Return to Job Search Shortlist job Shortlisted Job

Cloud Security & IAM Engineer

Sofitex Talent Recruitment
Location:
Luxembourg
Payment:
Not communicated
Last updated:
02 August 2026
Contract Type:
Contract
Hours:
Full Time
Report this job - in new tab

Job Description

Sofitex Talent Recruitment Fort d'une expérience de plus de 30 ans dans les Ressources Humaines, Sofitex est un réseau international de Travail Temporaire et de Placement en CDI. Sofitex fonde sa dynamique et son succès sur le professionnalisme de ses équipes, sa forte réactivité et sa proximité.

Description du poste

For our client located in Luxembourg-City, we are currently looking for an :

Cloud Security & IAM Engineer

The role will focus on strengthening cloud identity governance, privileged access management and Zero Trust access controls across the AWS environment.
The engineer will work closely with Platform, Workplace Technology and Security teams to improve the security, scalability and maintainability of the organisation's cloud-native access model.

This is a hands-on engineering role with a strong focus on implementation, operationalisation, and automation rather than governance-only activities.

Main responsibilities

Identity & Access Management
● Support the migration of AWS account federation from Microsoft Entra ID toward Okta.
● Review and redesign AWS IAM roles, permissions, and trust relationships.
● Improve IAM governance, role hygiene, and access standardisation across AWS environments.

Privileged Access Management (PAM/JIT)
● Support the implementation of PAM and Just-In-Time (JIT) access capabilities leveraging Okta.
● Define and implement privileged access governance controls for cloud administration and sensitive systems.
● Improve traceability, monitoring, and operational controls around privileged access paths.

Zero Trust & Network Security
● Review and clean existing Netskope ZTNA configurations.
● Remove wildcard access configurations and dormant rules.
● Standardise access policies and strengthen Zero Trust governance.
● Improve long-term maintainability and policy enforcement processes.

Security Engineering & Automation
● Work closely with Platform teams to automate and operationalise cloud security controls.
● Contribute to infrastructure-as-code and policy-as-code approaches where relevant.
● Support implementation of sustainable security guardrails to reduce future operational overhead.

Profil recherché

Requirements
● Strong hands-on AWS security and IAM experience.
● Experience with Okta, SAML/OIDC federation and cloud identity models.
● Experience with privileged access management concepts and cloud-native access governance.
● Good understanding of Zero Trust Network Access (ZTNA) concepts.
● Experience with Netskope or equivalent ZTNA technologies.
● Experience working in cloud-native and infrastructure-as-code environments.
● Ability to work cross-functionally with Security, Platform and Engineering teams.
● Terraform experience

Nice to have
● Experience with cloud compliance or regulated environments.
● Knowledge of DORA, PCI DSS or financial-sector security expectations.
● Experience with policy-as-code or cloud governance tooling.

Contract
● Consulting role, to be filled ASAP
● Contract until end of 2026
● Daily rate : 500-750€

Apply for this job

You are just a few steps away

Please enter your email

Attach a CV to your application

You are applying with CV:
No CV attached

OR

    • Browse device

Make your CV visible to recruiters in the Jobs.lu CV database?

Are you legally authorized to work in the European Union?

 By clicking Send Application I agree to the jobs.lu terms & conditions, and agree to allow jobs.lu to share the information in this application with Sofitex Talent Recruitment