job description
Join ByteDance as an Identity and Access Management (IAM) Engineer and play a pivotal role in securing our global digital ecosystem. As part of the InfoSec | Access Governance team, you will design, implement, and optimize cutting-edge IAM solutions to safeguard enterprise systems, applications, and data across all business lines. This is a unique opportunity to work in a dynamic, fast-paced environment where innovation meets security, ensuring seamless and secure access for employees, partners, and customers worldwide.
Based in the vibrant and culturally rich locations of Bali, Indonesia (Canggu, Ubud, Denpasar, Jimbaran, Nusa Dua, Kuta, or Badung), you will collaborate with cross-functional teams to enhance our security posture, automate access governance, and mitigate risks. If you are passionate about cybersecurity, identity management, and building scalable security frameworks, this role is for you!
Responsibility
- Design, deploy, and manage enterprise-wide Identity and Access Management (IAM) solutions, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM).
- Develop and enforce access governance policies, role-based access control (RBAC), and least-privilege principles across cloud and on-premises environments.
- Automate user provisioning, deprovisioning, and access reviews using scripting and IAM tools (e.g., Okta, SailPoint, Microsoft Azure AD).
- Monitor and audit access logs, detect anomalies, and respond to security incidents related to identity and access violations.
- Collaborate with IT, Security, and Compliance teams to ensure adherence to industry standards (e.g., ISO 27001, NIST, GDPR).
- Optimize IAM processes to improve user experience while maintaining robust security controls.
- Conduct regular security assessments, vulnerability scans, and penetration testing for IAM systems.
- Provide training and support to stakeholders on IAM best practices and security awareness.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
- Minimum of 3+ years of experience in Identity and Access Management, cybersecurity, or IT infrastructure.
- Hands-on experience with IAM tools such as Okta, SailPoint, Microsoft Azure AD, or Ping Identity.
- Strong understanding of authentication protocols (SAML, OAuth, OpenID Connect) and directory services (LDAP, Active Directory).
- Proficiency in scripting languages (Python, PowerShell, Bash) for automation and integration.
- Familiarity with cloud platforms (AWS, Azure, GCP) and their native IAM services.
- Relevant certifications (e.g., CISSP, CISM, Certified in Cybersecurity, or vendor-specific IAM certifications) are a plus.
- Excellent problem-solving skills and the ability to work in a fast-paced, global environment.