Cybersecurity – IAM Engineer, PKI & Certificate Services

AstraZeneca

Región Centro

Híbrido

MXN 600.000 - 1.200.000

Jornada completa

hace 13 horas
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Una candidatura completa en un minuto — currículum adaptado y carta de presentación, listos para enviar.

Supera los filtros ATS

Descripción de la vacante

AstraZeneca is seeking a Cyber Security IAM Engineer to protect digital identities, certificates and authentication services across on‑premises and cloud environments. You will manage certificate services, AD DS, Entra ID, and identity governance at enterprise scale.

The role emphasizes automation with PowerShell, incident response, and collaboration with Cyber Security, infrastructure and application teams to ensure secure access for researchers and colleagues.

Formación

  • Experience with Active Directory Certificate Services and/or Certificate Services and Public Key Infrastructure.
  • Knowledge of certificate lifecycle management, certificate templates and certificate-based authentication.
  • Strong experience supporting Active Directory Domain Services in a complex enterprise environment.
  • Hands‑on experience administering Microsoft Entra ID, including identity synchronization, authentication methods and enterprise applications.
  • Experience supporting hybrid identity environments integrating on-premises Active Directory with cloud identity platforms.
  • A strong understanding of authentication and federation technologies, including Kerberos, LDAP, SAML, OAuth, OpenID Connect and federation services.
  • Experience managing and troubleshooting Group Policy Objects and related directory‑services configurations.
  • A good understanding of DNS, DHCP, Active Directory replication, domain controller operations and Windows Server administration.
  • Strong analytical and problem‑solving skills, with experience diagnosing and resolving complex identity and access management issues.
  • Experience developing scripts and automating IAM processes using PowerShell or similar technologies.
  • Experience supporting and coordinating responses to high-priority incidents, including triage, prioritization, stakeholder communication, escalation management and service restoration.
  • The ability to manage operational support, project activities, incidents, service requests and unplanned work according to business impact, urgency and risk.
  • The ability to engage effectively with business users, technical teams and support organizations, manage expectations and ensure requests follow approved support channels and processes.
  • A degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related discipline, or equivalent practical experience.

Responsabilidades

  • Support, maintain and improve enterprise IAM across on-premises and cloud environments, ensuring secure and reliable authentication, authorization, certificate-based security and identity lifecycle management.
  • Support Active Directory Certificate Services and Public Key Infrastructure, including certificate lifecycle management and certificate-based authentication.
  • Administer Active Directory Domain Services, including domain controllers, organizational units, trusts and directory infrastructure.
  • Support and troubleshoot hybrid identity environments integrating Active Directory and Microsoft Entra ID, including identity synchronization and provisioning processes.
  • Manage and support authentication services, including multifactor authentication, Self-Service Password Reset, passwordless authentication, Conditional Access and federation services.
  • Support joiner, mover and leaver processes, including user provisioning, deprovisioning, group management and access reviews.
  • Administer Microsoft Entra ID services, including enterprise applications, application registrations, authentication methods and identity governance capabilities.
  • Investigate and resolve issues involving certificate services, authentication, account access, identity synchronization, group memberships and authorization.
  • Troubleshoot and maintain Active Directory replication, DNS, DHCP, domain controller health, Kerberos authentication, LDAP connectivity and Group Policy Objects.
  • Implement and maintain identity security controls and privileged access management processes in line with established security, risk, compliance and architectural standards.
  • Support high-priority incidents, including triage, prioritization, stakeholder communication, escalation management and service restoration.
  • Manage operational support, project activities, incidents, service requests and unplanned work according to business impact, urgency, risk and established service management processes.
  • Identify opportunities to automate repetitive IAM and certificate-management activities using PowerShell and other technologies to improve efficiency, consistency and service reliability.
  • Maintain technical documentation, runbooks, operational procedures and knowledge articles to support service continuity and audit readiness.
  • Collaborate with business users, Cyber Security, infrastructure, cloud, application and support teams, managing expectations and ensuring requests follow approved support channels and processes.

Conocimientos

AD CS
PKI
Azure AD
Identity lifecycle
Authentication protocols
Group Policy
PowerShell
Hybrid identity
PAM
Incident management

Educación

Bachelor's in IT/CS/Cybersecurity

Herramientas

Active Directory
Microsoft Entra ID
Windows Server

Descripción del empleo

Introduction to the role

Every medicine we discover, every clinical trial we run and every patient record we hold depends on our systems and science being secure. At AstraZeneca, Cyber Security protects the infrastructure behind drug discovery, clinical development, manufacturing and the delivery of medicines to patients around the world.

As a Cybersecurity – IAM Engineer, PKI & Certificate Services, you will help protect the digital identities, certificates and authentication services that enable our researchers, clinicians and colleagues to access critical systems securely and reliably.

You will support, maintain and improve enterprise Identity and Access Management services across on-premises and cloud environments, with a particular focus on Active Directory Certificate Services and Public Key Infrastructure.

Working with Active Directory, Microsoft Entra ID and hybrid identity technologies, you will help deliver secure authentication, authorization, certificate-based security and identity lifecycle management at enterprise scale.

Working across Cyber Security, infrastructure, cloud, application and support teams, you will resolve complex identity and certificate-related issues, support high-priority incidents and automate IAM processes. Your work will help protect the integrity and continuity of the science behind life-changing medicines.

Accountabilities
In This Role, You Will
  • Support, maintain and improve enterprise IAM services across on-premises and cloud environments, ensuring secure and reliable authentication, authorization, certificate-based security and identity lifecycle management.
  • Support Active Directory Certificate Services and Public Key Infrastructure, including certificate lifecycle management and certificate-based authentication.
  • Administer Active Directory Domain Services, including domain controllers, organizational units, trusts and directory infrastructure.
  • Support and troubleshoot hybrid identity environments integrating Active Directory and Microsoft Entra ID, including identity synchronization and provisioning processes.
  • Manage and support authentication services, including multifactor authentication, Self-Service Password Reset, passwordless authentication, Conditional Access and federation services.
  • Support joiner, mover and leaver processes, including user provisioning, deprovisioning, group management and access reviews.
  • Administer Microsoft Entra ID services, including enterprise applications, application registrations, authentication methods and identity governance capabilities.
  • Investigate and resolve issues involving certificate services, authentication, account access, identity synchronization, group memberships and authorization.
  • Troubleshoot and maintain Active Directory replication, DNS, DHCP, domain controller health, Kerberos authentication, LDAP connectivity and Group Policy Objects.
  • Implement and maintain identity security controls and privileged access management processes in line with established security, risk, compliance and architectural standards.
  • Support high-priority incidents, including triage, prioritization, stakeholder communication, escalation management and service restoration.
  • Manage operational support, project activities, incidents, service requests and unplanned work according to business impact, urgency, risk and established service management processes.
  • Identify opportunities to automate repetitive IAM and certificate-management activities using PowerShell and other technologies to improve efficiency, consistency and service reliability.
  • Maintain technical documentation, runbooks, operational procedures and knowledge articles to support service continuity and audit readiness.
  • Collaborate with business users, Cyber Security, infrastructure, cloud, application and support teams, managing expectations and ensuring requests follow approved support channels and processes.
Essential Experience, Skills And Knowledge
  • Experience with Active Directory Certificate Services and/or Certificate Services and Public Key Infrastructure.
  • Knowledge of certificate lifecycle management, certificate templates and certificate-based authentication.
  • Strong experience supporting Active Directory Domain Services in a complex enterprise environment.
  • Hands‑on experience administering Microsoft Entra ID, including identity synchronization, authentication methods and enterprise applications.
  • Experience supporting hybrid identity environments integrating on-premises Active Directory with cloud identity platforms.
  • A strong understanding of authentication and federation technologies, including Kerberos, LDAP, SAML, OAuth, OpenID Connect and federation services.
  • Experience managing and troubleshooting Group Policy Objects and related directory‑services configurations.
  • A good understanding of DNS, DHCP, Active Directory replication, domain controller operations and Windows Server administration.
  • Strong analytical and problem‑solving skills, with experience diagnosing and resolving complex identity and access management issues.
  • Experience developing scripts and automating IAM processes using PowerShell or similar technologies.
  • Experience supporting and coordinating responses to high-priority incidents, including triage, prioritization, stakeholder communication, escalation management and service restoration.
  • The ability to manage operational support, project activities, incidents, service requests and unplanned work according to business impact, urgency and risk.
  • The ability to engage effectively with business users, technical teams and support organizations, manage expectations and ensure requests follow approved support channels and processes.
  • A degree in Information Technology, Computer Science, Cybersecurity, Engineering or a related discipline, or equivalent practical experience.
Desirable Experience, Skills And Knowledge
  • Experience administering certificate templates, certificate lifecycle processes, certificate revocation lists and Online Certificate Status Protocol services.
  • Experience with Microsoft security technologies such as Conditional Access, Identity Protection, Privileged Identity Management and Identity Governance.
  • Knowledge of Microsoft Azure and cloud identity architectures.
  • Experience with privileged access management technologies such as CyberArk, Akeyless, BeyondTrust or similar solutions.
  • Exposure to identity governance, access certification, role‑based access control and compliance controls.
  • Experience working with security controls, audit requirements and compliance expectations in a regulated enterprise environment.
Why join AstraZeneca’s Cyber Security team?

Join a global Cyber Security function where your IAM, PKI and Certificate Services expertise will help protect the systems behind scientific discovery and the delivery of medicines to patients. You will work at enterprise scale, collaborate with experienced security specialists, and help build secure and resilient identity services as AI and data reshape the threat landscape.

Working at AstraZeneca

When we put unexpected teams in the same room, we unleash bold thinking with the power to inspire life‑changing medicines. In‑person working gives us the platform we need to connect, work at pace and challenge perceptions.

That is why we work, on average, a minimum of three days per week from the office. However, that does not mean we are not flexible. We balance the expectation of being in the office while respecting individual flexibility. Join us in our unique and ambitious world.

Date Posted 22-sept-2026

Closing Date 15-oct-2026

AstraZeneca embraces diversity and equality of opportunity. We are committed to building an inclusive and diverse team representing all backgrounds, with as wide a range of perspectives as possible, and harnessing industry‑leading skills. We believe that the more inclusive we are, the better our work will be. We welcome and consider applications to join our team from all qualified candidates, regardless of their characteristics. We comply with all applicable laws and regulations on non‑discrimination in employment (and recruitment), as well as work authorization and employment eligibility verification requirements.

Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Cybersecurity – IAM Engineer, PKI & Certificate Services
Cybersecurity – IAM Engineer, PKI & Certificate Services

AstraZeneca plc • Región Centro

Híbrido
MXN 900.000 - 1.300.000
Cybersecurity – Identity & Access Management (IAM) Engineer
Cybersecurity – Identity & Access Management (IAM) Engineer

AstraZeneca plc • Región Centro

Presencial
MXN 550.000 - 850.000
IAM & PKI Engineer: Secure Hybrid Identity & Certificates
IAM & PKI Engineer: Secure Hybrid Identity & Certificates

AstraZeneca plc • Región Centro

Híbrido
MXN 900.000 - 1.300.000
IAM & PKI Security Engineer: Certificate Services
IAM & PKI Security Engineer: Certificate Services

AstraZeneca • Región Centro

Híbrido
MXN 600.000 - 1.200.000
IAM & PKI Engineer: Certificate Services & Identities
IAM & PKI Engineer: Certificate Services & Identities

AstraZeneca • México

Presencial
MXN 900.000 - 1.200.000
Associate Principal AI Engineer
Associate Principal AI Engineer

AstraZeneca GmbH • Región Centro

Híbrido
MXN 600.000 - 900.000
IAM Engineer: Secure Hybrid Identities & Access
IAM Engineer: Secure Hybrid Identities & Access

AstraZeneca plc • Región Centro

Presencial
MXN 550.000 - 850.000
IAM Engineer: Identity Security & Access Automation
IAM Engineer: Identity Security & Access Automation

AstraZeneca • México

Presencial
MXN 850.000 - 1.400.000
Tech Lead - Cybersecurity S 4C
Tech Lead - Cybersecurity S 4C

EDM S. DE RL DE CV • Nuevo México

Híbrido
MXN 900.000 - 1.300.000
Senior Identity Security Engineer (Remote - LATAM)
Senior Identity Security Engineer (Remote - LATAM)

Atmosera • México

A distancia
MXN 1.200.000 - 1.600.000
Remote work