We’re focused on delivering seamless digital propositions which allow customers to instantly manage their requirements and position IWG as the “Digital First” workspace provider. As early adopters of the latest technologies - whether it be Artificial Intelligence, Office IoT, Data or IOT Solutions - we create business value and are constantly striving to find new and improved ways to help our customers. Which is why we’re always on the look-out for intelligent, energetic, self-motivated, and curious individuals. We want to bring about a global workspace revolution and want you to help.
We are initiating our MidPoint implementation project and are seeking an experienced Identity and Access Management (IAM) professional to lead the entire program and subsequently own the platform. The candidate must have hands-on implementation experience with Evolveum MidPoint, covering design, deployment, and integration across a hybrid identity landscape.
In addition to MidPoint, the candidate will also be responsible for governance and ownership of our Ping Identity platform for customer-facing identity services (CIAM), while collaborating closely with the Workforce Active Directory/Entra team.
This is a strategic technical leadership role that combines project delivery, system architecture, and long-term ownership of IAM platforms.
To succeed in this role, you will need hands-on experience implementing and operating Evolveum MidPoint, including connector configuration, workflow design, and lifecycle automation, as well as strong knowledge of Active Directory and Microsoft Entra ID integration patterns. You should bring proven project leadership experience, having led an IAM implementation from design through rollout, with the ability to collaborate closely with the Workforce AD team, Security, HR, and business stakeholders. Success also requires expertise in Ping Identity solutions (PingFederate, PingAccess, PingOne) to manage customer authentication, federation, and CIAM processes, along with a solid command of identity protocols such as SAML, OAuth2, OpenID Connect, SCIM, and LDAP. Strong skills in automation and scripting (Groovy, PowerShell, Python), coupled with knowledge of compliance frameworks (GDPR, SOX, ISO 27001), will ensure you can deliver a secure, scalable, and future-proof IAM ecosystem
Key Responsibilities
MidPoint Implementation & Ownership
Ping Identity (Customer Identity)
Collaboration & Integration
Security & Compliance
Automation & Engineering
Required Skills & Experience
Nice to Have
IWG and its brands, including HQ, Regus, and Spaces, are equal opportunity, affirmative action employers. We invite applications from all individuals, regardless of ethnicity, gender, disability, religion, or sexual orientation. All applications will be considered and evaluated based on merit. We do not practice unfair discrimination. Preference will be given to suitably qualified individuals from underrepresented groups, according to our Employment Equity Plan, as required by the Employment Equity Act of South Africa.
IWG and its brands, including HQ, Regus, and Spaces, are equal opportunity, affirmative action employers. We invite applications from all individuals, regardless of ethnicity, gender, disability, religion, or sexual orientation. All applications will be considered and evaluated based on merit. We do not practice unfair discrimination. Preference will be given to suitably qualified individuals from underrepresented groups, according to our Employment Equity Plan.
We’ve been made aware that a few job applicants have received messages appearing to come from the IWG recruitment team, claiming that the next step in the hiring process involves a mandatory training course requiring payment. Please be advised that this is false. At no point during our recruitment process are candidates asked to pay for a course or any other service.
Thank you
When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. This information might be about you, your preferences or your device and is mostly used to make the site work as you expect it to. The information does not usually directly identify you, but it can give you a more personalized web experience. Because we respect your right to privacy, you can choose not to allow some types of cookies. Click on the different category headings to find out more and change our default settings. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer. Please refer to our Privacy Policy for more information.
These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not then work. These cookies do not store any personally identifiable information.
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.