Staff Engineer in IAM at Creditas responsible for identity access systems and architecting robust security solutions for cloud environments. Leading strategy and mentoring other security engineers.
Responsibilities
As a Staff Engineer focused on IAM, you will be the top technical authority for Identity and Access strategy at Creditas.
Your mission is to design and implement ecosystems that ensure the right person (or machine) has the right access at the right time for the right reasons.
You will work cross-functionally, influencing everything from corporate access governance to cloud service identities and APIs.
Identity Architecture: Design the long-term IAM architecture, integrating multi-cloud environments, internal applications, and third-party services.
Solution Architecture: Design and review complex authentication and authorization architectures (SSO, MFA, Passwordless) integrated with multi-cloud and on-premise environments.
Privileged Access Management (PAM): Lead the privileged access management strategy to reduce the attack surface.
Automation and Self-Service: Develop tools and automated workflows for provisioning, access reviews and Just-in-Time (JIT) access, reducing operational load and human error.
Machine Identity: Define standards for non-human identities (service accounts, secrets management, and mTLS).
Technical Leadership: Act as a mentor to other security engineers and be the reference point for platform and engineering teams on complex authentication decisions (OAuth2, OIDC, SAML).
Requirements
Technical Expertise: Deep knowledge of identity protocols (SAML, OAuth2, OpenID Connect) and directories (Active Directory, Okta, Azure AD, or Google Workspace).
Cloud Security: Advanced experience in Cloud IAM (AWS), including complex SCP policies, fine-grained permissions, and identity federation.
Risk Perspective: Ability to balance strong security with the employee experience (UX), avoiding unnecessary bureaucracy.
Experience at Scale: Experience working in environments with thousands of identities and microservices.
Experience implementing Zero Trust Architecture.
Availability for hybrid work: required to attend our office in the Morumbi area of São Paulo once a month for 4 consecutive days, usually during the last or first week of the month (Creditas in Person).
Benefits
Health Plan (Alice)
Dental Plan (SulAmérica)
Wellz: therapy sessions 100% free
Wellhub: access to gyms and studios
Creditas Endurance: high-impact sports incentive program
Pharmacy partnership (Univers)
Life Insurance (Porto Seguro)
Birthday day off
Extended parental leave: 6 months for birthing parents and 35 days for non-birthing parents
Family Care: maternity and paternity support program
Childcare assistance
Assistance for dependents with disabilities (PWDs)
Technical Implementation Manager overseeing implementation of complex systems for law enforcement and corporate security. Collaborating with stakeholders to facilitate smooth transitions and optimize solutions.
Security Engineer ensuring protection of corporate environment at Creditas. Implementing security controls and elevating defensive maturity with a focus on fintech standards.
Security Engineering Lead ensuring Creditas maintains innovation and integrity in product security and incident response. Leading multi - disciplinary teams in a hybrid work environment.
Supervisor de seguridad fisica en Cargill ayudando a proteger empleados y propiedades. Coordinando autorizaciones de seguridad y respondiendo a eventos de contingencia.
Providing clerical support in the HSC Security Services department at Shared Health in Winnipeg. Ensuring effective staffing and reporting activities in a high - volume environment.
Cybersecurity Manager overseeing cybersecurity compliance and operations within Leidos' Cybersecurity Team. Responsible for ensuring systems meet defense guidelines and maintaining clearance requirements.
Information Security Awareness Specialist supporting cybersecurity awareness programs at Amadeus. Combining data analysis, communication, and collaboration to enhance security practices.
Security Controls Assessor performing security assessments and gap analysis for Federal agency clients in Washington, D.C. Designing security controls and risk management strategies to meet regulatory compliance standards.
Technicien SST responsible for implementing health and safety policies on - site at Airbus Protect. Ensuring compliance with safety regulations through audits and training while developing a safety culture.
Cyber Security Software Developer at Airbus Defence and Space working on innovative projects in defense and aerospace. Responsible for developing and maintaining secure software systems against cyber threats.