Professional at Auren Energia leading management initiatives in identity and access controls. Ensuring compliance and security in line with best practices for the business.
Responsibilities
Active participation in the creation, structuring and implementation of the Identity and Access Management (IAM/IGA) process, ensuring governance, regulatory compliance, segregation of duties, mitigation of unauthorized access risks and alignment with information security best practices according to established guidelines, contributing to business resilience and sustainability.
Work on the implementation project of the Identity and Access Management (IAM/IGA) process, from model design to operationalization and maturity.
Define, review and maintain access management policies, standards, norms and procedures associated with the identity and access lifecycle.
Serve as a technical reference in IAM, ensuring adherence to best practices and market frameworks (e.g., NIST, ISO 27001, ISO 42001).
Review and maintain Segregation of Duties (SoD) matrices for SAP and relevant corporate systems, assessing conflicts and access risks.
Support the evaluation, selection, implementation and evolution of market IAM/IGA solutions, such as identity governance platforms, authentication, privileged access management and CIAM (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk, SAP GRC).
Act as the functional owner for identity governance, authentication and privileged access management tools (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk), defining rules, roles, approval flows, controls and integration requirements.
Evaluate and implement advanced technologies (e.g., password vaults, IDPs, IGA), applying best practices to optimize performance.
Act as a focal point with business areas, HR, IT, Information Security and Audit, translating risks and regulatory requirements into control solutions.
Propose and monitor continuous improvements to internal controls and processes related to identity and access management.
Ensure access compliance for internal and external audits, regulatory bodies and other stakeholders.
Requirements
Education: Degree in Information Technology, Computer Science, Information Systems or Engineering.
Preferable experience in Information Security and technical knowledge in Access Management.
Technical knowledge: Identity and Access Management (IAM) and Identity Governance & Administration (IGA).
Identity and access lifecycle (onboarding, transfers/role changes, periodic review and offboarding).
Security frameworks and standards applicable to access management (NIST, ISO 27001, ISO 42001).
Segregation of Duties (SoD) and mitigation of access conflicts.
Internal controls and regulatory compliance applied to access management.
Market IAM/IGA tools, including identity governance, authentication and privileged access management solutions (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk).
Concepts of access management in SAP and relevant corporate systems.
Information privacy and LGPD in the context of logical access.
Creation, updating and deletion of user accounts in corporate systems.
Password management and multi-factor authentication (MFA - Microsoft Authenticator).
Verification and audits to check compliance with internal policies and regulations.
Knowledge of tools such as Active Directory (AD).
Intermediate English.
Experience in the electric power sector will be considered a plus.
Benefits
Meals: on-site cafeteria, meal voucher (VR) or food allowance (VA);
Medical and Dental Plan;
Life Insurance;
Private Pension;
Annual variable compensation program, based on achievement of targets.
Quality of Life Program;
Gym partnerships.
Scholarship Program;
Learning hub that encourages different forms of knowledge;
Incentive for volunteering in social actions and programs in which Auren participates;
Diversity and Inclusion group open to new members (members or allies);
Periodic survey to measure internal engagement levels.
Flexible working hours and hybrid work model (for corporate area).
Business Analyst for wpNex focusing on digital assets operations at Deutsche WertpapierService Bank AG. Collaborating with teams and enhancing the platform in a hybrid working environment.
Senior Business Analyst providing professional advice and overseeing technical areas within business analysis projects at Expleo. Collaborating with stakeholders to ensure successful project outcomes and business improvements.
Senior Consultant/Business Analyst in (re)insurance at Wavestone. Leading digital transformation projects across multiple European countries with a focus on core systems and process optimization.
Business Analyst role responsible for application support and project implementation at Constellium in France. Collaborating with business representatives to gather requirements and resolve issues.
Business Analyst driving financial steering and analysis for adp MERKUR GmbH, a leading entertainment provider in Germany. Collaborating on reports, budgets, and forecasts to optimize business processes.
IT - Business Analyst optimizing and analyzing logistics processes. Collaborating with internal teams and external partners to ensure smooth implementation of systems and tools.
Business Analyst in healthcare focusing on dashboard and report automation for MMS EMEA. Collaborating with cross - functional teams to enhance analytics and decision - making.
Expert Business Analyst providing analysis support for DMV Transformation program in Albany, NY. Analyzing business processes and collaborating with stakeholders for successful implementation.
Business Analyst intern supporting digital transformation initiatives at Ledger. Analyzing requirements, developing tools, and enhancing business workflows for efficiency.
Management Analyst providing analytical support for the U.S. Department of Energy's Idaho Operations Office. Collaborating with the Office of Nuclear Energy programs and ensuring compliance with DOE guidelines.