IAM Engineer

Open 30d

We're fast learners, hard workers, natural collaborators... and we Make Modern Happen!

Our ambition is to unlock the potential of our digital world so that organisations everywhere can innovate and thrive securely. We aim to achieve this goal by bringing together the world’s most talented people and the most powerful technologies, combining them to address our customers' challenges and to build something stronger together.

If you share our vision, join us!

Right now, we are looking for an IAM Engineer to integrate our internal team.


Your responsibilities include:

  • Deliver reliable, secure, and compliant identity and access management operations across the client’s global estate.
  • Execute identity lifecycle management, authentication support, access provisioning, and security remediation within agreed SLAs, ensuring continuous service availability through 8x5 shift coverage between 8 a.m. and 10 p.m. + on call.


You must have:

  • Minimum 3 years’ hands-on experience in identity and access management or infrastructure engineering with a strong IAM focus.
  • Expert-level knowledge of Active Directory (AD DS), Kerberos, LDAP, and Group Policy.
  • Hands-on experience with Microsoft Entra ID (Azure AD), Conditional Access, MFA, and SSO.
  • Scripting skills for automation (PowerShell required; Python desirable).
  • Experience with ServiceNow (incident, change, request, and CMDB modules).
  • Familiarity with Privileged Access Management concepts and tools (CyberArk).
  • Familiarity with AD FS federation services and AD CS/PKI operations.
  • Knowledge of authentication protocols: SAML, OAuth 2.0, OpenID Connect.
  • Microsoft Certified: Identity and Access Administrator Associate (or working towards).
  • Effective under pressure with strong written and verbal communication skills in English (B2 or higher).

We value:

  • Previous experience within a managed service provider or financial services environment.
  • Experience with identity governance platforms (SailPoint).
  • Understanding of identity lifecycle automation via SCIM.
  • Knowledge of DORA, FCA, or PRA regulatory frameworks.
  • Experience with PIM, Access Reviews, and entitlement management.
  • Familiarity with RADIUS authentication and NAC integration.
  • Understanding of zero trust architecture principles.


We offer:

  • Regular professional development;
  • Health insurance, with family package;
  • Office facilities for meals and snacks;
  • Regular teambuilding programs;
  • Friendly workplace.


Workplace: Lisbon - Hybrid

Claranet, Make modern happen!