Security Identity and Access Management (IAM) Specialist
Samaha Consulting · Johannesburg
Posted 5 August 2026
Stop applying one at a time.
JobAlertsZA auto-applies to South African jobs like this one for you, overnight. Upload your CV once — we do the applying.
Start free — we apply for you →Introduction
We are seeking an experienced Security Identity and Access Management (IAM) Specialist to join Cyber Security team. The successful candidate will be responsible for designing, implementing, and managing Identity and Access Management (IAM) solutions to protect enterprise systems, applications, and data. This role focuses on securing digital identities, managing user access throughout the identity lifecycle, and enforcing security best practices aligned with the principle of least privilege. The ideal candidate will have strong expertise in Microsoft Active Directory, Microsoft Entra ID (Azure AD), IAM protocols, and access governance.
Duties & Responsibilities
- Design, implement, and administer Identity and Access Management (IAM) solutions across enterprise environments.
- Manage and maintain Microsoft Active Directory (AD) and Microsoft Entra ID (Azure AD) infrastructure.
- Configure and enforce role-based access control (RBAC) and least privilege access principles.
- Provision, modify, and de-provision user accounts throughout the identity lifecycle.
- Configure and maintain authentication, authorization, and identity federation services.
- Implement and manage Identity Governance and Administration (IGA) processes.
- Develop and maintain access policies, security groups, and directory structures.
- Conduct periodic user access reviews, recertification, and privilege audits.
- Investigate and resolve identity and access-related incidents and security issues.
- Monitor IAM systems to identify unauthorized access attempts and security risks.
- Collaborate with Infrastructure, Cloud, Security, and Application teams to implement secure access controls.
- Support the implementation of Multi-Factor Authentication (MFA), Conditional Access, and Single Sign-On (SSO) solutions.
- Ensure compliance with organizational security standards, governance frameworks, and regulatory requirements.
- Prepare IAM documentation, technical procedures, and operational runbooks.
- Provide recommendations for improving identity security, automation, and access governance.
- Participate in security audits, risk assessments, and compliance activities.
- Stay current with emerging IAM technologies, Microsoft security enhancements, and cybersecurity best practices.
Desired Experience & Qualification
Education
- Bachelor's Degree or National Diploma in Information Technology, Computer Science, Information Systems, Cyber Security, or a related field.
Experience
- Minimum 5 years' experience in Identity and Access Management (IAM).
- Hands-on experience with Microsoft Active Directory (AD) and Microsoft Entra ID (Azure AD) .
- Strong understanding of identity lifecycle management, provisioning, and access governance.
- Experience implementing Role-Based Access Control (RBAC) and Privileged Access Management (PAM).
- Knowledge of IAM protocols including SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and Kerberos .
- Experience implementing Single Sign-On (SSO) and Multi-Factor Authentication (MFA) solutions.
- Experience conducting access reviews, identity governance, and compliance reporting.
- Familiarity with Microsoft security technologies and cloud identity services.
- Strong troubleshooting, analytical, and problem-solving skills.
- Experience working within Cyber Security and Enterprise IT environments.
Required Certifications
- CompTIA Security+
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Microsoft Certified: Azure Security Engineer Associate (AZ-500)
Preferred Skills
- Microsoft Entra ID Governance
- Azure Active Directory (Azure AD)
- Conditional Access Policies
- Privileged Identity Management (PIM)
- Microsoft Defender for Identity
- Identity Governance & Administration (IGA)
- Identity Federation
- Role-Based Access Control (RBAC)
- Privileged Access Management (PAM)
- Zero Trust Security Architecture
- PowerShell scripting (advantageous)
- ITIL and Cyber Security best practices