Svitla Systems Inc. is looking for an Identity & Access Management Security Analyst for a full-time position (40 hours per week) in Ukraine. Our client is the world’s largest travel guidance platform, helping hundreds of millions of people become better travelers each month, from planning to booking to taking a trip. Travelers worldwide use the site and app to discover where to stay, what to do, and where to eat, based on guidance from those who have been there before. With more than 1 billion reviews and opinions of nearly 8 million businesses, travelers turn to clients to find deals on accommodations, book experiences, and reserve tables at delicious restaurants. They discover great places nearby as a travel guide company available in 43 markets and 22 languages.
You’ll support the design, implementation, and operation of the enterprise-wide access control framework. In this mid-level role, you will play a critical part in enforcing security best practices, supporting access provisioning and governance processes, and ensuring secure access to systems and data across multiple platforms.
Requirements: * 3–5 years of experience in identity and access management, cybersecurity, or IT operations with a focus on access controls. * Solid knowledge of IAM technologies and tools (e.g., SailPoint, Okta, CyberArk, Azure AD, etc.). * Strong understanding of access control principles, RBAC, least privilege, separation of duties, and other security best practices. * Familiarity with compliance standards and frameworks (e.g., NIST, ISO 27001, SOC 2). * Strong analytical, documentation, and communication skills. * Bachelor’s degree in Computer Science, Information Security, or related field; or equivalent practical experience.
Nice to have: * Experience with scripting and automation (e.g., PowerShell, Python). * Certifications: * Certified Information Systems Security Professional (CISSP); * Certified Identity and Access Manager (CIAM); * Microsoft Certified: Security, Compliance, and Identity Fundamentals; * CompTIA Security+.
Responsibilities: * Administer and manage user access across enterprise systems (e.g., Active Directory, Azure AD, SaaS platforms, on-prem applications). * Analyze and enforce access control policies to ensure that least privilege and role-based access control (RBAC) models are applied. * Collaborate with IT and business units to define, document, and improve identity lifecycle processes (e.g., provisioning, de-provisioning, access reviews). * Implement and support tools for identity governance, authentication (including MFA and SSO), and privileged access management (PAM). * Monitor IAM systems for anomalies and coordinate incident response activities related to access violations or abuse. * Participate in audits and support compliance initiatives (e.g., SOX, HIPAA, ISO 27001) by providing evidence of proper access controls. * Conduct regular access reviews and assist in remediation efforts for policy violations or control gaps. * Support the integration of new applications into the IAM ecosystem via SAML, OAuth, LDAP, and other standard protocols.