Remote job
Middle Information Security Access Specialist
Job details
About this role
Role overview
This role focuses on securing and improving employee identity and access management across corporate systems. You will manage the full access lifecycle, strengthen least-privilege controls, standardize role models, and help automate high-volume operational processes while meeting defined service and security standards.
Responsibilities
- Manage onboarding, offboarding, and internal role-change workflows, including provisioning, access removal, and permission updates. - Design, maintain, and govern access profiles and role-based permission models across departments and business systems. - Monitor service-level performance, identify bottlenecks, and improve the access request process without reducing security or service quality. - Investigate escalated access requests, analyze permission data, identify access drift or inconsistencies, and resolve issues securely. - Use AI agents, LLM-powered tools, and other automation methods to streamline ticket triage, reporting, documentation, and repetitive operational work. - Partner with HR, IT, and engineering teams to bring additional systems into centralized access workflows and maintain clear procedures, role definitions, and access matrices.
Requirements
- At least two years of practical experience in information security, identity and access management, IT operations, systems administration, or advanced technical support, with a focus on access control. - Experience handling employee lifecycle access processes, including onboarding, offboarding, and changes to responsibilities or positions. - Hands-on knowledge of access profiles, RBAC models, permission reviews, and access auditing across multiple corporate tools or systems. - Familiarity with enterprise identity technologies such as Okta, CyberArk, Active Directory, privileged access management, single sign-on, and federation protocols. - Understanding of RBAC, ABAC, least privilege, and zero-trust principles, combined with the ability to validate complex permission structures. - Practical experience with AI tools or agents, such as prompt engineering, copilots, or agentic workflows, for operational automation or data processing. - Ability to manage high-volume requests against SLAs, communicate security requirements clearly to non-technical stakeholders, and work fluently in Ukrainian or Russian with intermediate-or-higher English.
Nice to have
- Experience applying PCI DSS or ISO 27001 requirements to access management and user access reviews. - Experience integrating AI agents or custom LLM workflows into IT or IAM automation through APIs or agent frameworks. - Familiarity with cloud identity and security concepts in AWS, Azure, or GCP; access orchestration platforms; or relevant identity and security certifications. - A bachelor’s degree in computer science, information security, or a related technical discipline.
Benefits and work setup
The role is remote-first and includes technical support, coworking assistance, and a flexible benefits budget that may be allocated to areas such as sport, medical care, mental health, home office equipment, or language learning. Additional provisions include paid parental leave, childcare support, more than 20 vacation days, unlimited sick leave, emergency time off, team events, and internal learning and development programs.