IAM Systems Engineer
Lisbon
Mollie
Start growing your business with Mollie Payments: ✓ Quick setup ✓ Honest pricing ✓ All leading payment methods. Get paid now »At Mollie, we’re on a mission to make payments and money management effortless for every business in Europe. We started 20 years ago when we launched a more direct, affordable way for companies to get paid. That provided an alternative to the frustrating, overpriced solutions that banks offered at the time. Today, we serve more than 250,000 businesses across Europe with an all-in-one solution that simplifies payments and money management. And we’re a 850-strong team of product, finance, support, commerce, and engineering specialists working across Europe – from Lisbon to London.
Your Opportunity
As an IAM Engineer at Mollie, you will play a crucial role in designing, implementing, and maintaining secure identity and access management solutions. You will specialise in identity governance, access control, authentication mechanisms, and automation, ensuring seamless user experiences while enhancing security and compliance.
With a deep understanding of identity lifecycle management and role-based access control (RBAC), you will drive the development of scalable IAM frameworks that support Mollie’s growth. Your work will streamline access provisioning, improve compliance, and reduce security risks through automation and best practices.
At Mollie, we always aim for the best solutions - balancing security, efficiency, and user experience.
What You'll Be Doing
Identity & Access Governance: Develop and enforce IAM policies, RBAC/ABAC models, and privileged access management (PAM) to safeguard critical assets.
Identity Lifecycle Automation: Implement automated provisioning, deprovisioning, and access reviews using tools like Terraform, Midpoint, or SailPoint.
Authentication & Authorisation: Design and maintain SSO (SAML/OIDC), MFA, and Just-in-Time (JIT) access provisioning to enhance security posture.
IAM Infrastructure & Integrations: Manage and optimise IAM integrations across enterprise SaaS tools like Okta, Google Workspace, Atlassian, Slack, and Salesforce.
Compliance & Security Best Practices: Ensure IAM systems align with industry regulations (e.g., PCI-DSS, ISAE, DORA) and internal security frameworks.
Audit Support at Mollie: Serve as a key liaison between stakeholders to facilitate the successful collection and delivery of audit evidence for IAM-related topics.
Incident Response & Troubleshooting: Serve as the technical escalation point for IAM-related security issues, ensuring quick mitigation and resolution.
Collaboration & Enablement: Partner with Security, IT, DevOps, and Engineering teams to develop cohesive access management strategies.
Continuous Improvement: Enhance IAM observability, audit logging, and anomaly detection to prevent unauthorised access and insider threats.
Documentation & Training: Maintain detailed IAM documentation and provide training to ensure best practices are followed across the organisation.
What You'll Bring
Proven Expertise: 3+ years in IAM Engineering, Identity Governance, or a related security role.
IAM Frameworks: Strong knowledge of RBAC, ABAC, PAM, and Zero Trust principles.
Automation & Infrastructure as Code: Experience automating IAM workflows using Terraform, Ansible, or similar tools.
SSO & Federation: Hands-on experience with SAML, OIDC, OAuth2, and directory services.
Cloud IAM: Familiarity with IAM controls in Google Cloud Platform (GCP) or other cloud environments.
Security-First Approach: Deep understanding of access management risks, compliance requirements, and threat detection.
Technical Troubleshooting: Strong analytical and problem-solving skills for diagnosing IAM-related issues.
Collaboration & Communication: Ability to work cross-functionally with Security, IT, and Engineering teams.
Nice to Have
Experience working with audit teams and regulatory compliance in financial services.
Familiarity with Identity Governance Administration (IGA) tools such as Midpoint, SailPoint, or Saviynt.
Knowledge of security compliance frameworks (e.g., PCI-DSS, ISAE, DORA).
Scripting or development experience in Python, Java, or Go for IAM automation.
Understanding of HRIS systems and identity workflows related to employee onboarding/offboarding.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Ansible Automation Cloud Compliance DevOps Finance GCP Governance IAM Incident response Java Okta Python SaaS SailPoint SAML Scripting SSO Terraform Threat detection Zero Trust
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.