11 часов назад
IDM Solution Architect (IAM)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
IDM Solution Architect (IAM): Designing enterprise-grade identity and access management solutions across workforce, machine-to-machine, and customer domains with an accent on Ping Identity, authorization modeling, and API security. Focus on building RBAC and hybrid RBAC/ABAC strategies, securing service-to-service communication, and enforcing OAuth2/OIDC token patterns through API gateways in line with Zero Trust principles.
Location: Andover, United Kingdom; hybrid and remote work arrangements indicated.
Company
provides global payroll and payment solutions for connected workforces.
What you will do
- Lead the architecture and design of enterprise IAM solutions using the Ping Identity suite.
- Design RBAC and entitlement models for workforce, applications, platforms, and services, with an evolutionary path toward hybrid RBAC/ABAC and fine-grained authorization.
- Define OAuth2, OIDC, JWT, token validation, scoping, and mediation patterns for API security.
- Partner with API Platform teams to enforce security at gateways such as Apigee and Kong.
- Architect machine-to-machine security, service identities, Client Credentials flows, and API-to-API trust frameworks.
- Produce Zero Trust-aligned architectural artifacts and align Security, Business Domain, Application, Platform, and Infrastructure stakeholders.
Requirements
- Hands-on architectural experience with the Ping Identity suite.
- Deep knowledge of OAuth2, OIDC, SAML, and JWT architecture.
- Experience designing enterprise-wide RBAC and entitlement models for users and services.
- Experience integrating IAM frameworks with API Management and gateway platforms such as Apigee, Kong, or AWS API Gateway.
- Strong knowledge of OAuth2 Client Credentials, token design, workload identities, and service-to-service security.
- Enterprise architecture experience, a design-first mindset, and the ability to align diverse stakeholders in complex environments.
Nice to have
- Experience with Identity Governance & Administration tools.
- Knowledge of SOX, GDPR, or ISO compliance frameworks.
- DevSecOps, infrastructure-as-code, and IAM automation pipeline experience.
- B2C or AWS Cognito experience.
Culture & Benefits
- Values include professionalism, passion, empowerment, innovation, teamwork, ownership, and continuous improvement.
- Competitive salary and vacation allowance.
- Work-from-home allowance and private medical insurance.
- Life assurance, pension scheme, enhanced health plan, EAP, and eye-care contributions.
- Paid volunteering days, marriage and bereavement leave, vacation purchase plan, and employee referral program.
- Calm app, Cycle to Work Scheme, Give-As-You-Earn, and NOW benefits.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
16 часов назад
Customer Success Solutions Architect (CIAM)
16 часов назад
Principal Platform Engineer (Identity and Access Management)
Cyera
12 часов назад
Platform Architect (Cloud Security)
19 часов назад
Solutions Architect
14 часов назад
Architect (Fintech)
140 000 - 180 000$
Wiz
6 дней назад