Full-Time

Senior IAM Engineer

Australian Financial Complaints Authority (AFCA)

Australian Financial Complaints Authority (AFCA)

No salary listed

Melbourne VIC, Australia

Hybrid

Two days per week on-site in Melbourne.

Category
IT & Security (1)
Required Skills
Microsoft Azure
LDAP
Infrastructure as Code (IaC)
Role-based Access Control
SAML
Requirements
  • Proven experience delivering enterprise IAM or CIAM solutions in complex, regulated environments.
  • Strong hands-on experience with modern identity platforms such as Microsoft Entra ID (Azure Active Directory), Azure AD B2C / Entra External ID, Okta / Auth0 (desirable given AFCA context).
  • Experience leading or contributing to IAM platform selection and migration from and/or integration with legacy identity solutions such as Active Directory.
  • Strong expertise in modern authentication and identity protocols: OAuth2, OpenID Connect (OIDC), SAML.
  • Experience designing and implementing API and service authentication patterns.
  • Solid understanding of Identity lifecycle management (joiner/mover/leaver), Access governance and RBAC models, CIAM patterns for external users (B2C/B2B).
  • Ability to translate enterprise architecture into implementable IAM solutions.
  • Experience integrating IAM with enterprise platforms such as CRM and Case Management (e.g. D365, ServiceNow), Service Management (Fresh Works) and digital channels.
  • Strong understanding of cloud-first identity architecture patterns within Azure environments.
  • Demonstrated technical leadership across complex programs.
  • Strong stakeholder engagement across architecture, security, and delivery functions.
  • Ability to influence design decisions and guide teams through ambiguity.
Responsibilities
  • Lead and own the end-to-end design and implementation of enterprise IAM solutions across transformation programs, covering both CIAM (external users) and workforce identity.
  • Drive evaluation and selection of IAM platforms (e.g. evolution of Azure B2C / Microsoft Entra External ID or alternatives), including defining target-state architecture and transition roadmap, vendor engagement and supporting commercial considerations.
  • Translate enterprise and solution architecture into practical, secure, and scalable IAM designs that can be delivered by engineering teams, incorporating automation, Infrastructure as Code (IaC), and CI/CD practices where appropriate.
  • Provide hands-on engineering leadership across the IAM lifecycle (design, build, integration, and run), including complex troubleshooting and decision-making
  • Design and implement integrations across AFCA’s application ecosystem (e.g. Dynamics 365, ServiceNow, APIs, portals), including:
  • OIDC / OAuth2 authentication flows
  • Token design and validation
  • API and service-to-service authentication patterns
  • Implement identity lifecycle management, RBAC models and least privilege access
  • Design and strengthen identity security controls (MFA, conditional access, modern authentication)
  • Identify and mitigate identity-related security risks, including fraud and account takeover threats
Desired Qualifications
  • Experience working in environments using split identity models (internal vs external identity platforms).
  • Experience migrating from Azure AD B2C or similar legacy CIAM implementations.
  • Experience working in highly regulated industries
Australian Financial Complaints Authority (AFCA)

Australian Financial Complaints Authority (AFCA)

View

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A