Cloud Security Services Logo

Cloud Security Services

Identity and Access Management (IAM) Solution Architect

Posted 20 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
The IAM Solution Architect will design IAM architecture, support transformation initiatives, and ensure compliance across business sectors for access management solutions.
The summary above was generated by AI

Cloud Security Services is looking for an experienced Identity and Access Management (IAM) Solution Architect to assist Client with a multi-year IAM transformation initiative. Candidate must have a strong background in designing IAM architecture for large, complex environments. This is a 6-month remote project.

 

Responsibilities

· Support of omni-channel (Digital, Voice, Paper) standard patterns based on the target state IAM solution architecture and eco-system for client workforce members.

· Drive workforce IAM solution architecture and scoping of engineering design and scoping to support the transformation initiative.

· Create engineering diagrams to support the overall solution architecture.

· Maintain and update the overall solution architecture.

· Solution Architecture and Engineering Diagrams for technical discovery and integration with other systems (e.g., CMDB and ITSM).

· Support the development of basic use cases / role models for Day 1 (Birthright) access.

· Create engineering diagrams for implementation into IDMS.

· Support the implementation of target state digital identity records for employees, contractors, and robots.

· Provide access management architecture and engineering services.

· Support the architecture and engineering for IDMS compliance across business sectors.

· Support architecture and engineering for enhancing access recertifications for better end user experience.

· Support AD / AAD architecture and engineering requirements.

 

Covers the following pattern categories for IAM;

oRegistration / Onboarding

oAuthentication § Authorization

oThird-party Service/API Access & Authorization

oInvitation-Based User Registration

oUser Access Delegation

oUser De-provisioning

oHelpdesk Processes

oOmnichannel Services "Overlay"

oDirectory abstraction

oMulti-factor authentication

· Evaluation of current processes against the defined industry and leading practices including industry standards such as the National Institute for Standards and Technology (NIST) Special Publication (SP) 800-63; Digital Authentication, NIST Cybersecurity Framework (CSF) and NIST SP 800-53; Security and Privacy Controls.

 

Required Skills

· 7-10 years’ experience working in the Identity and Access management (IAM) information security space in an architecture capacity.

· 5-7 years’ experience with the following:

o   Workforce IAM

o   Consumer IAM (CIAM)

o   Federation and single sign-on (B2B and B2C)

o   National Institute of Standards and Technology (NIST) 800-53

o   NIST 800-63

o   NIST Cybersecurity Framework (CSF)

· Experience creating high and low level IAM architecture patterns.

· Experience developing and implementing IAM strategies and roadmaps.

· Experience with major IAM platforms including:

o   Microsoft Active Directory

o   Microsoft Azure Active Directory

o   Oracle Identity Manager

o   F5 Access Policy Manager (APM)

o   Optimal IDM

· A solid understanding of access control patterns including role-based access control (RBAC) and attribute-based access control (ABAC).

· Experience consulting on all phases of a full IAM lifecycle including:

o   Book of record (BoR) to identity management system (IDMS) identity feeds.

o   IDMS to directory and application identity provisioning.

o   Application consumption of identity

· Strong written and verbal communication skills.

· Supporting communication of IAM efforts to all levels of an organization including C-Level.

· Experience with IAM governance including:

o   Information security policies and procedures

o   User lifecycle management (provisioning, de-provisioning, and maintenance)

o    User and access recertification

· Understanding of major authentication and authorization protocols including:

o   OAuth

o   OpenID Connect

o   SAML 2.0

o   Kerberos NTLM Authentication

o   Unix/Linux authentication and authorization

· Business outcomes mindset

· Directory services design experience such as AD and AAD

· Excellent interpersonal communication skills with strong spoken and written English.

· Scripting experience

· Implementation experience

· Collaborative team worker

Top Skills

F5 Access Policy Manager
Kerberos
Microsoft Active Directory
Microsoft Azure Active Directory
Ntlm
Oauth
Openid Connect
Optimal Idm
Oracle Identity Manager
Saml 2.0

Similar Jobs

34 Seconds Ago
Remote
2 Locations
Senior level
Senior level
Artificial Intelligence • Productivity • Software • Automation
Zapier seeks an Engineering Manager to lead the AI Capabilities team, focusing on building a robust AI platform with reusable APIs and high-quality features. Responsibilities include leading engineers, making architectural decisions, and enhancing development processes to improve user experiences and align with company goals.
Top Skills: DjangoNode.jsPythonReactTypescript
37 Seconds Ago
Remote
2 Locations
Senior level
Senior level
Artificial Intelligence • Productivity • Software • Automation
Lead a team of engineers to design and implement AI features, improve user experience, and drive automation solutions with a focus on user needs and experimentation.
Top Skills: DjangoNode.jsPythonReactTypescript
An Hour Ago
Remote or Hybrid
New York, NY, USA
68K-85K Annually
Mid level
68K-85K Annually
Mid level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
As a VIP Host, you'll manage relationships with engaged players, deliver exceptional customer experiences, and drive brand advocacy through various engagement strategies.

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account