Head of Identity & Access Management (IAM)
Envision Employment Solutions · El Sheikh Zayed City, Giza Governorate, Egypt
About The Role
Envision Employment Solutions is currently looking for a Head of Identity & Access Management (IAM) for one of our partners, a leading Digital Bank!
THE ROLE
Every login, every customer authentication, every privileged access request runs through the architecture you design, from a blank page. You're building both sides of identity at once, the customer-facing experience that has to feel invisible and secure at the same time, and the workforce controls that keep the bank's critical infrastructure locked down. Get it right, and identity becomes the thing nobody thinks about because it just works, safely, every time.
WHAT YOU’LL DO
- Design and build the enterprise IAM and CIAM framework entirely from scratch, defining modern identity lifecycle workflows, authentication standards, and authorization models
- Partner with the Product team to architect secure, high-availability, low-friction consumer authentication experiences, including multi-factor authentication, biometric integration, and passwordless options, balancing rigorous bank security with a seamless digital banking experience
- Implement robust workforce identity controls, Single Sign-On (SSO), Enterprise Directory services, and automated Privileged Access Management (PAM) workflows to protect critical infrastructure and cloud environments
- Partner with cloud security and network engineering to enforce continuous identity verification, least-privilege access, and conditional access policies across cloud-native microservices
- Automate user provisioning, de-provisioning, and role-based access control (RBAC) to eliminate identity sprawl and streamline internal HR-to-IT workflows
- Establish regular access recertification campaigns, audit logging, and reporting mechanisms to satisfy internal reviews and CBE regulatory examinations
WHAT WE’RE LOOKING FOR
- 10+ years of cumulative IT and information security experience, including 4 to 5 years specializing in IAM, CIAM, and PAM architecture and leadership within banking, financial services, or advanced fintech environments
- Hands-on expertise with modern identity protocols (OIDC, OAuth 2.0, SAML), cloud identity providers (e.g., Azure AD/Entra ID, Okta, Ping Identity), and modern CIAM architectures
- Solid understanding of Central Bank of Egypt (CBE) cybersecurity circulars, authentication requirements, and data privacy guidelines
- Professional credentials such as CISSP, Certified Identity and Access Manager (CIAM), or vendor-specific expert certifications are strongly preferred
- A builder mindset, thriving in a fast-paced, from-scratch environment, able to balance extreme security rigor for financial data with rapid, agile product delivery
- Excellent cross-functional collaboration skills, bridging product engineering, security operations, and executive stakeholders
YOU’LL THRIVE HERE IF YOU
- You'd rather architect identity from first principles than patch together an inherited mess of directories and permissions
- You believe a login should feel effortless to the customer and be uncompromising underneath
- You treat least-privilege access as a default, not an exception you get to when there's time
- You can translate an identity architecture decision into something both a regulator and a product team understand
- You want to build the layer that every other system in the bank ultimately trusts
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
