Remote job
Lead Identity & Access Management Specialist
Wrike
Our assessment
- The posting states no salary. Comparable roles in our index (11 postings): median 3,750 euros per month, middle range 2,944 to 5,717 euros.
- 14 more open roles from this employer in our index. 14 of them fully remote.
This section only: calculated automatically by nomado24, from our own job index and our own reading of the posting text. Not stated by the employer.
Job description
Wrike is the most powerful work management platform. Built for teams and organizations looking to collaborate, create, and exceed every day, Wrike brings everyone and all work into a single place to remove complexity, increase productivity, and free people up to focus on their most purposeful work.
Wrike is our people, not a place. As a distributed team, we own our growth, stay globally connected, and rely on the product we build to deliver impactful work alongside brilliant minds. You'll have real ownership over meaningful work, a global team that has your back, and the flexibility to do your best work your way. If that sounds like you, we'd love to hear from you.
Our vision: A world where everyone is free to focus on their most purposeful work, together.
About the Role:
As the Lead Identity & Access Management Specialist you will be the primary architect and team leader driving our cloud application security posture. Your mission is to balance business agility with absolute data protection across our sprawling SaaS ecosystem (including M365, Slack, Salesforce, etc).
In this role, you will bridge the gap between user enablement and risk management by owning Identity and Access Management (IAM), deploying SaaS Security Posture Management (SSPM) tools to prevent configuration drift, and governing the entire lifecycle of our business applications. Crucially, you will lead, mentor, and scale a high-performing team of IT engineers with a strong security mindset, fostering a collaborative culture rooted in automation and proactive risk reduction.
Your Impact:
- By building and automating robust Identity pipelines: You will design, configure, and maintain our Identity Providers (IdP) using SAML 2.0, OIDC, and OAuth 2.0. You will leverage SCIM to automate provisioning and ensure immediate, airtight offboarding to prevent orphan accounts.
- By hardening our SaaS posture against configuration drift: You will deploy and manage SaaS Security Posture Management (SSPM) tools. You will establish and enforce security baselines (such as CIS benchmarks) across our key tools, catching unauthorized administrative changes in real time.
- By governing the security of third-party integrations: You will audit, restrict, and manage OAuth permissions granted to third-party add-ons and AI extensions, ensuring our enterprise data remains inside approved boundaries.
- By mitigating Shadow IT and assessing third-party risk (TPRM): You will analyze CASB, proxy, and endpoint logs to discover unauthorized SaaS usage. You will partner with Procurement to assess the security profiles of new software vendors by auditing SOC 2 reports, ISO certifications, and CAIQ sheets.
- By championing technical leadership and team growth : You will build, mentor, and guide a dedicated team of IT professionals. By establishing engineering best practices, leading agile workflows, and promoting continuous learning, you will multiply your impact across the entire organization and cultivate the next generation of cloud security talent.
Your Qualifications:
- Experience: 5+ years of dedicated experience in Cloud Security, IAM Administration, or IT Security Operations, including 1-2 years of experience leading, mentoring, or acting as a technical coordinator for other engineers.
- Technical Skills:
- Deep expertise in identity protocols: SAML 2.0, OIDC, OAuth 2.0, and SCIM.
- Hands-on administration experience with modern IdPs (Okta or Microsoft Entra ID / Azure AD).
- Scripting capabilities in Python, PowerShell, or Bash to automate security workflows and interact with SaaS APIs.
- Soft Skills: Exceptional collaboration and communication skills to explain complex security practices to non-technical stakeholders, combined with a pragmatic, problem-solving mindset and proven leadership capabilities to unblock and motivate team members.
Standout Qualities:
- You hold an industry-recognized Cloud Security certification like CCSP or CCSK (Cloud Security Alliance).
- You hold a specialized identity certification like Microsoft SC-300 or an Okta Certified Professional/Administrator credential.
- You have direct experience deploying and running enterprise-grade SSPM or DSPM solutions (e.g., Wiz, AppOmni, Reco, or Defender for Cloud Apps).
- Leadership Excellence: You have a proven track record of designing technical roadmaps, translating business objectives into actionable engineering sprints, and successfully leading a small-to-midsize IT or Security team through complex migrations or infrastructure overhauls.
Team Dynamics:
- Reporting: You will report directly to IT Ops Lead, joining a team that values proactive protection and automated operations.
- The Neighborhood: You will collaborate daily with IT Operations, HR Ops (for automated onboarding/offboarding workflows), Security, Procurement (for vendor assessments), and departmental leads across the company.
- Our Work Style: We operate in a highly flexible, remote-friendly, and …
This role is provided by an external source. Applications are handled on the source website.
