Identity and Access Management Engineer
Role Overview
You will be part of the Identity and Security Operations team, contributing to the design, implementation, and ongoing management of security and identity platforms. This role focuses on building, integrating, and maintaining account provisioning, system access, and security management solutions as part of the organization’s transition toward a Zero Trust security model.
You will work closely with application owners and business stakeholders, providing security expertise and guidance on standards and policies. Through this collaboration, you will help safeguard systems and users while enabling the business to deliver secure and high-quality experiences to customers globally.
Key Responsibilities
Administer and support identity and security platforms such as Okta, Active Directory, Azure, Intune, AWS/IAM, and certificate and secrets management tools.
Provide Tier 2 and Tier 3 support for identity and security operations issues.
Develop, document, and maintain policies and procedures for identity and security systems.
Act as a subject matter expert for SSO, SAML, and SCIM integrations, supporting application owners and business teams.
Collaborate with security and infrastructure teams to proactively identify, prevent, and respond to cybersecurity threats.
Support and advance Zero Trust security initiatives across the organization.
Required Qualifications
3+ years of hands-on experience in at least three of the following areas:
Automated identity lifecycle management using SCIM
Multi-factor authentication solutions
API and web service integrations (REST, SOAP, OAuth, OIDC)
Role-based access control (RBAC) and privileged access management
Risk-based authentication and conditional access
Experience with enterprise access reviews and recertification processes.
Solid understanding of core security principles, including least privilege and separation of duties.
Intermediate knowledge of IAM domains such as Identity Governance and Administration (IGA), Privileged Access Management (PAM), Authentication, Authorization, and Identity Lifecycle Management.
Familiarity with Change Management and Service Desk processes.
Working knowledge of Agile methodologies (Kanban, Scrum).
Preferred Qualifications
Experience with Okta Lifecycle Management.
Knowledge of certificate management and administration.
Intermediate understanding of PKI and API security.
Hands-on experience with Zero Trust implementations.
Broad technical knowledge across multiple IT domains, including cloud services, authentication, PKI, system administration, software development, networking, or security architecture.
Exposure to security disciplines such as threat hunting, threat modeling, digital forensics, phishing analysis, penetration testing, or reverse engineering.
What We Offer
Indefinite-term contract with full legal benefits.
Hybrid or remote work model, depending on location.
Office hours from Monday to Friday.
Access to learning platforms and certification programs.
Opportunity to work with modern security technologies and enterprise-scale environments.
- Department
- IT/ Technology
- Locations
- Bogota
- Remote status
- Hybrid
Already working at H&CO?
Let’s recruit together and find your next colleague.