تفاصيل الوظيفة
شركة VaporVM تعلن عن وظيفة مستشار إدارة الوصول (Access Management Consultant) في الرياض، السعودية، تتطلب خبرة لا تقل عن 7 سنوات في مجال إدارة الهوية والوصول.
المهام والمسؤوليات
- إجراء اكتشاف وتقييم الوضع الحالي، وإنتاج تصنيف الأهمية، وخطة الموجات، وخطة تحسين الأساس.
- تأليف مجموعة الحوكمة: سياسة إدارة الوصول، النموذج التشغيلي، المعيار، نموذج RBAC، معيار التسمية، معيار مصفوفة وصول المستخدم، إطار فصل المهام (SoD).
- تأليف مجموعة الإجراءات: JML، طلب الوصول والموافقة، الوصول المميز (Privileged Access)، الوصول الطارئ (Break-Glass)، الحسابات غير البشرية، مراجعة وصول المستخدم، الاستثناء وقبول المخاطر.
- تقديم تقارير مراجعة حوكمة منصة IAM وPAM مع خطط التحسين.
- إنتاج مراجع التحكم بالوصول لـ Active Directory وقواعد البيانات والتطبيقات وطبقة التكامل.
- إنتاج مصفوفات وصول المستخدم المعتمدة من الأعمال مع المالكين المسمى، بالإضافة إلى مجموعات قواعد SoD من المستوى الأول.
- تصميم وتشغيل حملات التصديق (Certification Campaigns)، والحفاظ على أداة تتبع المعالجة، وتشغيل مؤشرات الأداء الرئيسية (KPIs/KRIs).
- إصدار تقارير الحوكمة الشهرية ولوحات المعلومات، ورئاسة منتدى الحوكمة وتسليمه لشركة البحري.
المهارات المطلوبة
- منصات IGA المؤسسية: SailPoint / Saviynt / One Identity / Microsoft Entra ID Governance.
- منصات PAM: CyberArk / Delinea / BeyondTrust.
- خبرة متقدمة في Active Directory: المجموعات، المجموعات المميزة، GPO، نماذج التصنيف، حسابات الخدمة.
- نماذج التحكم بالوصول في قواعد البيانات: Oracle / SQL Server / PostgreSQL.
- طبقة التكامل: حسابات الخدمة، بيانات اعتماد API، إدارة الأسرار (Secrets Management).
- إتقان PowerShell وSQL.
- مهارات متقدمة في Microsoft Excel لتحليل الوصول والمصفوفات وتقارير الحوكمة.
- مهارات قوية في Power BI لإنشاء لوحات مؤشرات الأداء (KPI/KRI) وتقارير الإدارة.
- فهم قوي لـ RBAC، التصديق على الوصول، مراجعات الوصول، JML، SoD، الوصول المميز، وحوكمة الوصول.
الشروط والمتطلبات
- خبرة لا تقل عن 7 سنوات في مجال إدارة الوصول وهوية المؤسسات.
- درجة البكالوريوس في علوم الحاسب، تقنية المعلومات، الأمن السيبراني، أو مجال ذي صلة (مفضل).
- الشهادات المهنية ذات الصلة في IAM أو PAM أو الأمن السيبراني أو حوكمة تقنية المعلومات أو أمن المعلومات (ميزة إضافية).
- مهارات قوية في إدارة أصحاب المصلحة، التوثيق، التحليل، والتواصل.
- يفضل وجود خبرة في العمل في بيئات مؤسسية واسعة النطاق أو بيئات منظمة.
عرض النص الأصلي للإعلان
Access Management Consultant
Experience: 7+
Key Responsibilities
- Run discovery and current-state assessment; produce criticality tiering, wave plan, and baseline improvement plan.
- Author the governance set: Access Management Policy, Operating Model, Standard, RBAC Model, Naming Standard, User Access Matrix Standard, SoD Framework.
- Author the procedure set: JML, Access Request & Approval, Privileged Access, Break-Glass, Non-Human Accounts, User Access Review, Exception & Risk Acceptance.
- Deliver IAM platform and PAM governance review reports with improvement plans.
- Produce Access Control References for Active Directory, database, application, and integration layers.
- Produce business-validated User Access Matrices with named owners, plus Tier 1 SoD rulesets.
- Design and run certification campaigns, maintain the remediation tracker, and operate KPIs/KRIs.
- Issue monthly governance reports and dashboards; chair the governance forum and hand it over to Bahri.
Required Skills
- Enterprise IGA platforms: SailPoint / Saviynt / One Identity / Entra ID Governance.
- PAM platforms: CyberArk / Delinea / BeyondTrust.
- Active Directory: groups, privileged groups, GPO, tiering, service accounts.
- Database access models: Oracle / SQL Server / PostgreSQL.
- Integration layer: service accounts, API credentials, secrets management.
- PowerShell, SQL, advanced Excel, Power BI.
Required Skills & Technical Expertise
- Strong experience with enterprise IGA platforms, including SailPoint, Saviynt, One Identity, or Microsoft Entra ID Governance.
- Hands-on knowledge of PAM platforms, including CyberArk, Delinea, or BeyondTrust.
- Strong Active Directory expertise, including groups, privileged groups, GPOs, tiering models, and service accounts.
- Understanding of database access control models for Oracle, Microsoft SQL Server, and PostgreSQL.
- Experience with integration-layer access, including service accounts, API credentials, and secrets management.
- Strong understanding of RBAC, access certification, access reviews, JML, SoD, privileged access, and access governance.
- Proficiency in PowerShell and SQL.
- Advanced Microsoft Excel skills for access analysis, matrices, and governance reporting.
- Strong Power BI skills for KPI/KRI dashboards and management reporting.
Preferred Qualifications
- Bachelor's degree in computer science, Information Technology, Cybersecurity, or a related field.
- Relevant certifications in IAM, PAM, Cybersecurity, IT Governance, or Information Security will be an advantage.
- Strong stakeholder management, documentation, analytical, and communication skills.
- Experience working in large-scale enterprise or regulated environments is preferred.
المصدر: LinkedIn - أُضيفت للموقع في 27 أغسطس 2026
رقم الإعلان لدى المصدر: 4458360598
رقم الإعلان لدى المصدر: 4458360598