Professional at Auren Energia leading management initiatives in identity and access controls. Ensuring compliance and security in line with best practices for the business.
Responsibilities
Active participation in the creation, structuring and implementation of the Identity and Access Management (IAM/IGA) process, ensuring governance, regulatory compliance, segregation of duties, mitigation of unauthorized access risks and alignment with information security best practices according to established guidelines, contributing to business resilience and sustainability.
Work on the implementation project of the Identity and Access Management (IAM/IGA) process, from model design to operationalization and maturity.
Define, review and maintain access management policies, standards, norms and procedures associated with the identity and access lifecycle.
Serve as a technical reference in IAM, ensuring adherence to best practices and market frameworks (e.g., NIST, ISO 27001, ISO 42001).
Review and maintain Segregation of Duties (SoD) matrices for SAP and relevant corporate systems, assessing conflicts and access risks.
Support the evaluation, selection, implementation and evolution of market IAM/IGA solutions, such as identity governance platforms, authentication, privileged access management and CIAM (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk, SAP GRC).
Act as the functional owner for identity governance, authentication and privileged access management tools (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk), defining rules, roles, approval flows, controls and integration requirements.
Evaluate and implement advanced technologies (e.g., password vaults, IDPs, IGA), applying best practices to optimize performance.
Act as a focal point with business areas, HR, IT, Information Security and Audit, translating risks and regulatory requirements into control solutions.
Propose and monitor continuous improvements to internal controls and processes related to identity and access management.
Ensure access compliance for internal and external audits, regulatory bodies and other stakeholders.
Requirements
Education: Degree in Information Technology, Computer Science, Information Systems or Engineering.
Preferable experience in Information Security and technical knowledge in Access Management.
Technical knowledge: Identity and Access Management (IAM) and Identity Governance & Administration (IGA).
Identity and access lifecycle (onboarding, transfers/role changes, periodic review and offboarding).
Security frameworks and standards applicable to access management (NIST, ISO 27001, ISO 42001).
Segregation of Duties (SoD) and mitigation of access conflicts.
Internal controls and regulatory compliance applied to access management.
Market IAM/IGA tools, including identity governance, authentication and privileged access management solutions (e.g., SailPoint, Saviynt, Okta, Microsoft Entra ID, CyberArk).
Concepts of access management in SAP and relevant corporate systems.
Information privacy and LGPD in the context of logical access.
Creation, updating and deletion of user accounts in corporate systems.
Password management and multi-factor authentication (MFA - Microsoft Authenticator).
Verification and audits to check compliance with internal policies and regulations.
Knowledge of tools such as Active Directory (AD).
Intermediate English.
Experience in the electric power sector will be considered a plus.
Benefits
Meals: on-site cafeteria, meal voucher (VR) or food allowance (VA);
Medical and Dental Plan;
Life Insurance;
Private Pension;
Annual variable compensation program, based on achievement of targets.
Quality of Life Program;
Gym partnerships.
Scholarship Program;
Learning hub that encourages different forms of knowledge;
Incentive for volunteering in social actions and programs in which Auren participates;
Diversity and Inclusion group open to new members (members or allies);
Periodic survey to measure internal engagement levels.
Flexible working hours and hybrid work model (for corporate area).
Revenue Management Analyst in a leading travel platform optimizing packages and enhancing traveler experiences through data - driven insights and analysis.
Risk Management Analyst managing corporate risk at Unimed, focusing on mitigation and internal control processes. Supporting team collaboration and risk culture dissemination.
Senior Business Analyst applying strategic and analytical skills in Global Payment Network Strategy at Capital One. Collaborating with professionals, developing strategies for business growth, and tackling major company challenges.
Business Analyst supporting innovation and transformation at Globo, identifying market opportunities and partnerships. Collaborating across teams to drive strategic initiatives and business growth.
Senior Business Analyst strengthening data - driven decision making across Yara’s Global Procurement and Supply Chain organization. Managing multi - billion dollar spend and translating data into actionable recommendations.
Senior Data Business Analyst at Keyrus working at the intersection of business, data, and technology. Involves analyzing data requirements and delivering data management solutions with SQL expertise.
Business Analyst focusing on financial planning and analysis in the Corporate Services department. Collaborating with stakeholders to improve business processes and ensure timely delivery of projects.
Senior Business Analyst supporting IT initiatives and business operations at West Bend Insurance. Analyzing requirements and improving system solutions for organizational efficiency.
Business Analyst role focusing on product development in an Agile environment at Codafication. Collaborating with teams to gather requirements and improve product offerings.
Business Analyst role at Heartman House focusing on strategic planning and restructuring across various sectors. Involved in team collaboration for problem identification and solution structuring.