USD per year
Principal Cybersecurity Engineer (Identity & Access Management)
Remote Type: Hybrid Location: Brno, Czechia Job Category: Information Technology
Job Summary
We are Progress (Nasdaq: PRGS), a trusted software provider enabling customers to develop, deploy, and manage responsible AI-powered applications. We seek a Principal Cybersecurity Engineer specializing in Identity & Access Management (IAM) to serve as the enterprise authority for identity security governance and architecture. This role defines the long-term IAM strategy, establishes enterprise-wide standards, and ensures consistent identity risk management across the organization. The position provides strategic leadership and architectural oversight, not operational provisioning or day-to-day platform administration.
Responsibilities
- Own the enterprise IAM governance and architecture strategy
- Define multi-year IAM roadmap aligned to Zero Trust and business priorities
- Influence funding, prioritization, and sequencing of IAM initiatives
- Represent identity risk and posture to senior leadership and governance forums
- Establish enterprise identity reference architectures and guardrails
- Act as final design authority for identity integrations and access models
- Define authentication, authorization, and privilege models across platforms
- Ensure consistency across workforce, application, and privileged identities
- Guide adoption of password-less, Just-In-Time (JIT) access, and adaptive authentication
- Define enterprise IAM policies, standards, and control frameworks
- Oversee access governance methodologies (reviews, certifications, exceptions)
- Establish IAM risk metrics and maturity assessments
- Drive remediation of systemic identity risks
- Provide executive-level support for audits and regulatory inquiries
- Partner with IT, HR, Legal, Compliance, and Engineering teams
- Influence identity operating models without direct operational ownership
- Lead working groups and design councils related to identity
- Evaluate IAM, Identity Governance & Administration (IGA), and Privileged Access Management (PAM) technologies strategically
- Define success criteria for IAM tooling and integrations
- Stay current with identity threat trends and evolving best practices
Background / Experience Requirements
- Bachelor’s degree in Information Technology, Information Security/Assurance, Computer Science, Engineering or related field or equivalent combination of education and experience
- 6-8 years of experience in cybersecurity, identity security or security engineering
- Deep expertise in IAM governance, architecture, and risk management
- Proven experience leading enterprise-scale IAM initiatives
- Strong understanding of zero trust identity architectures; Role-Based Access Control (RBAC) / Attribute-Based Access Control (ABAC) and role governance; privileged access governance/admin models; Identity lifecycle/access assurance
- Experience influencing architecture/security outcomes across large organizations
- Excellent executive communication and stakeholder management skills
Preferred / Beneficial Qualifications
- Experience as principal architect, lead architect or enterprise security architect
- Identity platform experience with multiple vendors such as Entra ID, Okta, SailPoint, CyberArk
- Experience in regulated or complex enterprise environments
- Certifications such as CISSP, CCSP, SABSA or other identity-focused credentials
Employment Type:
Not explicitly stated but implied full-time with hybrid remote work option.
Skills Listed:
- Identity & Access Management (IAM)
- IAM Governance & Architecture Strategy
- Zero Trust Architecture
- RBAC / ABAC
- Privileged Access Governance
- Identity Lifecycle / Access Assurance
- Password-less Authentication
- Just-In-Time (JIT) Access
- Adaptive Authentication
- IAM Policies & Control Frameworks
- Access Governance Methodologies
- Risk Metrics & Maturity Assessments
- Audit & Regulatory Support
- Stakeholder Management & Executive Communication
- Evaluation of IAM/IGA/PAM Technologies
Compensation & Benefits Highlights:
Compensation:
- Generous remuneration package.
- Employee Stock Purchase Plan Enrollment.
Vacation/Family/Health:
- 30 days paid annual vacation.
- Extra day off for birthday.
- 2 additional days off for volunteering.
- Premium healthcare/dental coverage.
- Additional pension insurance.
- On-site gym with CrossFit equipment/climbing wall.
- Co-funded Multisport card.
- Onsite daycare center.
- Flexible working hours.
- Free underground parking including designated spaces for bikes/motorbikes/electric scooters.
Chef Software helps companies become fast, efficient, and secure software-driven organizations by providing automation capabilities to manage infrastructure and applications that are secure and compliant.
View Company Profile