IAM Engineer — Workplace Identity (m/w/d)
Shape the future of workplace identity at Distology — delivering hands-on IAM solutions, enabling partners and using AI to build smarter, more secure ways of working.
Location: Berlin Entity: Distology Germany GmbH
Salary: €60,000 – €70,000 gross per year, depending on experience
About us
Distology is a cybersecurity solution provider. We work with a small, curated portfolio of vendors — including Okta, Auth0, Tenable, Horizon3.ai, Halcyon and Snyk — and we bring them to market through our network of partners.
Distology Engineering is the technical department behind that. We are a small team blending sales engineers and professional services consultants, which means the same people run the early technical conversations, build the proofs of concept, scope the work, and then deliver it.
The role
This is a workplace identity role — workforce identity and access management (WIAM) — and not the version of that job from five years ago. Single sign-on, MFA and joiner- mover-leaver are still in the foundation layer; this role will move further up the stack: identity governance, identity security posture, securing non-human and agentic identity, phishing-resistant authentication and device trust.
Roughly, the job splits three ways.
Working with partners - Our partners are systems integrators, resellers and MSPs
across the UK, DACH and Benelux. You will run enablement sessions and join customer
conversations.
Hands-on identity work - Discovery and scoping sessions, proofs of concept, tenant
configuration, integrations, migrations and implementation delivery.
Building how we work - We are becoming an AI-native team — we run our own internal
AI platform and we have built a shared library of skills and automations for the work we
do. If you have been quietly automating your own work with language models and
wishing someone would let you do it properly, this role will suit you.
What we are looking for
• IAM knowledge — Okta, Entra ID, Ping, Keycloak, JumpCloud, CyberArk, SailPoint or similar; ideally two or more years of commercial experience.
• Standards. Working familiarity with OIDC, OAuth 2.0, SAML, SCIM.
• AI-assisted development such as Claude Code, to produce scripts, integrations and tools.
• You are comfortable in front of people. Customers, partners, a room of eight engineers who all want something slightly different. You can explain a technical idea to someone non-technical without condescension, and you can say "I don't know, I'll find out" without losing the room.
• You are organised. You keep track of your own commitments, you write things down, you follow up without being chased. In a small team this matters more than raw technical depth.
• You listen before you solve. Most identity problems are misunderstood before they are mis-implemented.
Language: English is our business language. German or Dutch would be a big advantage given the partner base.
If you don't have commercial IAM experience, we are also keen to chat with someone who has configured a SaaS platform against a customer's requirements, integrated it with the rest of their stack, and then explained it to the people who have to live with it. Two backgrounds we would be pleased to see:
• Integration and automation. Building workflows and integrations on platforms such as Make, n8n, Zapier, Workato or similar — API work, webhooks, moving and transforming data between SaaS systems, and handling authentication between them. This maps directly onto both the provisioning side of identity and the automation side of how we work.
• SaaS platform consultancy or implementation. Configuration, integration and rollout work for customers on Salesforce, ServiceNow, Atlassian Cloud or comparable platforms. The skills that transfer are the ones we care most about: turning a vague requirement into a working configuration, managing a customer through a change, and documenting it well enough that someone else can maintain it.
Show us the interest and the underlying skills and we will take the experience gap seriously rather than treat it as a disqualifier.
What you get
• Funded vendor training and certification, with the working time to do it properly
• A role shaped around your strengths rather than a fixed job spec handed to you on day one
• Early exposure to problems the industry has not solved yet, rather than a decade-old runbook
• Close working contact with an experienced cybersecurity engineering team, in a team small enough that you are never far from the interesting work
• A team that will back you to rebuild a process rather than inherit it
Benefits
· 25 days holiday (increasing with tenure) + ability to buy/sell days
· Birthday off
· Health & wellbeing investment
· Free breakfast every day
· Learning & development opportunities
· Quarterly company awards & travel incentives
· Annual service awards
· Cycle to work scheme
· Volunteering days
· Regular team socials
Equal Opportunity Statement
Distology is committed to diversity and inclusivity in the workplace.
#LI-CT1
- Department
- Engineering
- Locations
- Germany
- Remote status
- Hybrid
About Distology
Distology is a multi-award-winning, passionate, and highly knowledgeable cybersecurity solutions provider distributing leading and emerging cybersecurity technologies and services across the EMEA region.