At Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters.
The Position
The Opportunity:
As a Senior Cybersecurity Engineer in the IAM space, you will serve as the technical owner of our Policy Based Access Control (PBAC) infrastructure. In this role, you will lead the design, implementation, and tactical lifecycle management of core authorization components to ensure they are scalable, resilient, and deeply integrated across a hybrid global landscape.
Key Responsibilities:
Infrastructure Ownership & Strategy: Architect and maintain core PBAC components (PDP/PEP) for high availability. Lead the transition from initial use cases to enterprise-wide adoption,
establishing global standards for policy-based authorization
Policy as Code (PaC) & DevOps: Drive the shift to PaC by designing automated CI/CD pipelines for versioning, testing, and deploying authorization logic like software
Integration & Consulting: Act as a primary consultant for global application and data owners to securely integrate systems via RESTful APIs, SQL/JDBC, and LDAP
Problem Solving & Analytics: Lead the analysis of complex, highly ambiguous technical problems across organizational boundaries, driving comprehensive root-cause analysis and proactive risk mitigation
Stakeholder & Vendor Management: Partner with product managers, general developers, and senior management to design secure, user-friendly PBAC flows. Manage production environments using ITIL principles and coordinate with external vendors and Managed Service Providers (MSPs)
Leadership & Continuous Improvement: Mentor team members, build
📌 PBAC Operations Engineer (Chía)
🏢 Roche
📍 Chía