Security Consulting

Madrid HQ (KES51610), Spain

Kyndryl

At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day.

View all jobs at Kyndryl

Apply now Apply later

Who We Are

At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward – always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities.


The Role

We are seeking a seasoned Security Architect specializing in digital identity protection to design, implement, and govern scalable Identity and Access Management (IAM) and Privileged Access Management (PAM) solutions. You will lead solutions and projects about the strategic adoption of market‑leading identity security tools, with a primary focus on Microsoft Entra ID, to strengthen our Zero Trust posture and ensure robust identity lifecycle management across cloud and on‑premises environments.

Key Responsibilities

  • Define and maintain the enterprise Identity & Access Management architecture roadmap, aligning with business objectives and regulatory requirements.
  • Develop and enforce identity security standards, policies, and best practices (SSO, MFA, SAML, OAuth2, OpenID Connect, SCIM).
  • Collaborate with Cloud, Network, DevOps, and Application teams to embed identity security controls into CI/CD pipelines and cloud infrastructure (Azure, AWS, GCP).
  • Drive identity governance processes: access reviews, role‑based access control (RBAC), entitlement management, and orphaned account cleanup.
  • Mentor and guide cross‑functional teams on identity security concepts, tooling, and incident response for identity‑related threats.
  • Lead the design, implementation, and optimization of Microsoft Entra ID (Azure AD) services, including Conditional Access, Identity Governance, Privileged Identity Management (PIM), and B2B/B2C collaboration.
  • Evaluate, select, and integrate IAM/PAM solutions (e.g., Okta, SailPoint, CyberArk, BeyondTrust, Ping Identity) to enforce least‑privilege access and secure privileged accounts.


Who You Are

Required Qualifications

  • Bachelor’s degree in Computer Science, Information Security, or related field.
  • 7+ years of experience in IAM/PAM architecture, with at least 4 years focused on Microsoft Entra ID (Azure AD).
  • Deep expertise in designing and implementing Conditional Access, PIM, Identity Governance, and authentication protocols.
  • Hands‑on experience with market‑leading IAM/PAM platforms (Okta, SailPoint, CyberArk, BeyondTrust, Ping).
  • Strong understanding of Zero Trust identity principles, cloud identity models, and hybrid identity integration.
  • Proficiency in PowerShell, Microsoft Graph API, ARM templates, and automation frameworks.
  • Excellent communication, stakeholder management, and project leadership skills.

Preferred Certifications

  • Microsoft Certified: Azure Administrator Associate
  • Microsoft Certified: Azure Solutions Architect Expert.
  • Microsoft Certified: Identity and Access Administrator Associate
  • Microsoft Certified: Cybersecurity Architect Expert


Being You

Diversity is a whole lot more than what we look like or where we come from, it’s how we think and who we are. We welcome people of all cultures, backgrounds, and experiences. But we’re not doing it single-handily: Our Kyndryl Inclusion Networks are only one of many ways we create a workplace where all Kyndryls can find and provide support and advice. This dedication to welcoming everyone into our company means that Kyndryl gives you – and everyone next to you – the ability to bring your whole self to work, individually and collectively, and support the activation of our equitable culture. That’s the Kyndryl Way.


What You Can Expect

With state-of-the-art resources and Fortune 100 clients, every day is an opportunity to innovate, build new capabilities, new relationships, new processes, and new value. Kyndryl cares about your well-being and prides itself on offering benefits that give you choice, reflect the diversity of our employees and support you and your family through the moments that matter – wherever you are in your life journey. Our employee learning programs give you access to the best learning in the industry to receive certifications, including Microsoft, Google, Amazon, Skillsoft, and many more. Through our company-wide volunteering and giving platform, you can donate, start fundraisers, volunteer, and search over 2 million non-profit organizations.  At Kyndryl, we invest heavily in you, we want you to succeed so that together, we will all succeed.

Get Referred!

If you know someone that works at Kyndryl, when asked ‘How Did You Hear About Us’ during the application process, select ‘Employee Referral’ and enter your contact's Kyndryl email address.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0
Category: Consulting Jobs

Tags: APIs Automation AWS Azure CI/CD Cloud Computer Science Cyberark DevOps GCP Governance IAM Incident response Okta OpenID PowerShell SailPoint SAML SSO Zero Trust

Perks/benefits: Career development

Region: Europe
Country: Spain

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.