Skip to content

Open nowPosted yesterday

Identity & Access Management Operations

MyCareersFuture94,028 open roles

Pay
SGD 4,000 – SGD 4,500 a month
Where
Singapore
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowIdentity & Access Management OperationsMyCareersFuture · Singapore
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on MyCareersFuture's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market.

Share of postings closed within
  1. 1.6%1 day
  2. 3.4%3 days
  3. 7.9%7 days
  4. 14.2%14 days
  5. 34.1%30 days
This job: posted yesterday

The posting

Role Overview

We are seeking a senior Identity & Access Management (IAM) professional to lead enterprise IAM operations and strategy across System Access Management, Privileged Access Management (PAM), and Identity Governance & Administration (IGA).

The role combines operational leadership, technical ownership, governance, risk management, and strategic transformation. The successful candidate will oversee IAM platforms and operations while driving automation, identity governance, regulatory compliance, and the organisation's long-term IAM roadmap.

Key Responsibilities

IAM Operations & Leadership

  • Lead System Access Operations teams responsible for user provisioning, deprovisioning, and end-to-end Joiner, Mover, and Leaver (JML) processes.
  • Manage 24x7 IAM operations and ensure appropriate service availability, operational performance, and incident management.
  • Manage IAM vendors and managed service providers, including service performance and delivery.
  • Drive continuous improvement and automation across IAM operational processes.
  • Promote strong identity hygiene and compliance with information security policies and standards.

Privileged Access Management (PAM)

  • Lead PAM operations, including onboarding systems and applications into CyberArk.
  • Manage privileged credentials, privileged sessions, and break-glass access processes.
  • Provide technical ownership and operational support for the CyberArk platform.
  • Ensure privileged access follows least-privilege, security, governance, and audit requirements.
  • Support secret management and privileged identity governance across enterprise environments.

Identity Governance & Administration (IGA)

  • Provide technical ownership and operational support for the Saviynt platform.
  • Manage IGA operations, including HR-to-Active Directory integration and birthright access provisioning.
  • Drive the onboarding of applications into Saviynt as the IGA programme and automation coverage expand.
  • Support access certification, recertification, entitlement governance, and Segregation of Duties (SoD) controls.
  • Improve automation across identity lifecycle and access governance processes.

IAM Architecture & Solutioning

  • Participate in IAM solution design for new applications, platforms, and digital initiatives.
  • Contribute to entitlement design, role engineering, identity lifecycle management, and access model design.
  • Review and challenge application roles and entitlement models to ensure least-privilege principles are maintained.
  • Design and govern Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) models.
  • Support identity integrations across on-premises, cloud, and SaaS environments.
  • Apply identity standards and protocols including SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and SCIM.

Strategy, Governance & Transformation

  • Define and own the enterprise IAM strategy, operating model, and multi-year transformation roadmap.
  • Drive IAM transformation, modernisation, and automation initiatives across System Access Management, PAM, and IGA.
  • Establish IAM standards, policies, controls, and governance frameworks across on-premises, cloud, and SaaS environments.
  • Act as the technology risk owner for IAM platforms and services, ensuring risks are identified, assessed, mitigated, and appropriately reported.
  • Lead IAM resilience planning, including disaster recovery, business continuity, and cyber recovery capabilities.
  • Drive organisational capability through succession planning, talent development, and leadership coaching within the IAM function.

Audit, Risk & Compliance

  • Lead IAM-related internal and external audit activities.
  • Provide audit evidence and manage remediation activities through to closure.
  • Ensure IAM operations comply with applicable regulatory requirements, internal policies, and industry best practices.
  • Support compliance with requirements including MAS Technology Risk Management (TRM) guidelines and FSM-N04 Cyber Hygiene requirements.
  • Monitor IAM risks, control effectiveness, audit findings, and remediation progress.

Financial & Executive Management

  • Own IAM financial planning, including budget management, vendor contracts, licence optimisation, and investment prioritisation.
  • Provide executive reporting on IAM operational health, risk posture, audit status, transformation progress, and strategic initiatives.
  • Engage senior technology, cybersecurity, risk, and governance stakeholders on IAM strategy and operational priorities.

Requirements

  • Minimum 12 years of experience in Information Technology, Cybersecurity, Identity & Access Management, or related disciplines.
  • Minimum 8 years of direct experience across IAM domains, including System Access Management, PAM, IGA, and Identity Lifecycle Management.
  • Minimum 5 years of leadership experience managing IAM teams, vendors, or managed service providers.
  • Proven experience managing enterprise IAM operations within highly regulated environments such as financial services, insurance, or banking.
  • Demonstrated experience leading IAM transformation, modernisation, and automation initiatives.
  • Strong experience with Joiner, Mover, and Leaver (JML) processes and identity lifecycle management.
  • Strong understanding of birthright access, enterprise roles, role hierarchies, entitlements, and fine-grained permissions.
  • Strong knowledge of Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Segregation of Duties (SoD).
  • Experience with access certification, recertification, and access governance.
  • Understanding of human and machine identities, secret management, and Privileged Access Management.
  • Hands-on experience with CyberArk, Saviynt, Active Directory, Entra ID, and identity integrations.
  • Good understanding of SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and SCIM.
  • Experience contributing to IAM solutioning, role engineering, entitlement modelling, and access governance design.
  • Experience supporting regulatory and audit requirements, including MAS TRM, FSM-N04, internal audits, and external audits.
  • Strong leadership, stakeholder management, communication, and decision-making capabilities.

Education & Certifications

  • Bachelor's degree in Computer Science, Information Security, Information Systems, Engineering, or a related discipline.
  • Professional certifications such as CISSP or CISM are highly desirable.
  • CyberArk, Saviynt, or other relevant IAM certifications are highly desirable.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against MyCareersFuture's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on MyCareersFuture's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    MyCareersFuture's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.