Job Description
Roles & Responsibilities
- Conduct IAM assessments and audits to identify vulnerabilities and areas for improvement in existing IAM infrastructure.
- Develop and maintain IAM policies, standards, and procedures to ensure consistent and secure identity management practices.
- Provide technical guidance and mentorship to junior team members on IAM-related topics and technologies.
- Collaborate with cross-functional teams, including security, IT operations, and application development, to integrate IAM solutions.
- Troubleshoot and resolve complex IAM issues, providing timely and effective solutions.
Desired Candidate Profile
Possesses relevant certifications such as CISSP, CISM, or GIAC certifications to demonstrate expertise in the field.
Demonstrates 5+ years of experience in IAM, showcasing practical application of IAM principles and technologies.
Has a strong understanding of IAM concepts, including authentication, authorization, and identity governance.
Exhibits experience with IAM platforms such as Okta, Azure AD, or SailPoint to showcase practical experience.
Possesses strong analytical and problem-solving skills to identify and resolve complex IAM issues.
Creating internal knowledge articles for the best mitigation strategies in the space of Application security and BOT mitigation through products like F5 WAF, PerimeterX.
Providing training to the peers and application team members on cloud security, web application security and defence strategies.
Consultation, Integration and Management of Akamai's Security Solutions including Web Application Firewall(WAF), Bot Manager, Cloud Monitor, Secure DNS, Client reputation, SIEM and Site Shield.
Technical Project Manager for multiple projects, responsible for ownership and credibility of all the tasks on the accounts.
Worked on the OWASP Mod-security ruleset to fine-tune as per customer needs and prevent from the well-known attacks like SQL Injection, Cross-Site Scripting, Command Injection, Remote File Inclusion etc.
Worked on extensive consulting projects and POCs with multiple financial/fintech, hospitality & travel customers on solving their bots related problems.
وصف الوظيفة
الأدوار والمسؤوليات
- إجراء تقييمات ومراجعات IAM لتحديد الثغرات والمجالات التي تحتاج إلى تحسين في بنية IAM الحالية.
- تطوير وصيانة سياسات IAM والمعايير والإجراءات لضمان ممارسات إدارة الهوية المتسقة والآمنة.
- تقديم الإرشاد الفني والتوجيه لزملاء الفريق المبتدئين حول مواضيع وتكنولوجيات IAM.
- التعاون مع فرق متعددة الوظائف، بما في ذلك الأمن وعمليات تكنولوجيا المعلومات وتطوير التطبيقات، لدمج حلول IAM.
- تشخيص المشكلات المعقدة في IAM وحلها، وتقديم حلول فورية وفعالة.
الملف المرغوب للمرشح
يرتبط بالحاصلين على شهادات مثل CISSP أو CISM أو GIAC لإظهار الخبرة في المجال.
يوجد لديه خبرة 5+ سنوات في IAM، مع عرض التطبيق العملي لمبادئ وتكنولوجيات IAM.
لديه فهم قوي لمفاهيم IAM، بما في ذلك المصادقة والتخويل وحوكمة الهوية.
يظهر خبرة مع منصات IAM مثل Okta وAzure AD أو SailPoint لإظهار خبرة عملية.
يمتلك مهارات تحليلية قوية وحل المشكلات لتحديد المشكلات المعقدة في IAM وإيجاد حلولها.
إنشاء مقالات معرفية داخلية لأفضل استراتيجيات التخفيف في مجال أمان التطبيقات وMITIGATION BOT من خلال منتجات مثل F5 WAF وPerimeterX.
تقديم التدريب للأقران وأعضاء فريق التطبيقات حول أمان السحابة وأمان تطبيقات الويب واستراتيجيات الدفاع.
الاستشارة والتكامل وإدارة حلول أمان أكاماي بما في ذلك Web Application Firewall(WAF)، Bot Manager، Cloud Monitor، Secure DNS، سمعة العميل، SIEM وSite Shield.
مدير مشروع تقني لعدة مشاريع، مسؤول عن الملكية والمصداقية لجميع المهام في الحسابات.
عمل على مجموعة قواعد OWASP Mod-security وتعديلها وفق احتياجات العميل ومنع الهجمات المعروفة مثل حقن SQL، والبرمجة عبر المواقع، وحقن الأوامر، والضمين عن بُعد..
عمل على مشاريع استشارية واسعة وأدلة إثبات مفاهيم مع عدة عملاء مالية/FinTech، وضيافة وسياحة لحل مشاكل الروبوتات الخاصة بهم.