Web Access Management Engineer - RDT Identity & Access Management

Roche Holding AG

Madrid

Híbrido

EUR 90.000 - 130.000

Jornada completa

Hace 6 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Consigue una respuesta de este empleador — un currículum y una carta de presentación adaptados exactamente a lo que busca para contratar.

Supera los filtros ATS

Descripción de la vacante

Roche Holding AG sucht einen erfahrenen Cybersecurity Senior Engineer für den Web Access Bereich. Sie arbeiten in einem globalen Team an SSO, Federation und MFA, schützen Informationen und Systeme vor unbefugtem Zugriff und Sicherheitsrisiken.

Sie gestalten Authentifizierungsflüsse, betreuen On-Premise-Server, Containerumgebungen und SaaS-Komponenten und arbeiten eng mit Produkt-, Sicherheits- und Entwicklungsteams zusammen.

Formación

  • Mindestens 7 Jahre Erfahrung in einer globalen Organisation, idealerweise in regulierter Industrie.
  • Abschluss in Informatik/Engineering oder gleichwertige Berufserfahrung.
  • Erfahrung im Umgang mit diversen Stakeholdern als vertrauenswürdiger Berater.
  • Nachweisliche Führungsqualitäten in Sicherheitsprojekten oder Incident-Lead-Rollen.

Responsabilidades

  • Eigenständige Verantwortung für Authentifizierungsinfrastruktur (SSO, MFA) weltweit.
  • Beratung von Support- und Entwicklungsorganisationen, Incident-Response und Change-Management.
  • Nutzen von Verschlüsselung, Signaturen und sicherem Token-Austausch.
  • ITIL-Prozesse anwenden, Produktion bei Authentifizierungsproblemen unterstützen.
  • Auf dem Laufenden bleiben zu neuesten Authentifizierungstechnologien und Bedrohungen.
  • Zusammenarbeit mit Product- und Sicherheitsteams, um sichere Anmeldeabläufe zu gestalten.
  • Entwicklung robuster Authentifizierungs-/Autorisierungsfeatures zur Sicherheit der Organisation.

Conocimientos

IAM
SAML/OIDC
OAuth 2.0
MFA
SSO
Verschlüsselung
Security Architektur
ITIL
Stakeholder Management
Kubernetes/Docker

Educación

Bachelorabschluss in Informatik oder verwandter Fachrichtung

Herramientas

Okta
Azure AD
Ping Identity
Auth0
SAML
OIDC
YubiKey

Descripción del empleo

Bei Roche kannst du ganz du selbst sein und wirst für deine einzigartigen Qualitäten geschätzt. Unsere Kultur fördert persönlichen Ausdruck, offenen Dialog und echte Verbindungen. Hier wirst du für das, was du bist, wertgeschätzt, akzeptiert und respektiert. Dies schafft ein Umfeld, in dem du sowohl persönlich als auch beruflich wachsen kannst. Gemeinsam wollen wir Krankheiten vorbeugen, stoppen und heilen und sicherstellen, dass jeder Zugang zur Gesundheitsversorgung hat – heute und in Zukunft. Werde Teil von Roche, wo jede Stimme zählt.

Die Position

As a Cybersecurity senior engineer in the Web Access space, you would be part of a multicultural and global team focused on Single Sign On (SSO) / Federation and Multifactor authentication, protecting our information and assets from unauthorized access, security risks and cyber attacks:

  • To provide customers’ single sign-on experience supporting Federation focus on SAML and OAuth protocols standards.

  • To avoid unauthorized access supporting advanced MultiFactor authentication.

  • To own the core infrastructure enabling day to day operation, performance, tactical lifecycle management and continuous improvement.

Your Responsibilities

  • As part of a global team, own the Authentication infrastructure to enable SSO and MFA across a global, hybrid infrastructure landscape, including on premise servers and containers, as well as SaaS components.

  • Act as consultant for the support and development organizations to promptly respond to customer requests, resolve incidents and implement changes, ensuring a high level of customer engagement and satisfaction. This will be accomplished by combining personal ownership with delegation and documentation to entry support tiers.

  • Leverage your knowledge of encryption, digital signatures, and secure token exchange.

  • Apply ITIL principles to troubleshoot authentication issues in production environments and participate in change management processes, working with security teams to mitigate authentication vulnerabilities.

  • Stay updated on cutting-edge authentication technologies, security threats, and industry best practices to continuously improve security systems.

  • Work closely with product managers, security engineers, and developers to create secure and user-friendly authentication flows that meet business and technical requirements.

  • Develop, and maintain reliable and scalable authentication and authorization features to ensure the adoption of security best practices across the organization.

Stakeholder Management

  • Identifies a diverse range of security stakeholders across functional areas and effectively manages relationships to build reliance through deep business and technical understanding, acting as a trusted advisor.

  • Acts as a strategic influencer, defining and driving stakeholder engagement strategies for complex initiatives, facilitating workshops, resolving conflicts, and proactively shaping stakeholder perspectives to align with project goals.

Impact/Strategy

  • Demonstrates strong and consistent performance across diverse products, with an impact that typically extends to a specific product, initiative, or cluster.

  • Translates requirements into strategic implementation plans that align with overall business objectives, and takes a proactive role in shaping team processes, often contributing to Communities of Practice (CoPs).

Complexity

  • Manages business analysis activities on more complex projects or across multiple products within a domain.

  • Capable of handling ambiguous requirements, navigating intricate stakeholder environments, and evaluating solution impacts considering both immediate and longer-term implications within the domain.

Business/Technical ability

  • Demonstrates a strong understanding of the business domain, related technologies, and their interdependencies.

  • Can independently apply tools, principles, concepts, and techniques related to requirements, data, usability, and process analysis, effectively managing interconnections to improve overall efficiency and effectiveness.

Education / Experience

  • You bring 7+ years of experience working in a major global organization, preferably in a regulated industry.

  • You have a Bachelor’s Degree in computer science, engineering or related discipline or recognition of prior working experience.

  • Demonstrated ability to effectively manage relationships with a diverse range of cross-functional stakeholders on medium to large-sized engagements, acting as a trusted advisor

  • Proven track record of championing accountability by example, such as successfully taking on security incident lead and/or security project owner roles

Technical Skills

  • Demonstrable experience working with Identity and Access Management (IAM) solutions such as Okta, Entra ID (Azure AD), Ping Identity, Auth0, or similar.

  • Proven experience with SAML, OAuth 2.0 and OpenID Connect (OIDC) protocols.

  • Able to troubleshoot complex authentication and authorization issues in collaboration with application developers and other technical organizations.

  • Readiness to adapt to new technologies, standards, and evolving security threats.

  • Experience implementing and integrating various MFA methods (e.g., TOTP, FIDO2/WebAuthn, biometric authentication, YubiKey)

  • Strong proficiency in independently applying tools, principles, and concepts related to requirements, data, usability, and process analysis within the security domain

  • Advanced analytical and logical reasoning skills to identify security patterns, threats, and discrepancies, driving comprehensive root cause analysis

  • Ability to analyze technology fit and propose effective, strategically aligned cybersecurity solutions and controls

Additional Qualifications

  • Effectively communicates to interact with various teams (developers, stakeholders, users).

  • Proven experience working collaboratively with cross-functional teams for integration and implementation of global web solutions.

  • Demonstrated ability to mentor colleagues with less experience and provide guidance on cybersecurity best practices and analysis techniques.

  • Proactive contribution to organizational development, including identifying process improvements and actively participating in Communities of Practice (CoPs).

  • Strong facilitation, communication, and conflict resolution skills to ensure alignment across multiple product squads and complex stakeholder networks.

Wer wir sind

Eine gesündere Zukunft treibt uns zur Innovation an. Mehr als 100.000 Mitarbeiter weltweit arbeiten gemeinsam daran, wissenschaftliche Fortschritte zu erzielen und sicherzustellen, dass jeder Zugang zur Gesundheitsversorgung hat – heute und für zukünftige Generationen. Durch unser Engagement werden über 26 Millionen Menschen mit unseren Medikamenten behandelt und mehr als 30 Milliarden Tests mit unseren Diagnostik-Produkten durchgeführt. Wir ermutigen uns gegenseitig, neue Möglichkeiten zu erkunden, Kreativität zu fördern und hohe Ziele zu setzen, um lebensverändernde Gesundheitslösungen zu liefern.

Gemeinsam können wir eine gesündere Zukunft gestalten.

Roche ist ein Arbeitgeber, der die Chancengleichheit fördert.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Principal Enterprise Identity Engineer
Principal Enterprise Identity Engineer

Roche Holding AG • España

Presencial
EUR 120.000 - 190.000
Roche Benefits
Expert DevSecOps Engineer (Expert Software Development Security Engineer)
Expert DevSecOps Engineer (Expert Software Development Security Engineer)

Roche Holding AG • España

Presencial
EUR 110.000 - 150.000
Senior Cybersecurity Engineer for Secure Access Network
Senior Cybersecurity Engineer for Secure Access Network

Roche Holding AG • Madrid

Presencial
EUR 90.000 - 130.000
Cybersecurity Engineer for Network Security observability
Cybersecurity Engineer for Network Security observability

Roche Holding AG • Madrid

Presencial
EUR 70.000 - 110.000
Technical Lead - Observability - RDT Digital Operations and Reliability
Technical Lead - Observability - RDT Digital Operations and Reliability

Roche Holding AG • España

Presencial
EUR 120.000 - 180.000
Senior Network Engineer
Senior Network Engineer

Roche Holding AG • Madrid

Presencial
EUR 80.000 - 105.000
Senior Specialist Directory Services - RDT Identity & Access Management
Senior Specialist Directory Services - RDT Identity & Access Management

Roche Holding AG • España

Presencial
EUR 60.000 - 90.000
Cybersecurity Engineer for Edge Defense (Cloud)
Cybersecurity Engineer for Edge Defense (Cloud)

Roche Holding AG • España

Presencial
EUR 50.000 - 75.000
CaaS Release Train Engineer
CaaS Release Train Engineer

Roche Holding AG • Madrid

Presencial
EUR 90.000 - 120.000
IT Infrastructure Engineer
IT Infrastructure Engineer

Roche Holding AG • España

Híbrido
EUR 65.000 - 85.000