Mission Description
Modalities
A Senior Azure IAM Engineer / Cloud Security Engineer is required for a full-time assignment starting ASAP.
The role allows partial remote work in agreement with the manager; however, a minimum on-site presence of 2 days per week at the Gosselies location is mandatory, preferably aligned with the team’s schedule. Additional on-site days may be requested depending on departmental needs. As the site is not easily accessible by public transport, a driving licence and personal vehicle are necessary. Occasional travel to other sites may be required.
Context
The Senior Azure IAM Engineer / Cloud Security Engineer will join the IAM Factory team.
The primary objective is to implement a privileged-rights cleanup strategy within Azure, following security best practices, eliminating uncontrolled inheritance, and modelling technical roles in a complex cloud environment.
Main Responsibilities
- Collect and analyse existing Azure permissions (Management Groups, Subscriptions, Resource Groups).
- Remove unwanted inheritance from the Management Group root.
- Implement secure RBAC role models aligned with business needs.
- Automate audits and access reviews using PowerShell and Azure CLI.
- Monitor privileged role usage (Owner, Global Admin, etc.) and propose remediation actions.
- Collaborate with IAM, I&O, and security teams to integrate roles into existing workflows.
- Document roles, inheritance rules, and assignment procedures.
- Monitor and report on audit logs to detect anomalies or security breaches.
Required Profile
Must-Have
-
Microsoft SC-300 Certification (Identity and Access Administrator).
-
Proven experience with Azure RBAC, Entra ID, PIM, and custom role management (3+ years).
-
Experience in cloud security and access governance (5+ years).
-
Experience in at least three missions related to privileged-rights cleanup or Identity & Access Administration in Azure.
- Strong capability to produce clear technical documentation.
-
Experience with PowerShell and Azure CLI automation (5+ years).
- Solid hands-on experience with Azure.
-
Language skills: French C2, English B1–B2.
- High level of autonomy.
Nice-to-Have
-
Microsoft SC-104 Certification (Azure Administrator Associate).