companyEnpal logo

Senior Identity & Access Management Engineer (f/m/x)

EnpalBucharestNew

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Mid to Senior

Qualifications

Technical Skills and Experience:Proven hands-on experience with Microsoft Entra ID (Azure AD) administration and identity operations.Extensive practical experience in implementing Conditional Access (design, rollout, troubleshooting).Experience in building and managing Joiner/Mover/Leaver processes and lifecycle automation.Strong experience conducting access reviews and implementing RBAC (role/group modeling and governance).Familiarity with Privileged Identity Management (PIM) and privileged access patterns (admin model, break-glass).Proficient in automation and APIs (e.g., PowerShell, Graph API) to scale IAM operations. Soft Skills:Structured, dependable, and detail-oriented with a strong sense of operational ownership.

About the job

As a Senior Identity & Access Management Engineer at Enpal, you will take ownership of our workforce's Identity & Access Management within Microsoft Entra ID. Your primary responsibility will be to ensure secure and scalable access through Conditional Access, a robust administrative model, and dependable identity lifecycle processes (Onboarding, Transitions, Offboarding). You will facilitate least-privilege access through RBAC, PIM/PAM, and regular access reviews, while promoting secure collaboration and sharing.

 

Policy Development and Governance:

  • Define and uphold IAM standards and guidelines for Entra ID, encompassing authentication, Conditional Access principles, privileged access, and external collaboration.

  • Establish and maintain the administrative model (role design, separation of duties, privileged role assignment strategy) and enforce least privilege through RBAC.

  • Oversee processes for access reviews, exceptions, and audit evidence related to identity controls.

 

IAM Engineering and Operations:

  • Administer and continuously enhance Microsoft Entra ID (tenant configuration, role design, groups, identity settings) as the core identity platform.

  • Design, implement, and manage Conditional Access policies (including rollout strategies, exclusions, and safe operations).

  • Develop and oversee Joiner/Mover/Leaver lifecycle processes, ensuring timely provisioning and deprovisioning while minimizing manual access management.

  • Manage Privileged Access controls:

  • Implement and maintain PIM/PAM (activation workflows, approval, time-bound access, role eligibility).

  • Oversee break-glass accounts and emergency access procedures (creation, secure storage, testing frequency).

  • Govern identity objects and special cases:

  • Manage guest accounts and external collaboration controls.

  • Oversee shared mailboxes, mail-enabled objects, and distribution groups.

  • Manage service/admin accounts and Microsoft 365 Groups/Security groups.

  • Drive operational quality through documentation, runbooks, change management, and troubleshooting of access/provisioning issues.

 

Collaboration and Stakeholder Engagement:

  • Collaborate with Corporate IT, HR, and application owners to ensure the quality of identity data and facilitate seamless onboarding and offboarding.

  • Provide guidance to teams on access design, RBAC models, group strategy, and reducing direct access.

About Enpal

At Enpal, we strive to build the largest renewable community in Europe. Our mission is to simplify the provision of solar energy by offering solar systems, electricity storage, and wall boxes on an all-inclusive basis, paired with a favorable green electricity tariff. Everything is intelligently interconnected to create an integrated solution. Guided by our motto "digital, decentralized, and 100% renewable," we are committed to rapid company development and tackling climate change, the greatest challenge of our generation.