Role Overview: Seeking an Architect specialising in Cloud Identity and Access Management (IAM) to design and secure cyber security architectures for a global enterprise. This role focuses on hybrid environments, federated identity, and least-privilege access management across enterprise systems.
Key Responsibilities:
- Design and refine end-to-end IAM architectures for complex hybrid enterprise environments across Azure Active Directory (Entra ID) and Okta platforms.
- Integrate secure authentication mechanisms (MFA, SSO, Conditional Access) and authorization standards into legacy and cloud-native application architectures.
- Define threat models, security risk assessments, security reference architectures, reusable design patterns, and architectural guardrails for product and engineering teams.
- Coordinate with security operations and incident response teams to integrate identity event logging, monitoring, and alerting into existing security tooling and workflows.
- Produce High-Level Design (HLD), Low-Level Design (LLD), risk decision documentation, and control mappings to support regulatory reviews, audits, and compliance.
Core Requirements:
- Technical Expertise: Advanced hands-on experience with Azure Active Directory / Entra ID, Okta, and least-privilege access principles.
- Architecture Background: Proven track record in enterprise IAM architecture, threat modeling, security risk assessments, and hybrid identity governance.
- Preferred Certifications: CISSP, CCSP, or Microsoft Certified: Azure Security Engineer Associate