Georg Grabner, MSc · Independent IAM Architect

Securing identity & access for the modern enterprise.

I help enterprises and government organizations design, implement and govern Identity and Access Management programs that reduce risk, satisfy auditors and let people work without friction — with a strong focus on business needs, process and usability.

30+years in IT
20+years specializing in IAM
CISSPAzure & Cybersecurity Architect
Trusted by Ministry of Defense· APG· Stedin· ABN AMRO· RvIG· Nationale Nederlanden· ING
About

Two decades focused on one thing: identity.

I'm Georg Grabner, an independent architect and consultant who has worked in IT for more than 30 years — the last 20 specializing in Identity and Access Management. I help organizations with the architecture, design and implementation of security solutions and processes, working across the full IAM lifecycle from strategy through delivery and day-two operations.

My approach keeps a strong focus on business needs, procedures and usability, backed by a solid foundation in IT infrastructure and cloud. I work vendor-neutral, so my recommendations are driven by your requirements and risk profile rather than a single product line — across regulated industries, government and large enterprises.

I hold an MSc in Cyber Security (Pass with Merit) and am completing an MSc in Artificial Intelligence, alongside CISSP, Microsoft Cybersecurity & Azure Solutions Architect Expert, SABSA and ArchiMate certifications.

Core competencies

IAM Strategy & Roadmaps Identity Governance (IGA) Privileged Access (PAM) Microsoft Entra ID & PIM SSO & Federation (SAML, OIDC, OAuth) RBAC & Role Design Zero Trust / ZTNA Joiner-Mover-Leaver Maturity Assessment Compliance & Audit (AFM/DNB)

Platforms & tooling

Microsoft Entra / Azure CyberArk SailPoint One Identity NetIQ SAP BTP / SuccessFactors ServiceNow
Services

How I can help.

Engagements range from short advisory sprints to hands-on, end-to-end programme delivery. A typical starting point is an assessment of where you are today and where the biggest risks and quick wins sit.

IAM Strategy & Assessment

Maturity assessments, target architectures and pragmatic roadmaps that align identity investment with business and compliance goals.

Identity Governance (IGA)

Access certification, role mining, segregation-of-duties and joiner-mover-leaver automation across your application landscape.

Privileged Access (PAM)

Securing administrative and service accounts: vaulting, session control, just-in-time access and least-privilege models.

SSO & Federation

Single sign-on, MFA and identity federation (SAML, OIDC, SCIM) that improve security and the user experience at the same time.

Zero Trust & Access

Designing access policies and conditional controls around the principle that trust is never assumed and always verified.

Programme Delivery & Audit

Hands-on implementation support, vendor selection, and preparing IAM controls and evidence for audit and regulatory review.

Experience

Selected engagements.

More than two decades architecting and delivering IAM programmes for government, financial services and large enterprises.

2026 — Present

Senior IAM Architect

Ministry of Defense · Soest

Translating functional requirements into clear functional and technical designs, turning complex architectures into practical building blocks, and guiding implementation of ICT components — including configuration documentation, impact analyses, risk assessments and third-line support.

2025 — 2026

Business Analyst, Privileged Access (PAM)

APG Asset Management · Amsterdam

Led the onboarding of DevOps teams to CyberArk, coordinating the full technical integration of 46 applications. Ran privilege and account inventories, delivered user training, and contributed to compliance reporting to APG's Executive Board, AFM and DNB.

2022 — 2025

Security & IAM Solution Architect

Stedin · Rotterdam

Established IAM policies and a maturity roadmap, and designed B2B identity for external partners on Entra ID and SAP BTP. Heavy focus on Microsoft Entra, Identity Governance, API security (OAuth, OIDC, SAML), Azure PIM and CyberArk in OT — plus a ZTNA vendor selection (Zscaler, Barracuda, Microsoft).

2024

IAM Project Lead / Architect

Versuni · Amsterdam

Assessed IAM maturity across technology, people and process, and built a governance roadmap. Designed an IAM solution on Entra Identity Governance and SAP SuccessFactors across a multi-cloud estate (Azure, AWS, Google Cloud) integrated with Azure PIM.

2019 — 2022

Domain Architect PAM · Practice Lead

Grabowsky B.V. · The Hague

Advised clients on their IAM/PAM journey — requirements, use cases and security roadmaps — recommending solutions on CyberArk and One Identity. As Practice Lead, managed a team of five IAM professionals alongside delivery and consultancy.

2009 — 2019

Co-owner & IAM Architect

IonIT B.V. · Nieuwegein

Managing partner of a ten-person IAM consultancy, responsible for project delivery, project and bid management — delivering IAM programmes for clients including RvIG, ABN AMRO, Nationale Nederlanden, GreenChoice, The Student Hotel and ING Insurance Central Europe.

Earlier roles & publications: Senior infrastructure consultant at Ictivity; engineering and support roles at Lanalyst, Meldrige and Centric. Co-author of "Using Blockchain to Preserve Chain of Custody: Cloud Forensics Analysis" (35th Int'l Conference on Software Engineering & Knowledge Engineering, 2023).

Credentials

Certifications & education.

Certifications

  • CISSP — Certified Information Systems Security Professional ISC²
  • Microsoft Cybersecurity Architect Expert Microsoft
  • Microsoft Azure Solutions Architect Expert Microsoft
  • CISA — Certified Information Systems Auditor ISACA
  • SAFe 5 Architect · SABSA Foundation Scaled Agile · SABSA
  • ArchiMate 3 Practitioner The Open Group
  • CyberArk Trustee · NetIQ Identity Manager Specialist CyberArk · NetIQ

Education

  • MSc Artificial Intelligence University of Liverpool · in progress
  • MSc Cyber Security — Pass with Merit University of Liverpool
  • HBO Informatica & Informatie The Hague University of Applied Sciences

Languages

Dutch English German
Contact

Let's talk about your identity challenge.

Whether you're starting an IAM programme, stuck mid-implementation, or preparing for audit — get in touch and let's find the right next step.

Maassluis, Netherlands · available remote & on-site

Available for IAM architecture, advisory and interim engagements. I usually reply within one business day.

Prefer email? Reach me directly at georg@grabner.nl.