Identity & Access Management (IAM) AnalystCurrently seeking a professional to join our Information Security Office (OSI) team as an Identity & Access Management (IAM) Analyst. You will work closely with the Governance Team and OSI colleagues, as well as IT team, Product Owners and Business Owners. Your mission will be to ensure the security, integrity, and traceability of digital identities and access rights across the company systems and networks through the development of appropriate policies and controls.Responsabilities :
- Work within the Governance team.
- Define, review, update and communicate security policies, standards, guidelines, and best practices. Engage with Group wide standards.
- Contribute to the definition of IAM strategy, policy, standards, and procedures to manage the identity lifecycle (provisioning, modification, deprovisioning) across systems and applications and ensure Segregation of Duties.
- Support definition of accurate documentation of access roles, processes, and permissions matrices. Participate in the automation of access provisioning / deprovisioning processes.
- Ensure compliance of the company’s security standards by implementing assurance processes. Assess and challenge the operational effectiveness of security controls.
- Communicate and support security recommendations to meet business objectives in a proactive way.
- Define and update metrics to ensure that controls are in-place and managed properly to meet legal & regulatory compliance.
- Support access review, certification, and audit processes. Assist with analysis, documentation, and remediation actions in response to audit findings.
- Provide, as necessary, guidance to less experienced staff, taking a proactive approach to mentor other members of the OSI team.
- Be asked to take on additional duties as well, when needed.
- Work 80% remotely.Required Skills & Experience
- Have a bachelor’s degree in IT or related field.
- Have at least 3-5 years of professional experience working within Information Security and the responsibilities described above.
- Understanding of concepts such as RBAC, least privilege and multi-factor authentication (MFA).
- Excellent interpersonal skills, including ability to analyze data and generate compliance reports.
- Knowledge of Information Security Governance and Compliance frameworks (ISO 27001, NIST, etc.)
- Excellent verbal and written communication skills.
- Strong background in all aspects of IT.
- Fluent English proficiency (minimum B2, desirable C1).
- Good time management and related organizational skills.Desirable but not required :
- Information Security certification (e.G. CSX, CISSP, CRISC, CISA, CISM, etc.) is a plus.
- Familiarity with IAM tools (e.G. Entra ID, Okta, Sailpoint, CyberArk, etc.) will be considered.
- Knowledge of PCI, SWIFT, LPIC and NIS-D compliance schemes.
- Experience working in regulated environments or critical infrastructures.
- Proven history of working independently in a self-motivated manner.Why Capitole?We are great, but with you, we will be even greater ?. That is why you will have :
Individual training budget of €1200 (languages, books, certifications)Flexible working hoursFlexible remuneration packageGreat discounts at sports centers (Wellhub)Free private health insuranceMonthly follow-ups with your team to have continuous feedbackTeam Buildings every two months. You can't miss the Pool Party? and our Christmas dinner?Discounts in international brands for employees (Club CapitoleYou will have the opportunity to meet the whole family through our Technology communities, to share your knowledge and ideas. Knowledge exchange is key to us!Do not know us yet? Discover more hereAnd have a look to how others think we are ?We are excited to meet you! ?