of contact for audits, generating detailed access reports, providing evidence of controls, and explaining technical processes to auditors.

Vendor & Stakeholder Management:

  • Manage the relationship and deliverables of IAM vendors, ensuring they meet project milestones, performance SLAs, and contractual obligations.

  • Act as a third-line escalation point for resolving complex access and authentication issues.

  • Collaborate with IT, HR, and business units to translate policies into technical controls.
     

  • IGA Implementation Experience (MUST HAVE):
    Must Have: Hands-on experience working directly with a vendor (e.g., SailPoint, Saviynt Professional Services) on the complete implementation lifecycle of an IGA solution.
    Must Have: Proven experience in configuring and customizing an IGA platform for HR-driven provisioning (e.g., integrating with Workday, SAP), access certifications, and RBAC.
    Must Have: Experience in post-implementation support and administration of the IGA system.
     

  • PAM Implementation & Management Experience (MUST HAVE):
    Must Have: Hands-on experience deploying and configuring a major PAM solution (e.g., CyberArk, BeyondTrust).
    Must Have: Experience with onboarding privileged accounts, credential vaulting, and automatic password rotation.
    Must Have: Knowledge of privileged session management and monitoring.
    Protocols & Scripting: Knowledge of SAML, OIDC, OAuth, SCIM, and LDAP. Proficiency in scripting (PowerShell, Python) for automation and integration tasks.
    Directories: Expert knowledge of Microsoft Active Directory and Azure AD.
     

Analytical & Soft Skills:

  • Vendor Management: Proven ability to manage third-party vendors, hold them accountable for deliverables, and ensure solutions meet business requirements.

  • Cross-Functional Collaboration: Ability to translate technical concepts for Legal, HR, and Business stakeholders.

  • Audit Support: Expertise in preparing for and responding to audits with precision.

  • Problem-Solving: Advanced troubleshooting skills for complex, cross-platform access issues.

What you will need

  • Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or related field.

  • With 5 – 7 years + of direct, hands-on IAM engineering experience.

  • 3+ years of proven, hands-on experience implementing and administering an IGA platform (e.g., SailPoint, Saviynt). This must include experience working with the vendor on a full implementation project.

  • 3+ years of proven, hands-on experience implementing and administering a PAM solution (e.g., CyberArk, BeyondTrust).

  • Demonstrable experience supporting audits and managing access review campaigns.

  • Direct experience working with HR on lifecycle management and with IT on troubleshooting.

  • Relevant industry certifications (e.g. CISSP, CISM, CRISC, CISA, CGEIT, ISO 27001 Lead Auditor/Implementer, SailPoint Certified Engineer, CyberArk Certified Trustee (CCT), Beyond Trust Certified Engineer.)

  • Direct experience supporting external audits and managing remediation plans.

  • Successful IGA Implementation: The successful, on-time, and on-budget deployment of the IGA solution, meeting all defined business and technical requirements.

  • Vendor Performance: The performance and delivery of the IAM implementation vendor and any managed services.

  • Privileged Access Security: The secure management, rotation, and monitoring of all privileged credentials, preventing credential-based attacks.

  • Audit Compliance: Providing 100% accurate and timely evidence for all IAM-related audit requests. Zero deficiencies due to IAM process failure.

  • Identity Lifecycle Automation: The accuracy and automation of user provisioning and de-provisioning, minimizing manual effort and access-related risks.

Talent acquisition based on Nexperia vacancies is not appreciated. Nexperia job adverts are Nexperia copyright © material and the word Nexperia® is a registered trademark.

D&I Statement

As an equal-opportunity employer, Nexperia values diversity not just because it is the right thing to do but because diverse teams perform better. We are dedicated to being inclusive, and a proof point of this dedication is that we were the main partner of the very first Dutch Paralympic Team NL House during the Paris 2024 Paralympic Games. Our recruitment process is inclusive and accessible to all, and we consider all applicants fairly, as well as providing a safe work environment and reasonable adjustments where requested.

In addition, we offer our colleagues the possibility to join employee resource groups such as the Pride Network Group or global and local Women's groups. Nexperia is committed to increasing women in management positions to 30% by 2030.

Top Skills

Active Directory
Azure Ad
Identity And Access Management
Mfa
Oauth
Okta
Openid Connect
Ping Identity
Powershell
Python
Sailpoint
SAML
Sso
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Cabuyao, Laguna
3,887 Employees

What We Do

Headquartered in the Netherlands, Nexperia is a global semiconductor company with a rich European history and over 15,000 employees across Europe, Asia, and the United States. As a leading expert in the development and production of essential semiconductors, Nexperia’s components enable the basic functionality of virtually every electronic design in the world – from automotive and industrial to mobile and consumer applications.
The company serves a global customer base, shipping more than 100 billion products annually. These products are recognized as benchmarks in efficiency – in process, size, power and performance. Nexperia's commitment to innovation, efficiency, sustainability, and stringent industry requirements are evident in its extensive IP portfolio, its expanding product range and its certification to IATF 16949, ISO 9001, ISO 14001 and ISO 45001 standards.
For questions or more information about our career opportunities: [email protected] Connect with us today and become a part of TeamNexperia! Nexperia - Efficiency Wins.

Similar Jobs

Capco Logo Capco

Business Analyst

Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
6000 Employees

Motorola Solutions Logo Motorola Solutions

Sales Executive

Artificial Intelligence • Hardware • Information Technology • Security • Software • Cybersecurity • Big Data Analytics
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
21000 Employees

Cloudflare Logo Cloudflare

Security Engineer

Cloud • Information Technology • Security • Software • Cybersecurity
Hybrid
4 Locations
4400 Employees

Cloudflare Logo Cloudflare

Account Executive

Cloud • Information Technology • Security • Software • Cybersecurity
Hybrid
Kuala Lumpur, Wilayah Persekutuan Kuala Lumpur, MYS
4400 Employees

Similar Companies Hiring

HRL Laboratories Thumbnail
Software • Semiconductor • Quantum Computing • Machine Learning • Hardware • Defense • Computer Vision
Malibu, CA
1115 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account