中级信息安全访问专员
Middle Information Security Access Specialist
GR8_TECH 为运营商构建 B2B iGaming 平台,帮助他们在行业中领先。
我们提供全周期、高影响力的科技解决方案,可扩展——从无缝集成和专家咨询到长期的运营支持。我们的平台支持数百万活跃玩家,并推动真实的业务增长。简而言之:这是冠军的 iGaming 平台。
我们在多个地点和时区拥有 1000+ 名 GR8 人,我们不只是交付技术——我们帮助运营商在品牌、市场和地域上打造成功故事。
我们的雄心驱动我们前进,我们的员工让这一切成为现实。
如果你是精神上的挑战者,行动上的冠军——加入我们吧。
为什么这个职位存在:
这个职位的存在是为了扩展、保障并自动化我们的用户访问管理基础设施,确保在高速度下保持零信任完整性。你将帮助我们通过管理端到端的员工访问生命周期来保护我们的核心 IT 生态系统,建立标准化的访问配置文件,利用现代自动化和 AI 驱动的工具,并满足严格的运营 SLA 和安全标准。
你将推动的工作:
战略与成果
- 主导并优化端到端的员工生命周期访问流程(入职 / 离职 / 职位变动):确保入职期间的无缝访问配置,离职时及时撤销访问权限,并在内部调动或职位变动时进行结构化的访问审查。
- 负责设计、标准化和维护跨部门的公司访问配置文件,以符合最小权限原则。
- 测量和跟踪运营 SLA,主动消除访问请求流程中的瓶颈,以保持高客户满意度(CSAT)。
- 通过推动访问生命周期自动化和减少人工干预来优化运营流程。
发现与决策
- 在企业系统中设计、验证和维护角色模型(角色、子角色、权限集和访问配置文件),持续识别和解决访问异常。
- 发起并定义对角色模型功能和跨系统访问控制的自动化测试需求。
- 与人力资源部门、IT 和工程团队合作,将新企业系统接入集中式访问流程平台,并使访问配置文件与组织变化保持一致。
交付与执行
- 利用 AI 代理和 LLM 驱动的自动化工具优化重复性操作任务,加速工单分析/分类,并简化文档处理
查看英文原文
GR8_TECH builds B2B iGaming platforms for operators who play to lead.
We deliver full-cycle, high-impact tech designed to scale — from seamless integrations and expert consulting to long-term operational support. Our platform powers millions of active players and drives real business growth. Call it what it is: the iGaming Platform for Champions.
With 1000+ GR8 people across locations and time zones, we don’t just ship technology — we help operators build success stories across brands, markets, and geos.
Our ambition drives us. Our people make it real.
If you’re a challenger in spirit and a champion in action — join us.
WHY THIS ROLE EXISTS:
This role exists to scale, secure, and automate our user access management infrastructure, ensuring zero-trust integrity at high velocity. You’ll help us protect our core IT ecosystem by managing the end-to-end employee access lifecycle, establishing standardized access profiles, leveraging modern automation and AI-driven tools, and meeting strict operational SLAs and security standards.
WHAT YOU’LL DRIVE:
Strategy & outcomes
- Lead and optimize end-to-end Employee Lifecycle access workflows (Onboarding / Dismissal / Change Position): ensure seamless access provisioning during onboarding, timely revocation upon offboarding, and structured access reviews during internal transfers or role changes.
- Own and govern the process of designing, standardizing, and maintaining corporate Access Profiles across departments to align with least-privilege principles.
- Measure and track operational SLAs, proactively eliminating bottlenecks in the access request pipeline to maintain high customer satisfaction (CSAT).
- Optimize operational processes by driving access lifecycle automation and minimizing manual intervention.
Discovery & decisions
- Design, validate, and maintain role models (roles, sub-roles, permission sets, and Access Profiles) across corporate systems, continuously identifying and mitigating access anomalies.
- Initiate and define requirements for automated testing of role-model functionality and access controls across systems.
- Partner with Talent Department, IT, and engineering teams to onboard new corporate systems into the centralized Access Flow platform and align access profiles with organizational changes.
Delivery & execution
- Leverage AI agents and LLM-powered automation tools to optimize repetitive operational tasks, accelerate ticket analysis/triaging, and streamline documentation workflows.
- Process complex, escalated access tickets swiftly and securely, serving as a trusted gatekeeper for critical permissions.
- Analyze complex access rights data, identify permission inconsistencies, and resolve access drift across platforms.
- Build and maintain comprehensive internal documentation for SOPs, access profile matrices, role definitions, and access governance frameworks.
WHAT MAKES YOU A GR8 FIT:
Must-have:
- 2+ years of hands-on experience in Information Security, IAM, or IT Operations / Systems Administration / L3 Support with a strong focus on access management.
- Proven experience managing Onboarding / Dismissal / Change Position workflows: automated/manual provisioning during onboarding, revoking access upon offboarding, and role adjustments upon job changes.
- Practical experience creating, standardizing, and auditing Access Profiles and Role-Based Access Control (RBAC) models across corporate tools and systems.
- Strong technical understanding of enterprise identity and access tools (e.g., Okta, CyberArk, Active Directory, PAM, SSO, and federation protocols).
- Understanding and practical experience with AI tools / AI agents (e.g., prompt engineering, AI copilots, or agentic workflows) to automate routine operational tasks, reporting, or data processing.
- Solid understanding of core access control principles: RBAC, ABAC, Principle of Least Privilege, and Zero Trust.
- SLA- and quality-driven mindset with experience managing high-volume operational requests without compromising security standards.
- Strong analytical skills with the ability to navigate and validate complex permission structures across diverse systems.
- Clear communication skills—ability to explain technical security policies and requirements to non-technical stakeholders.
- Fluency in Ukrainian or Russian; Intermediate+ level of English.
Nice-to-have:
- Working knowledge of security compliance frameworks and audit requirements (PCI DSS, ISO 27001) in the context of access management and user access reviews.
- Hands-on experience integrating AI agents or custom LLM workflows into internal IT/IAM automation pipelines (e.g., via APIs, LangChain, or agentic frameworks).
- Bachelor’s degree in Computer Science, Information Security, or a related technical field.
- Experience configuring, managing, or troubleshooting custom Access Flow / IAM orchestration platforms.
- Familiarity with cloud security concepts and identity governance within AWS, Azure, or GCP.
- Relevant industry certifications (e.g., CompTIA Security+, Okta Certified Professional, Microsoft Identity and Access Administrator).
WHY YOU’LL LOVE WORKING HERE:
Benefits Cafeteria — annual budget you allocate to:
Sports • Medical • Mental health • Home office • Languages.
Work-life & support
- Paid maternity/paternity leave + monthly childcare allowance.
- 20+ vacation days, unlimited sick leave, emergency time off.
- Remote-first + tech support + coworking compensation.
- Team events (online/offline/offsite).
- Learning culture with internal courses + growth programs.
OUR CULTURE & CORE VALUES:
GR8_TECH culture is how we win — through trust, ownership, and a growth mindset. We move fast, stay curious, and keep it real, with open feedback, room to experiment, and a team that’s got your back.
FUELLED BY TRUST: we’re open, honest, and have each other’s backs.
OWN YOUR GAME: we take initiative and own what we do.
ACCELER8: we move fast, focus smart, and keep it simple.
CHALLENGE ACCEPTED: we grow through challenges and stay curious.
BULLETPROOF: we’re resilient, ready, and always have a plan.