Scopely
Senior Security IAM Engineer
IE - Dublin, Ireland
Get past the screening software and onto a recruiter's desk
hirly rewrites your resume for this job — matching the keywords and skills in the posting, moving your most relevant experience to the top, and writing a cover letter to fit. About 30 seconds.
- Keywords matched to this posting
- Fit score before you apply
- Cover letter included
Apply from your AI assistant
Connect hirly to Claude and ask it to apply to this job. hirly tailors your resume, fills the employer’s form and asks before sending. ChatGPT: manual setup today.
Some employer sites stop an application at a CAPTCHA or sign-in and hand it back with a link. Applying needs a paid plan. Works with any assistant that supports MCP.
hirly's read of this role
- Seniority
- Senior
- Country
- IE
- Work mode
- Remote-friendly
- First seen by hirly
- 8 Oct 2026
Derived automatically from the posting. Upload your resume above to see how the role scores against it.
the posting
Scopely is looking for a Senior IAM Security Enginee r to join our Information Security team on a remote basis or hybrid basis if located in Barcelona. This role will focus on building, scaling, and securing Scopely’s identity and access management ecosystem across our cloud, SaaS, AI, and remote access environments, with a strong emphasis on Terraform-based IAM automation, access workflow engineering, least-privilege design, identity risk reduction, and AI-assisted operational workflows.
This is a highly technical, hands-on role for someone who can operate across AWS, GCP, Okta, AWS IAM Identity Center, Zero Trust access models, identity governance workflows, and modern AI-enabled engineering environments, while building scalable identity systems through Infrastructure as Code, workflow orchestration, and automation-first security engineering.
What You Will Do
Build and Evolve Modern IAM Architecture
Design and evolve Scopely’s IAM architecture to support a high-scale, cloud-first environment across AWS, GCP, SaaS applications, AI tooling, and remote access platforms.
Lead initiatives around:
Federated identity architecture using SAML, OIDC, OAuth, and SCIM
Workforce identity and access patterns across internal platforms
Least-privilege role design and access segmentation
RBAC and ABAC models for cloud and SaaS environments
Centralized access models using Okta, AWS IAM Identity Center, Google Cloud IAM, and cloud-native IAM services
Secure cross-account and cross-project access patterns
Service account, workload identity, and non-human identity governance
Zero Trust identity and access control design
Partner with engineering, infrastructure, and security teams to:
Standardize secure identity and access patterns
Reduce identity sprawl and excessive permissions
Improve access visibility and auditability
Build scalable identity controls for a fast-moving engineering environment
Own Terraform-Based IAM and Access Automation
Own and improve Terraform-based IAM and access automation across Scopely’s cloud and identity environment.
Design, build, and maintain:
Reusable Terraform modules for IAM roles, policies, permission sets, group mappings, and access patterns
Terraform workflows for Okta app assignments, group-based access, and IAM Identity Center automation
Standardized access modules that can be reused safely across teams and environments
Policy-as-code patterns for least privilege and permission boundary enforcement
Terraform-driven onboarding and offboarding flows for identity-related systems
Automation for service account and workload identity provisioning
Access reporting and audit visibility pipelines connected to code-based IAM workflows
Drive improvements in:
Standardization of IAM modules, variables, role definitions, and policy structures
Repeatability and consistency of access changes
Reduction of manual IAM operations
Auditability and change traceability
Safe rollout of identity changes through code review and pull request workflows
Ensure mature Terraform engineering practices around:
State management
Drift detection and remediation
Rollback planning
Blast-radius awareness for IAM changes
Safe promotion of access changes into production
Automate Identity and Access Workflows
Build scalable automation for identity lifecycle management, access requests, entitlement changes, access reviews, and day-to-day IAM operations.
Design and implement:
Provisioning and deprovisioning automation
Access request and approval workflows
Group-based access assignment and role mapping
Okta app integration and assignment automation
IAM Identity Center permission set automation
Self-service identity workflows for internal teams
Identity reporting and access visibility pipelines
Operational tooling that reduces repetitive IAM work
Work with:
Terraform and Infrastructure as Code workflows
Python, Bash, PowerShell, and APIs
CI/CD systems and Git-based change management
Okta Workflows and similar orchestration tooling
ServiceNow, ticketing, and operational workflow integrations
AI tools such as Claude Code, Codex, and similar engineering assistants
MCP-enabled integrations, agentic workflows, and internal automation platforms
Drive improvements in:
Repeatability
Auditability
Operational safety
Reduction of manual IAM work
Secure-by-default access onboarding
Strengthen Identity Security and Risk Reduction
Lead initiatives to reduce identity-related risk across human and non-human identities.
Design and implement controls for:
Excessive permissions and privilege escalation reduction
Service account and workload identity hardening
Long-lived credential reduction
Cross-account trust policy review and hardening
Permission boundary enforcement
Role lifecycle management
Just-in-time and time-bound privileged access
Break-glass access workflows
Identity anomaly detection and misuse investigation
Use native and third-party tooling to identify and remediate risk, including:
AWS IAM Access Analyzer
CloudTrail
GuardDuty
GCP-native IAM and audit services
Okta System Log and access reporting
CIEM, CSPM, and related cloud security platforms
Improve Zero Trust and Privileged Access Security
Partner with IAM, platform, and security teams to strengthen Zero Trust and privileged access controls across Scopely’s environment.
Support and enhance:
Twingate connectors, resources, and access policy design
Identity-aware remote access controls
Zero Trust segmentation for internal applications and privileged systems
Privileged access workflows
PAM platform integrations such as Britive
Adaptive access controls
MFA and passwordless adoption
Federated access into AWS, GCP, SaaS platforms, and internal tools
Secure vendor and contractor access patterns
Drive improvements in:
Human identity security
Non-human identity security
Access visibility
Privileged session control
Access policy consistency across environments
Support Identity Investigations, Monitoring, and Audit Readiness
Partner with Security Operations, Compliance, and Infrastructure teams to improve identity monitoring, investigation, and audit readiness.
Build and enhance:
IAM troubleshooting runbooks
Identity-related detection and triage workflows
Access review processes
Permission reporting and evidence collection
IAM logging and monitoring design
Operational metrics for identity security maturity
Support investigations involving:
Suspicious access activity
Identity and permission abuse
Misconfigured app integrations
Broken federation and provisioning flows
Risky SaaS integrations
Service account misuse
Cross-account access issues
Listed on hirly, a job board. hirly is not the employer: Scopely is hiring for this role.
Similar jobs
- Sr. IAM Engineer – SAP Security HANAMckesson · CorkFirst seen 13d ago
- Sr IAM Engineer – SAP Security (Integration)Mckesson · CorkFirst seen 13d ago
- Senior IAM EngineerBetter Mortgage · IndiaFirst seen yesterday
- Senior IAM Engineer - Ping Identity and Directory ServicesCvshealth · TX - Work from homeFirst seen yesterdayremote
- Sr IAM EngineerAcrisure · 2 LocationsFirst seen 2d ago
Browse similar roles
Want this one?
Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.
Tailor my resume for this job