A major public transport organisation serving the Brussels region in Belgium is preparing for NIS2 compliance and establishing an Identity Governance and Administration (IGA) capability. The senior IAM role modeler position focuses on mapping application assets, documenting access levels and coordinating the definition of consistent RBAC and ABAC access models. The work combines business analysis, functional analysis and data quality control to create a governed access catalogue for the organisation's application landscape.
The mission
The IGA initiative forms part of preparatory NIS2 compliance work and provides the foundation for controlled access governance. Its core deliverable is an exhaustive access catalogue covering the applications in scope, the authorization levels exposed by each application and the ownership information needed to manage them. Application owners and other contributors will supply source information, which must be consolidated in a central repository and checked for completeness, consistency and data quality. This catalogue will support the organisation's IGA tool and provide a common reference for future access decisions.
You will coordinate application owners, facilitate and coach workshops with business stakeholders and business security officers, and turn their input into validated role models. You will also formalise the IGA application onboarding process and the wider access catalogue lifecycle, covering new applications, changes and decommissioning. This includes defining business roles through RBAC and automated entitlement rules through ABAC. You will define eligibility criteria for new applications, including connectivity standards, security requirements and IAM guidelines, then support awareness and knowledge transfer so stakeholders can apply the process in daily operations.
Your responsibilities
- Map the application landscape and its authorization levels to create the source material for an exhaustive access catalogue.
- Consolidate contributions from application owners in a central repository and maintain the completeness, consistency and data quality of the resulting information.
- Facilitate and coach business workshops that produce coherent access roles validated by the relevant business security officers.
- Formalise the IGA application onboarding process and access catalogue lifecycle, including application changes, decommissioning, RBAC business roles and ABAC entitlement rules.
- Define, document and publish eligibility criteria for new applications, covering connectivity standards, security requirements and IAM guidelines, while supporting stakeholder awareness and knowledge transfer.
Your profile
Essential skills
- Bring senior-level experience in IAM architecture, identity governance, role modeling or comparable access governance work.
- Use asset modeling to structure applications, authorization levels and ownership information in a central repository.
- Apply RBAC and ABAC concepts to business roles and automated entitlement rules.
- Use business analysis and functional analysis to elicit, challenge and consolidate stakeholder requirements.
- Maintain data quality and consistency while coordinating contributors and working autonomously.
- Facilitate teamwork with business security officers and produce clear written documentation for validation, publication and knowledge transfer.