Identity & Access Management (IAM) Engineer, Group IT Security
Cape Town Office
First Quantum Minerals
At First Quantum, we free the talent of our people by taking a very different approach which is underpinned by a very different, very definite culture – the “First Quantum Way”.
Working with us is not like working anywhere else, which is why we recruit people who will take a bolder, smarter approach to spot opportunities, solve problems and deliver results.
Our culture is all about encouraging you to think independently and to challenge convention to deliver the best result. That’s how we continue to achieve extraordinary things in extraordinary locations.
Job description:
Company Description
First Quantum Minerals is a leading Canadian-based global mining & metals company focused on the production of copper, nickel, gold & cobalt. As a company, we strive for continuous excellence and after 25 years of operations we are now one of the world’s top 10 copper producers, exporting millions of tonnes of concentrate from multiple countries to customers worldwide. Our operations and future developments span across Africa, Europe, the Middle East, Australia and the Americas, and we are globally recognised for our specialist technical, engineering, construction and operational skills, which allow us to unlock value from complex mineral projects and deliver rewarding careers for our people, returns for our shareholders and sustainable development for the many local communities that host our operations. As we expand our operations, continue to provide metals to build the modern world and shift to a low carbon, greener economy in the years ahead, our mining projects will continue to require the best and the brightest talent to help us solve the emerging challenges of our time, shape our business and unlock opportunities for our future.
Job Description
Although our production and financial results are the engine that drives our business, it is the depth of capability in our people that will continue to determine First Quantum’s ongoing success. Reporting to the Identity & Access Management Lead, this role will form an integral part of our Group IT Security function. The IAM Engineer will be responsible for the technical implementation, maintenance, and optimisation of Identity and Access Management solutions across the organisation's Digital footprint.
Key Responsibilities:
The IAM Engineer's general accountabilities include, but are not limited to, the below:
- Implement and configure IAM solutions, including Azure AD/Entra, Active Directory, and Identity Governance platforms to ensure secure and efficient access control for enterprise applications and resources.
- Design and execute technical integrations for Single Sign-On (SSO), Multi-Factor authentication and Identity lifecycle management to enhance security and streamline user authentication processes across the organisation.
- Perform technical configuration and maintenance of Identity Governance and Administration (IGA) tools.
- Conduct technical assessments of identity and access systems, identifying security gaps and recommending improvements.
- Implement and maintain Privileged Access Management (PAM) solutions
- Support the implementation of Just-in-Time (JIT) and Just-Enough-Access (JEA) principles.
- Assist in developing and maintaining technical documentation for IAM processes and configurations.
- Troubleshoot complex identity and access-related technical issues.
- Develop and maintain scripted solutions for identity management.
- Respond to audit findings and implement remediation measures.
- Support the implementation of identity-related security policies and standards.
- Collaborate with Cross-Functional Teams: Work with IT, Security, and Application teams to assess and improve identity and access management solutions, ensuring alignment with business objectives.
Qualifications:
- A Graduate qualification in Information Security, Computer Science, or Engineering is highly regarded.
- Professional certifications preferred (e.g., Microsoft Identity Professional, ISC2 CC, CompTIA Security+).
Experience & Technical Skills Required:
- 5+ years of hands-on experience in IAM implementation within an Enterprise environment
- Strong technical proficiency with:
- Azure AD/Entra Identity
- Active Directory
- Saviynt EIC
- CyberArk
- Scripting skills (PowerShell)
- Experience with API integrations for identity management
- Strong familiarity with SAML, OAuth, OpenID Connect
- Understanding of identity protocols and security frameworks
- Understanding of regulatory requirements and IAM security best practises
- Experience with identity lifecycle automation tools
Technical Competencies:
- Detail-oriented with strong analytical skills
- Excellent technical communication abilities
- Proactive approach to learning new technologies
- Ability to work effectively in a team environment
- Ability to diagnose and resolve IAM-related issues and optimise performance
- Quick learner with a passion for cybersecurity technologies
Behavioural Traits:
- Ability to work under pressure in a sometimes-stressful environment with little supervision.
- Strong verbal and written communication skills, with the ability to collaborate effectively with both technical and non-technical stakeholders.
- Flexible and adaptable – capable of changing direction when required and flexible to meet new demands.
- Multi-tasking – can manage several concurrent projects and prioritise demands.
- Can make decisions that are well informed and timely.
- Ability to progress work without significant need for support from senior colleagues.
- Solve problems collaboratively.
- Promote innovation, desired values and ways of working.
- Be boundaryless and share knowledge to improve the wider team capability.
Other Requirements:
- Hybrid working is allowed with 3-4 office days per week
- Travel to sites as and when required (International)
- Commitment to continuous learning and staying current with emerging IAM technologies
Core Values & Behavioural Profile:
FQM’s culture is centered on fostering innovation, harnessing original thinking and challenging convention. We work Bolder, Smarter, Driven, Together. These 4 pillars are the keys to our growth in the past, the success of our present, and the foundations of our continued evolution and improvement into the future.
Additional Information
First Quantum Benefits
A dynamic, challenging and extraordinary working environment where safety is a number one priority.
Opportunity to develop within a growing company that is currently one of the world's top 10 copper producers.
Highly competitive base compensation & financial incentives (discretionary bonuses & Long term share plan).
Leave options aligned with local market best practice.
Performance over presence, culture & flexible working environment as per business requirements.
Diversity & Inclusion
At FQM, while at the beginning of our D&I journey, we are committed to embedding the principles of diversity and inclusion into our culture, company and practices with the aim of ensuring an environment of equity irrespective of race, gender age, religion, identity or experience.
Visit our website and register for instant job alerts at careers.first-quantum.com
Follow us for the latest news at LinkedIn
If you are already a First Quantum employee and have access to the First Quantum network, log into First Quantum MINE > Careers to apply internally for this opportunity.
If you are an employee without network access, contact your Site Recruiter.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Active Directory APIs Automation Azure CompTIA Computer Science Cyberark Governance IAM OpenID PowerShell SAML Scripting SSO
Perks/benefits: Career development Competitive pay Equity / stock options Flex hours
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.