Middle Information Security Access Specialist

GR8_TECHOn-siteFull-timeMid level, 2–5 yearsListed 1 day ago

Apply now

About this role

GR8 _TECH builds B2B iGaming platforms for operators who play to lead.

We deliver full-cycle, high-impact tech designed to scale — from seamless integrations and expert consulting to long-term operational support. Our platform powers millions of active players and drives real business growth. Call it what it is: the iGaming Platform for Champions.

With 1000+ GR8 people across locations and time zones, we don’t just ship technology — we help operators build success stories across brands, markets, and geos.

Our ambition drives us. Our people make it real.

If you’re a challenger in spirit and a champion in action — join us.

Why this role exists:

This role exists to scale, secure, and automate our user access management infrastructure, ensuring zero-trust integrity at high velocity. You’ll help us protect our core IT ecosystem by managing the end-to-end employee access lifecycle, establishing standardized access profiles, leveraging modern automation and AI-driven tools, and meeting strict operational SLAs and security standards.

What you’ll drive:

Strategy & outcomes

- Lead and optimize end-to-end Employee Lifecycle access workflows (Onboarding / Dismissal / Change Position) : ensure seamless access provisioning during onboarding, timely revocation upon offboarding, and structured access reviews during internal transfers or role changes.

- Own and govern the process of designing, standardizing, and maintaining corporate Access Profiles across departments to align with least-privilege principles.

- Measure and track operational SLAs, proactively eliminating bottlenecks in the access request pipeline to maintain high customer satisfaction (CSAT).

- Optimize operational processes by driving access lifecycle automation and minimizing manual intervention.

Discovery & decisions

- Design, validate, and maintain role models (roles, sub-roles, permission sets, and Access Profiles) across corporate systems, continuously identifying and mitigating access anomalies.

- Initiate and define requirements for automated testing of role-model functionality and access controls across systems.

- Partner with Talent Department, IT, and engineering teams to onboard new corporate systems into the centralized Access Flow platform and align access profiles with organizational changes.

Delivery & execution

- Leverage AI agents and LLM-powered automation tools to optimize repetitive operational tasks, accelerate ticket analysis/triaging, and streamline documentation workflows.

- Process complex, escalated access tickets swiftly and securely, serving as a trusted gatekeeper for critical permissions.

- Analyze complex access rights data, identify permission inconsistencies, and resolve access drift across platforms.

- Build and maintain comprehensive internal documentation for SOPs, access profile matrices, role definitions, and access governance frameworks.

What makes you a GR8 fit:

Must-have:

- 2+ years of hands-on experience in Information Security, IAM , or IT Operations / Systems Administration / L3 Support with a strong focus on access management.

- Proven experience managing Onboarding / Dismissal / Change Position workflows : automated/manual provisioning during onboarding, revoking access upon offboarding, and role adjustments upon job changes.

- Practical experience creating, standardizing, and auditing Access Profiles and Role-Based Access Control (RBAC) models across corporate tools and systems.

- Strong technical understanding of enterprise identity and access tools (e.g., Okta, CyberArk, Active Directory, PAM, SSO, and federation protocols).

- Understanding and practical experience with AI tools / AI agents (e.g., prompt engineering, AI copilots, or agentic workflows) to automate routine operational tasks, reporting, or data processing.

- Solid understanding of core access control principles: RBAC, ABAC, Principle of Least Privilege, and Zero Trust .

- SLA- and quality-driven mindset with experience managing high-volume operational requests without compromising security standards.

- Strong analytical skills with the ability to navigate and validate complex permission structures across diverse systems.

- Clear communication skills—ability to explain technical security policies and requirements to non-technical stakeholders.

- Fluency in Ukrainian or Russian; Intermediate+ level of English.

Nice-to-have:

- Working knowledge of security compliance frameworks and audit requirements ( PCI DSS, ISO 27001 ) in the context of access management and user access reviews.

- Hands-on experience integrating AI agents or custom LLM workflows into internal IT/IAM automation pipelines (e.g., via APIs, LangChain, or agentic frameworks).

- Bachelor’s degree in Computer Science, Information Security, or a related technical field.

- Experience configuring, managing, or troubleshooting custom Access Flow / IAM orchestration platforms.

- Familiarity with cloud security concepts and identity governance within AWS, Azure, or GCP .

- Relevant industry certifications (e.g., CompTIA Security+, Okta Certified Professional, Microsoft Identity and Access Administrator).

Why you’ll love working here:

Benefits Cafeteria — annual budget you allocate to:

Sports • Medical • Mental health • Home office • Languages.

Work-life & support

- Paid maternity/paternity leave + monthly childcare allowance.

- 20+ vacation days, unlimited sick leave, emergency time off.

- Remote-first + tech support + coworking compensation.

- Team events (online/offline/offsite).

- Learning culture with internal courses + growth programs.

Our culture & core values:

GR8_TECH culture is how we win — through trust, ownership, and a growth mindset. We move fast, stay curious, and keep it real, with open feedback, room to experiment, and a team that’s got your back.

FUELLED BY TRUST : we’re open, honest, and have each other’s backs.

OWN YOUR GAME : we take initiative and own what we do.

ACCELER8 : we move fast, focus smart, and keep it simple.

CHALLENGE ACCEPTED : we grow through challenges and stay curious.

BULLETPROOF : we’re resilient, ready, and always have a plan.