About this role
Whether it's the unique breadth of our integrated offering that covers Injectable Aesthetics, Dermatological Skincare and Therapeutic Dermatology products; or our commitment to recognizing and rewarding people for the contribution they make - working here isn't like anywhere else. At Galderma, we actively give our teams reasons to believe in our ambition to become the leading dermatology company in the world. With us, you have the ultimate opportunity to gain new and challenging work experiences and create an unparalleled, direct impact.
Job Title: Manager of Identity & Access Governance (IAM/PAM) Location: Krakow/Poland - 3 days/week onsite Department: IT – Cyber Security About the role The Manager of Identity & Access Governance (IAM/PAM) leads Galderma’s identity and access management function within the Cyber Security team. This role owns the governance of all identities (human, technical, privileged and AI-driven) across Galderma’s IT and OT environments, and is accountable for managing risks related to privileged access and critical roles. The Manager drives the IAM programme across infrastructure and applications in a regulated, global context, partnering with IT, HR, business stakeholders and external providers.
Main Responsibilities Lead and manage the IAM/PAM team, including coordination with external partners and managed services Own the IAM program roadmap, budget, and successful delivery of projects (IAM, SSO, PAM) Develop, maintain, and enforce IAM policies, standards, and procedures, ensuring continuous improvement Oversee lifecycle management of all identities (human, technical, privileged, AI-driven), including access recertification and segregation-of-duties Define and document business and technical requirements for IAM systems and integrated applications Govern and monitor privileged access and critical roles, ensuring vault coverage, session controls, and secure break-glass processes Extend governance to machine and AI-driven identities, applying regulatory frameworks and best practices Act as the primary point of contact for audits and compliance matters related to identity, managing evidence, findings, and remediation Provide strategic advisory and security expertise to IT, HR, business stakeholders, and project teams Translate identity risks into business language and support risk assessment, incident response, and continuous improvement Key requirements Higher education in Information Technology, Information Security or equivalent experience Minimum 10 years of experience in IT security, with at least 5 years directly responsible for Identity & Access Management and/or Privileged Access Management Proven experience leading teams and managing vendors, integrators or managed services Strong technical understanding of Saviynt and CyberArk (PAM and CyberArk Identity/SIA) or equivalent leading IGA/PAM technologies Experience operating identity controls in a regulated environment (e.g. SOX/ITGC; GxP exposure is an advantage), including audit support Understanding of machine identity and secrets management; familiarity with identity governance for AI agents and emerging frameworks (EU AI Act, NIST AI RMF) is a strong advantage Exposure to identity in OT/manufacturing environments is an advantage Ability to translate complex identity risk topics into business and executive language Professional certifications such as CISSP, CISM or CISA strongly preferred; Saviynt or CyberArk certifications are a plus Fluent in English Skills & competencies Strong leadership and people management skills, with the ability to build and guide a high-performing IAM/PAM function Deep expertise in IAM/PAM technologies and architectures, including IGA, SSO, authentication and authorization patterns Excellent understanding of identity lifecycle processes and governance, including privileged access and non-human identities Strong risk management mindset, with the ability to identify, assess and mitigate identity-related risks in complex environments Excellent stakeholder management and communication skills, able to influence and work effectively with technical teams, HR, business leaders and auditors High level of analytical and problem-solving skills, with the ability to design and improve identity controls and processes Strong organizational skills, able to manage multiple initiatives, budgets and vendor relationships in a global, regulated environment Continuous improvement orientation, proactively seeking opportunities to enhance security posture, user experience and operational efficiency What we offer in return: You will be working for an organization that embraces diversity & inclusion and believe we will deliver better outcomes by reflecting the perspectives of our diverse customer base. You will receive a competitive compensation package with bonus structure and extended benefit package.
You will be able to work in a n onsite work culture. You will participate in feedback loops, during which a personalized career path will be established. You will be joining a growing company that believes in ownership from day one where everyone is empowered to grow and to take on accountability.
Next Steps: If your profile is a match, we will invite you for a first virtual conversation with the recruiter. The next step is a virtual conversation with the hiring manager and the wider team. The final step is an in-person interview with the local HRBP Our people make a difference At Galderma, you’ll work with people who are like you.
And people that are different. We value what every member of our team brings. Professionalism, collaboration, and a friendly, supportive ethos is the perfect environment for people to thrive and excel in what they do. #LI-Hybrid
