Job Description
Galderma is the emerging pure-play dermatology category leader, present in approximately 90 countries. We deliver an innovative, science-based portfolio of premium flagship brands and services that span the full spectrum of the fast-growing dermatology market through Injectable Aesthetics, Dermatological Skincare and Therapeutic Dermatology. Since our foundation in 1981, we have dedicated our focus and passion to the human body's largest organ - the skin - meeting individual consumer and patient needs with superior outcomes in partnership with healthcare professionals. Because we understand that the skin, we are in shapes our lives, we are advancing dermatology for every skin story.
We look for people who focus on getting results, embrace learning and bring a positive energy. They must combine initiative with a sense of teamwork and collaboration. Above all, they must be passionate about doing something meaningful for consumers, patients, and the healthcare professionals we serve every day. We aim to empower each employee and promote their personal growth while ensuring business needs are met now and into the future. Across our company, we embrace diversity and respect the dignity, privacy, and personal rights of every employee.
At Galderma, we actively give our teams reasons to believe in our bold ambition to become the leading dermatology company in the world. With us, you have the ultimate opportunity to gain new and challenging work experiences and create an unparalleled, direct impact.
Job Title: Manager of Identity & Access Governance (IAM/PAM)
Location: Krakow/Poland - 3 days/week onsite
Department: IT – Cyber Security
About the role
The Manager of Identity & Access Governance (IAM/PAM) leads Galderma’s identity and access management function within the Cyber Security team. This role owns the governance of all identities (human, technical, privileged and AI-driven) across Galderma’s IT and OT environments, and is accountable for managing risks related to privileged access and critical roles. The Manager drives the IAM programme across infrastructure and applications in a regulated, global context, partnering with IT, HR, business stakeholders and external providers.
Main Responsibilities
- Lead and manage the IAM/PAM team, including coordination with external partners and managed services
- Own the IAM program roadmap, budget, and successful delivery of projects (IAM, SSO, PAM)
- Develop, maintain, and enforce IAM policies, standards, and procedures, ensuring continuous improvement
- Oversee lifecycle management of all identities (human, technical, privileged, AI-driven), including access recertification and segregation-of-duties
- Define and document business and technical requirements for IAM systems and integrated applications
- Govern and monitor privileged access and critical roles, ensuring vault coverage, session controls, and secure break-glass processes
- Extend governance to machine and AI-driven identities, applying regulatory frameworks and best practices
- Act as the primary point of contact for audits and compliance matters related to identity, managing evidence, findings, and remediation
- Provide strategic advisory and security expertise to IT, HR, business stakeholders, and project teams
- Translate identity risks into business language and support risk assessment, incident response, and continuous improvement
Key requirements
- Higher education in Information Technology, Information Security or equivalent experience
- Minimum 10 years of experience in IT security, with at least 5 years directly responsible for Identity & Access Management and/or Privileged Access Management
- Proven experience leading teams and managing vendors, integrators or managed services
- Strong technical understanding of Saviynt and CyberArk (PAM and CyberArk Identity/SIA) or equivalent leading IGA/PAM technologies
- Experience operating identity controls in a regulated environment (e.g. SOX/ITGC; GxP exposure is an advantage), including audit support
- Understanding of machine identity and secrets management; familiarity with identity governance for AI agents and emerging frameworks (EU AI Act, NIST AI RMF) is a strong advantage
- Exposure to identity in OT/manufacturing environments is an advantage
- Ability to translate complex identity risk topics into business and executive language
- Professional certifications such as CISSP, CISM or CISA strongly preferred; Saviynt or CyberArk certifications are a plus
- Fluent in English
Skills & competencies
- Strong leadership and people management skills, with the ability to build and guide a high-performing IAM/PAM function
- Deep expertise in IAM/PAM technologies and architectures, including IGA, SSO, authentication and authorization patterns
- Excellent understanding of identity lifecycle processes and governance, including privileged access and non-human identities
- Strong risk management mindset, with the ability to identify, assess and mitigate identity-related risks in complex environments
- Excellent stakeholder management and communication skills, able to influence and work effectively with technical teams, HR, business leaders and auditors
- High level of analytical and problem-solving skills, with the ability to design and improve identity controls and processes
- Strong organizational skills, able to manage multiple initiatives, budgets and vendor relationships in a global, regulated environment
- Continuous improvement orientation, proactively seeking opportunities to enhance security posture, user experience and operational efficiency
What we offer in return:
- You will be working for an organization that embraces diversity & inclusion and believe we will deliver better outcomes by reflecting the perspectives of our diverse customer base.
- You will receive a competitive compensation package with bonus structure and extended benefit package.
- You will be able to work in a n onsite work culture.
- You will participate in feedback loops, during which a personalized career path will be established.
- You will be joining a growing company that believes in ownership from day one where everyone is empowered to grow and to take on accountability.
Next Steps:
- If your profile is a match, we will invite you for a first virtual conversation with the recruiter.
- The next step is a virtual conversation with the hiring manager and the wider team.
- The final step is an in-person interview with the local HRBP
Our people make a difference
At Galderma, you’ll work with people who are like you. And people that are different. We value what every member of our team brings. Professionalism, collaboration, and a friendly, supportive ethos is the perfect environment for people to thrive and excel in what they do.
#LI-Hybrid