Access Control Product Owner

Jobs2Web

Sant Cugat del Vallès

On-site

EUR 70,000 - 110,000

Full time

42 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Flexible working conditions
Life and accident insurance
Health insurance
Learning and development
Gym membership discounts

Job summary

Boehringer Ingelheim is seeking a Product Owner for the Access Control Team to own the PAM, Azure App Registration, and Conditional Access domains within the Global IT Infrastructure.

You will design, implement, and optimize secure, scalable services, working with global teams, auditors, and business stakeholders to ensure compliance, governance, and ongoing improvement across identity platforms.

Qualifications

  • Bachelor’s degree + 5 years, or 7 years relevant experience.
  • Experience with Privileged Access Management and enterprise password management.
  • Governing Azure App Registrations, Enterprise Applications, Application Proxy in hybrid environments.
  • Strong knowledge of Conditional Access and identity security controls.
  • Experience with OAuth 2.0, OpenID Connect, and SAML.

Responsibilities

  • Own PAM, Azure App Registration, and Conditional Access portfolio and governance.
  • Define standards and lifecycle governance for Azure AD App Registrations and Enterprise Applications.
  • Own the Azure AD Application Proxy service model and architecture.
  • Act as accountable owner for identity-related risks and incidents.
  • Collaborate with architects, delivery teams, and stakeholders to drive secure, compliant solutions.

Skills

Strong teamwork
Excellent English communication
Project management
Agile
Cloud security

Education

Bachelor’s degree + 5 years, or 7 years relevant experience

Tools

PowerShell
Python
Azure AD / Entra ID

Job description

Partner with Global IT team members and the client community to deliver IT systems that utilize underlying solutions in support of business objectives to improve productivity and enhance security processes. Activities include analysis, interpretation, identifying trends, and driving corrective actions at service and product level. Responsibilities include leading and participating on project teams, and endtoend accountability for PAM technology within the respective areas. Duties may include service oversight, lifecycle management, and coordination of operational activities.

You will work as part of a global team responsible for Privileged Access Management, App Registration Service, Conditional Access, and other services within the IT Infrastructure, CyberSecurityteam. Your core responsibility will be to design, implement, and deliver systems and standards that support a secure, consolidated, and scalable service at Boehringer Ingelheim, including lifecycle management, optimization, governance, and advanced technology consulting.

As an employee of Boehringer Ingelheim, you will actively contribute to the discovery, development, and delivery of our products to our patients and customers. Our global presence provides opportunities for all employees to collaborate internationally, offering visibility and opportunity to directly contribute to the company’s success. We realize that our strength and competitive advantage lie with our people. We support our employees in several ways to foster a healthy working environment, meaningful work, diversity and inclusion, mobility, networking, and worklifebalance. Our competitive compensation and benefit programs reflect Boehringer Ingelheim’s high regard for our employees.

As Product Owner for the Access Control Team, you are accountableendtoendfor the service, covering strategy, architecture, delivery, compliance, projects, and continuous improvement. You act as domainexpert and main audit contact, ensuring that services are secure, compliant, costeffective, and globally consistent. You work within a global IT Infrastructure Cybersecurity organization and partner closely with Service Lines, Architecture, Operations, Vendors, and Business Stakeholders to deliver consolidated, enterprisegrade, scalable, and stateoftheartsolutions.

Tasks and responsibilities
  • Product Management & Project Management: You will be responsible for managing our product portfolio, including its ongoing evolution and enhancement. Strong project management skills are essential, as they support the continuous development of our products.
  • Azure App Registration Governance: Define standards and lifecycle governance for Azure AD App Registrations and Enterprise Applications, ensuring service principals and managed identities are designed and maintained in line with security and automation requirements.
  • Conditional Access Strategy & Oversight: Own the Conditional Access policy framework, ensuring alignment with enterprise security objectives (MFA, device compliance, riskbasedaccess) and validating policy effectiveness through metrics and reporting.
  • Azure AD Application Proxy Service Ownership: Own the service model and architecture for Azure AD Application Proxy, ensuring secure and standardized access to onpremises applications in collaboration with network and infrastructure teams.
  • Privileged Access Management: You will own the Privileged Access Management product portfolio, overseeing its strategy, lifecycle, and continuous evolution. This includes driving enhancements to improve security, compliance, and user experience across privileged access solutions to ensure the ongoing development and maturity of PAM services.
  • Incident & Risk Accountability: Act as accountable owner for identity related risks and incidents, ensuring proper rootcause ownership, corrective actions, and continuous improvement.
Additional Product Owner Responsibilities
  • Represent the product and service internally and externally.
  • Define and maintain product vision, roadmap, and strategy.
  • Ensure alignment with stakeholders, users, and enterprise architecture.
  • Coordinate with architects, SMEs, delivery teams, and service providers.
  • Apply agile, technical, leadership, and product management skills to maximize business value.
Requirements
  • Education & Experience: Bachelor's degree + 5 years, or 7 years of relevant experience
  • Privileged Access Management, Secrets Management & Enterprise Password Management knowledge or experience.
  • Consolidated experience governing Azure App Registrations, Enterprise Applications, ApplicationProxy and Service Principals in hybrid environments.
  • Strong knowledge of Conditional Access policy frameworks and identity security controls.
  • Strong understanding of OAuth 2.0, OpenID Connect, and SAML protocols from a design and governance standpoint.
  • Strong teamwork and collaboration mindset.
  • Excellent English communication skills, written and verbal.
  • Preferred Experience: Scripting and automation knowledge (PowerShell, Python) to support design decisions and service evolution; knowledge of Azure AD / Entra ID, network security, and access control best practice & Zero Trust Concepts; experience supporting identity governance, compliance reviews, and audits; experience operating in global organizations; conducting compliance checks and access control assessments.

#IamBoehringerIngelheim because…

We are continuously working to design the best experience for you. Here are some examples of how we will take care of you:

  • Flexible working conditions
  • Life and accident insurance
  • Health insurance at a competitive price
  • Investment in your learning and development
  • Gym membership discounts
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IAM Developer & Automation Engineer
IAM Developer & Automation Engineer

Jobs2Web • Sant Cugat del Vallès

Hybrid
EUR 50,000 - 70,000
Flexible working conditions
Life and accident insurance
Health insurance
+2
Senior Product Engineer (DevOps & Operations)
Senior Product Engineer (DevOps & Operations)

Jobs2Web • Sant Cugat del Vallès

On-site
EUR 70,000 - 90,000
Flexible working conditions
Life insurance
Health insurance
+2
Platform Support & Onboarding Engineer
Platform Support & Onboarding Engineer

Boehringer Ingelheim • Sant Cugat del Vallès

On-site
EUR 60,000 - 90,000
Flexible working conditions
Life and accident insurance
Health insurance
+2
Lead Access Control Product Owner—PAM & Azure AD
Lead Access Control Product Owner—PAM & Azure AD

Jobs2Web • Sant Cugat del Vallès

On-site
EUR 70,000 - 110,000
Flexible working conditions
Life and accident insurance
Health insurance
+2
GxP System Lead
GxP System Lead

Jobs2Web • Sant Cugat del Vallès

On-site
EUR 70,000 - 110,000
Senior CMDM Solution Architect - Global Data & Integrations
Senior CMDM Solution Architect - Global Data & Integrations

Boehringer Ingelheim • Sant Cugat del Vallès

On-site
EUR 90,000 - 130,000
Flexible working conditions
Life and accident insurance
Health insurance at a competitive rate
+2
Salesforce Solution Engineer 1
Salesforce Solution Engineer 1

Boehringer Ingelheim • Barcelona

On-site
EUR 60,000 - 90,000
Flexible working conditions
Life and accident insurance
Health insurance
+2
IGA & PAM Product Owner (m/f/d)
IGA & PAM Product Owner (m/f/d)

Liebherr Group • Madrid

On-site
EUR 70,000 - 90,000
Competitive compensation and benefits
Flexible and hybrid working model
Continuous learning and development
+3
Senior Identity And Access Management Engineer - Cloud Environment
Senior Identity And Access Management Engineer - Cloud Environment

Roche • Madrid

On-site
EUR 50,000 - 70,000
Principal Software Engineer
Principal Software Engineer

Boehringer Ingelheim • Sant Cugat del Vallès

On-site
EUR 90,000 - 130,000
Flexible working conditions
Life and accident insurance
Health insurance
+2