Job
- Level
- Experienced
- Job Field
- IT, Security
- Employment Type
- Part Time/Full Time
- Contract Type
- Permanent employment
- Location
- Frankfurt
- Working Model
- Hybrid, Onsite
Job Summary
In this role, you will develop and implement comprehensive identity and access management architectures while advising teams on security standards to optimally protect privileges and digital identities in complex IT environments.
Job Technologies
Your role in the team
- Development, maintenance, and further development of comprehensive Identity & Access Management architectures for complex on-premises, cloud, and hybrid environments.
- Definition and implementation of security standards, policies, and architectural principles for digital identities, authentication, authorization, privileged access management, as well as federated and cross-application access models.
- Design and implementation of modern IAM concepts (including Single Sign-on, Multi-Factor Authentication, Identity Federation, Role-/Attribute-Based Access Control, Privileged Access Management, Identity Governance & Administration).
- Design and further development of secure identity and access architectures for internal users, external third parties, technical identities, APIs, and privileged accounts, taking into account regulatory and supervisory requirements.
- Consulting of business units, IT teams, and DevOps on secure IAM and access designs (Secure-by-Design) as well as the implementation of new applications, services, and integration scenarios.
- Planning, implementation, and continuous improvement of IAM components and controls (e.g., Identity Provider, Federation Services, MFA solutions, PAM, IGA, Secrets Management, Access Reviews).
- Assessment of identity and access risks as well as conducting threat modeling, architecture, and security reviews for user, administration, partner, and service account-related access scenarios.
- Ensuring compliance with regulatory requirements (e.g., DORA, BAIT, MaRisk) in the banking environment regarding authentication, access control, recertification, traceability, and protection of privileged access.
- Collaboration with Information Security, Risk and Compliance units, Enterprise Architecture, Platform and Application teams, as well as external auditors and service providers.
- Support in identity- and access-related security incidents (Incident Response) as well as the further development of related monitoring, logging, and detection concepts.
- Monitoring technological trends in the field of IAM & Zero Trust (e.g., Passwordless, Continuous Authentication, Just-in-Time Access, Identity Threat Detection & Response) and deriving actionable recommendations for the bank.
This text has been machine translated. Show original
Our expectations of you
Education
- Completed degree in (Business) Informatics, IT Security, or a comparable qualification.
Qualifications
- In-depth knowledge in designing and securing identity and access models for users, privileged roles, technical identities, third parties, and applications across on-premises, cloud, and hybrid environments.
- In-depth knowledge of regulatory and supervisory requirements in the financial sector (e.g., DORA) and their implementation in the field of Identity & Access Management.
- Very strong analytical skills as well as a structured, risk-oriented, and solution-focused approach to work.
- Strong communication and consulting skills to effectively convey complex IAM topics to specialist departments and management.
Experience
- Several years of experience in Identity & Access Management architecture, ideally in the financial or banking sector.
- Extensive experience with IAM technologies and controls such as Single Sign-on, Multi-Factor Authentication, Federation, Identity Governance & Administration, Privileged Access Management, Secrets Management, as well as access recertification and monitoring solutions.
- Experience in securing administrative access, service accounts, API access, and third-party access, as well as handling complex role and permission models.
- Experience with architecture frameworks and security models (e.g., Zero Trust, NIST) as well as in documenting target architectures, roadmaps, and architecture decisions.
This text has been machine translated. Show original
What we offer
- 30 days of vacation.
- Flexible working.
- Professional Training & Development.
- Asset-building benefits.
- Friendly working environment.
- Diverse tasks.
- Work-Life Balance.
This text has been machine translated. Show original
Benefits
Work-Life-Integration
More net
Health, Fitness & Fun
Topics that you deal with on the job
Job Locations
This is your employer
Commerzbank AG
Commerzbank is an internationally-operating commercial bank with locations in nearly 50 countries and 49,000 employees. It offers a comprehensive range of financial services to private, business, and corporate customers. Commerzbank is a reliable and trusted source for all your banking needs.
Description
- Company Size
- 250+ Employees
- Company Type
- Established Company
- Working Model
- Full Remote, Hybrid, Onsite
- Industry
- Banking, Finance, Insurance
Employer reviews
by devworkplaces.com
Total
(1 Review)3.6
Workingconditions
4.4Engineering
3.2Career Growth
3.6Culture
3.5