Question
Full-time
2-5

Identity Governance and Privileged User Engineer

2/3/2026

The role involves managing privileged access and identity governance using One Identity Safeguard and One Identity Manager, focusing on securing accounts, supporting JML processes, and integrating applications. Key tasks include operating PAM systems, maintaining IGA workflows, creating documentation, managing IAM infrastructure on Windows/Linux, and automating processes.

Working Hours

40 hours/week

Company Size

1,001-5,000 employees

Language

English

Visa Sponsorship

No

About The Company
Avaloq is a premium provider of front-to-back software and services for over 170 financial institutions around the world. Our clients include private banks, wealth managers and investment managers, as well as retail and neo banks. We develop software that can be deployed flexibly through cloud-based Software as a Service (SaaS) or on-premises, and we offer Banking Operations outsourcing through our Business Process as a Service (BPaaS) model. Avaloq is a subsidiary of NEC Corporation, a global leader in the integration of IT and network technologies.
About the Role

Company Description

Founded and headquartered in Switzerland, Avaloq is continuously expanding its global footprint with around 2,500 colleagues in 12 countries, and more than 170 clients in 35 countries. We are an industry-leading provider of wealth management technology and services for financial institutions around the world, including private banks and wealth managers, investment managers, as well as retail and neo banks. Our research led approach and continual innovation is powered by the passion and creativity of our colleagues.
We are always looking for talented people to join us on our mission to orchestrate the financial ecosystem and democratize access to wealth management. Avaloq offers the opportunity to work closely with some of the world’s leading financial institutions as we jointly develop and shape careers. Championing a collaborative, supportive and flexible work environment empowers our colleagues to reach their full potential.

Job Description

Join the IAM team to manage privileged access and identity governance. Work with One Identity Safeguard and One Identity Manager to secure accounts, support JML processes, and integrate applications.

Your key tasks 

Privileged Access Management (PAM)

  • Operate and maintain One Identity Safeguard
  • Manage credential policies, password rotation, and integrations
  • Onboard systems and accounts into PAM
  • Monitor platform health and troubleshoot issues

Identity Governance (IGA)

  • Support JML processes with One Identity Manager
  • Maintain workflows, mappings, and job server operations
  • Integrate new applications and validate access assignments

Documentation

  • Maintain SOPs, runbooks, and audit-compliant records

Systems & Infrastructure

  • Manage IAM components on Windows/Linux
  • Perform patching, hardening, and monitoring
  • Provide L2/L3 support for IAM and directory services

Automation & Tooling

  • Automate with Terraform and Ansible
  • Develop PowerShell scripts; use SQL for troubleshooting

Qualifications

  • Degree in IT or a related field
  • 2–3 years of experience in PAM/IGA roles
  • Hands-on experience with One Identity Safeguard or similar tools (e.g., CyberArk, BeyondTrust, Delinea)
  • Strong Windows and Linux engineering skills
  • Solid knowledge of AD, Azure AD/Entra ID, LDAP, and authentication protocols
  • Proficiency in Terraform, Ansible, and PowerShell; SQL knowledge preferred
  • Strong documentation skills and a compliance-focused mindset
  • Fluent in English; German or French is a plus

Additional Information

We realize that managing work life balance is a challenge we all face in our daily lives and in order to support with this we are pleased to offer hybrid and flexible working for most of our Avaloqers to maintain work life balance and still continue our fantastic Avaloq culture in our global offices. 

In Avaloq we are proud to embrace diversity and understand the success of our business is built on the power of different opinions, we are whole heartedly committed to fostering an equal opportunity environment and inclusive culture where you can be your true authentic self. 

We hire, compensate and promote regardless of origin, age, gender identity, sexual orientation or any other fantastic traits that make us all unique, we have done our best to write this advert in an inclusive and neutral way. 

Please be aware that we will not accept speculative CV submissions for any of our roles from recruitment agencies, and any unsolicited candidate submissions will be exempt from any payment expectations.  

 

#LI-Hybrid

Key Skills
Identity GovernancePrivileged Access ManagementOne Identity SafeguardOne Identity ManagerJML ProcessesCredential PoliciesPlatform Health MonitoringWorkflow MaintenanceSOPsRunbooksWindows EngineeringLinux EngineeringADAzure AD/Entra IDLDAPTerraform
Categories
TechnologySecurity & SafetySoftwareEngineeringFinance & Accounting
Apply Now

Please let Avaloq know you found this job on InterviewPal. This helps us grow!

Apply Now
Prepare for Your Interview

We scan and aggregate real interview questions reported by candidates across thousands of companies. This role already has a tailored question set waiting for you.

Elevate your application

Generate a resume, cover letter, or prepare with our AI mock interviewer tailored to this job's requirements.