IAM Engineer (Operations & Entra ID) (Warsaw)Warsaw, PL%LABEL_POSITION_TYPE_FULL_TIME%
Job Description
About Cronos Europa:
Cronos Europa is a leading IT and digital transformation partner dedicated exclusively to European Institutions and agencies, delivering mission‑critical solutions that shape Europe’s digital future. As part of the Cronos Group, one of the most innovative and fastest‑growing tech ecosystems in Europe, we benefit from a vast pool of expertise and cutting‑edge capabilities. With over 1,000 specialists across Belgium, Luxembourg, and the Netherlands, we combine deep institutional knowledge with strong engineering excellence to support long‑term, high‑impact EU programmes requiring reliability, scalability, and innovation.
About the job
We are currently looking for an IAM Engineer (Operations & Entra ID) to strengthen our Cronos Europa team and contribute to large‑scale IT programmes within the European Institutions.
The place of the delivery will be in Poland (Warsaw).
Responsibilities
- Administration and monitoring of Identity and Access Management (IAM) System - Microsoft Identity Manager.
- Providing 2nd line support to IAM, Identity Systems and Federation Services.
- Update the technical documentation and operating procedures.
- Troubleshooting IAM and its components.
- Implementing changes according to ICT change management procedures.
- IAM incident management.
- User Access management.
- Other specific duties as assigned by supervisor.
Your Profile
- You have a bachelor or Master degree in IT.
- You are fluent in English (minimum level B2).
- You have minimum 5 years of IT relevant professional experience.
- You have minimum 4 years of experience in a similar role.
- Knowledge in the area of identity management (including identity lifecycle, identity management processes).
- Knowledge of Microsoft Identity Manager system administration.
- Minimum 1 year of relevant experience in creating and designing Identity Access Management process.
- Knowledge about Microsoft Active Directory, ADLDS, ADFS, LDAP, IDAAS, Entra ID, Azure MFA.
- Knowledge about federation protocols (SAML v2, WS-*, STORK).
- Knowledge about sign-in protocols (WS-FED, SAML, OAUTH).
- Experience with Unique ID set up and implementation in big organizations.
- Experience in ticketing systems and ITIL based change management, configuration management and release management processes.
- Basic knowledge in administering Microsoft Systems.
- A proactive attitude, team-work spirit, being self-motivated with a strong user orientation.
- Good communication skills.
- Able to cope with the fast changing technologies
Specific requirements
- Microsoft Entra ID operations. Proven hands-on ability to configure and operate Entra ID primarily via Microsoft portals (Entra admin center, Azure portal, M365 admin), including tenant settings, identity objects, and access-related configurations.
- Secure access controls and policy administration. Ability to design, implement and maintain identity security controls in Entra ID, especially MFA and Conditional Access (baseline posture, exclusions/break-glass, safe rollout, monitoring), aligned with enterprise security principles (supported by CISSP / cybersecurity architecture background).
- Federation and SSO support (operations + troubleshooting). Operational capability to support and troubleshoot SSO/federation integrations using SAML v2, WS-Fed, WS-* and related sign-in patterns, including metadata/certificate handling, claims mapping at a functional level, and coordination with application owners for remediation.
- Identity lifecycle and access management execution. Ability to execute and support identity lifecycle processes (JML), access requests/approvals, and user access administration across AD/Entra/MIM-connected services, ensuring consistency with defined IAM processes and minimizing operational risk.
- ITIL/ticket-driven change and incident discipline. Ability to operate within ticketing systems and ITIL processes (incident/problem/change/config/release), providing clear implementation steps, risk/impact assessment, rollback approach, post-change validation evidence, and timely stakeholder communication.
- Documentation and operational readiness. Strong discipline in maintaining technical documentation and operating procedures (runbooks, SOPs, known errors), including capturing “how-to” steps for GUI-driven configuration, audit evidence requirements, and handover-ready knowledge.
- Relevant certifications (Microsoft and SailPoint preferred; ServiceNow also valuable)
If you wish to integrate a dynamic structure on a human scale while working with the latest technologies, don't wait anymore and join Cronos!