Job Title: IAM Engineer L2
Experience: 3-6 Years
Location: [Remote/Hybrid]
Role Summary
The IAM L2 Analyst is responsible for managing and supporting identity and access management services across the enterprise. The role focuses on user lifecycle management, access provisioning, authentication services, IAM automation, and compliance activities while ensuring secure and efficient access to business applications and systems. The analyst will work closely with business stakeholders, application owners, infrastructure teams, and security teams to maintain a secure identity environment aligned with organizational policies and Zero Trust principles.
Key Responsibilities
Identity Lifecycle Management
- Manage the complete user lifecycle (Joiner, Mover, Leaver) process, including new hire onboarding, role changes, and employee offboarding.
- Perform user provisioning and deprovisioning across enterprise applications, cloud platforms, and infrastructure systems.
- Grant, modify, and revoke user access and application roles based on approved business requirements.
- Ensure timely and accurate execution of access requests while meeting established SLAs.
- Support privileged access management processes and least-privilege access principles.
Active Directory & Microsoft 365 Administration
- Administer and support Microsoft Active Directory (AD), Azure AD / Microsoft Entra ID, and Microsoft 365 environments.
- Manage user accounts, security groups, distribution groups, shared mailboxes, licenses, and permissions.
- Perform directory synchronization and identity management activities.
- Support Microsoft 365 user administration, licensing, and access governance requirements.
- Monitor identity infrastructure health and perform routine maintenance activities.
Authentication & Access Management
- Configure, administer, and support Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Conditional Access policies.
- Troubleshoot authentication, authorization, and identity-related issues across enterprise applications.
- Support federation protocols including SAML, OAuth, OpenID Connect (OIDC), and LDAP.
- Assist in implementing and maintaining role-based access control (RBAC) models.
- Support Okta or other IAM platforms for access management, authentication, and policy enforcement.
IAM Automation & Process Improvement
- Develop, maintain, and enhance PowerShell scripts and Logic Apps for IAM automation initiatives.
- Automate user onboarding and offboarding processes.
- Perform bulk user account creation, modification, and access changes through automation.
- Develop reporting and audit automation solutions.
- Automate IAM operational processes using PowerShell integrated with Active Directory, Azure AD, and Microsoft 365.
- Identify opportunities to improve operational efficiency through scripting and workflow automation.
Governance, Risk & Compliance
- Conduct periodic access reviews and user access certification activities.
- Support internal and external audit requirements by providing IAM evidence and reports.
- Generate compliance and access governance reports.
- Identify access control gaps and support remediation activities.
- Ensure compliance with organizational security policies, regulatory requirements, and industry standards.
Application Onboarding & Stakeholder Collaboration
- Collaborate with application owners and business teams to onboard applications into IAM solutions.
- Support integration of applications with SSO and identity federation services.
- Participate in IAM projects, migrations, and transformation initiatives.
- Work with security, infrastructure, and cloud teams to implement IAM best practices.
Documentation & Service Management
- Maintain IAM operational documentation, knowledge articles, SOPs, and process guides.
- Follow ITIL processes including Incident Management, Change Management, Problem Management, and Service Request Fulfillment.
- Participate in root cause analysis and continuous improvement initiatives.
- Ensure proper documentation of changes, incidents, and operational procedures.
Security & Best Practices
- Ensure adherence to security best practices and Zero Trust principles.
- Support implementation of least-privilege access and segregation of duties (SoD) controls.
- Monitor and report security-related IAM risks and policy violations.
- Contribute to continuous improvement of IAM security controls and processe
Required Technical Skills
Identity & Access Management
- Strong understanding of IAM concepts, access governance, and identity lifecycle management.
- Experience with user provisioning, deprovisioning, and access request management.
- Knowledge of RBAC, ABAC, PAM, SSO, MFA, and Identity Governance concepts.
Microsoft Technologies
- Microsoft Active Directory (AD)
- Microsoft Entra ID (Azure AD)
- Microsoft 365 Administration
- Conditional Access
- Azure AD Connect
- Microsoft Graph API (preferred)
IAM Platforms
- Okta
- SailPoint (preferred)
- CyberArk (preferred)
- Ping Identity (preferred)
Automation & Scripting
- PowerShell scripting (mandatory)
- Azure Logic Apps
- Microsoft Graph API
- Basic knowledge of Power Automate and REST APIs (preferred)
Authentication Protocols
- SAML 2.0
- OAuth 2.0
- OpenID Connect (OIDC)
- LDAP
- Kerberos
ITSM & Service Management
- ServiceNow or equivalent ITSM platform
- ITIL framework knowledge
Preferred Qualifications
- Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or related field.
- 3–6 years of experience in IAM operations, identity governance, or access management.
Preferred Certifications
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Okta Certified Professional
- SailPoint Identity Security Certification
- ITIL Foundation
- Certified Ethical Hacker (CEH)
- CompTIA Security+
At Tieto, we believe in the power of diversity, equity, and inclusion. We encourage applicants of all backgrounds, genders (m/f/d), and walks of life to join our team, as we believe that this fosters an inspiring workplace and fuels innovation. Our commitment to openness, trust, and diversity is at the heart of our mission to create digital futures that benefit businesses, societies, and humanity.
Important Advisory Regarding Recruitment Fraud
Tieto has been made aware of fraudulent recruitment activities being carried out by individuals falsely impersonating our organization.
Learn moreWe are Tieto - A leading software and technology consulting company
We provide customers across different industries with mission-critical solutions through our specialized software businesses Tieto Caretech, Tieto Banktech and Tieto Indtech as well as Tieto Tech Consulting business.
Our around 14 000 talented vertical software, design, cloud and AI experts are dedicated to empowering our customers to succeed and innovate with latest technology.
Tieto’s annual revenue is approximately EUR 2 billion. The company’s shares are listed on the NASDAQ exchange in Helsinki and Stockholm, as well as on Oslo Børs.
Related positions
Salary
Location
Bangalore, India
Location
Bengaluru
Job Families
Technical Specialist
Job Area
Technical and Functional Expertise
Function
Tieto Tech Consulting
Type of Employment
Full-time
Work location type
Onsite
Description
Role SummaryThe Senior IAM Governance, Risk & Compliance (GRC) Analyst is responsible for supporting and strengthening Identity and Access Management governance programs across the enterprise. The rol
Reference
0bcc7b43-581c-4de6-bd3e-07b802acb434
Expiry Date
01/01/0001
Salary
Location
Bangalore, India
Location
Bengaluru
Job Families
Technical Specialist
Job Area
Technical and Functional Expertise
Function
Tieto Tech Consulting
Type of Employment
Full-time
Work location type
Hybrid
Description
JD (Job Description) for CloudOps Engineer Position: CloudOps Engineer Exp: 5+ yrslocation:
Reference
f9a3635f-77d1-466c-b07d-9f010003c451
Expiry Date
01/01/0001
Salary
Location
Uppsala, Sweden
Location
Uppsala
Job Families
Solution Consultant
Job Area
Consulting
Function
Tieto Indtech
Type of Employment
Full-time
Work location type
Hybrid
Description
Verksamhetsutvecklare - Tieto Indtech Public360 (m/f/d) Strategic advisory & value-based consulting About Public 360° Tieto is a leading digital services and software company creating real digital
Reference
770a14c0-b20d-489d-a268-dbefb7acc503
Expiry Date
01/01/0001
Join our talent community
Whether you're actively job hunting or simply exploring, stay connected with exciting opportunities and updates from Tieto!
Sign up here