Home

Identity Access Management-IAM-Security Architect Dallas or Tampa-NJ-Boston- VA-Hybrid at Dallas, Texas, USA
Email: [email protected]
From:

Gulshan,

Stellent IT

[email protected]

Reply to:   [email protected]

Identity Access Management (IAM) Security Architect

Dallas or Tampa, NJ, Boston, VA-Hybrid

Phone+Skype

6+Month

Job Description

Business Unit Description

Mission Drive efficient and effective security capabilities through innovative thought leadership with a security first mindset which advances DTCCs mission to protect & shape the financial markets.

Vision - A strong adaptive cybersecurity environment that continuously secures & protects DTCC and its services to the financial industry.

Purpose - Cybersecurity Architecture is a core pillar of Architecture and Enterprise Services within the Information Technology (IT) business unit. The team is responsible for designing architecture solutions for information security functions and publish reusable security patterns.

Why Youll Love This Job

As an Identity Access Management (IAM) Security Architect for the Cybersecurity Architecture Team, you will focus on existing identity access management controls (on-premise and cloud), design new and efficient security architectures, influence change in control standards, create IT security standards easily consumed by stakeholders, create access specific security patterns & diagrams, and own the Identity & Access Management 3 year roadmap. This role will be an ambassador for the shift in the technology culture at DTCC to a Security-First culture.

Position Summary

The primary focus areas for this position are the following:

Produce security architecture deliverables as part of initiatives related to certificate services and identity and access management

Partner with IT teams to design and deliver architectures to enable federated access and single sign on in cloud and hybrid environments

Proactively identify security gaps, propose solutions, and follow through with engineering teams for implementation

Innovate and lead others to solve complex issues

Your Responsibilities

Drive the Identity & Access Management and secrets management architecture roadmap and share with AES stakeholders.

Participate in discovery workshops to understand Clients & Workforce IAM and security needs and provide best practice recommendations to meet IAM use cases. Develop design and architectural diagrams that clearly communicate the proposed solution and flows.

Actively participate in the cross-functional team meeting, developing project plans, implementation, testing, pre / post go-live activities, risk management and issue management.

Architect solutions utilizing Ping Identity Products, PlainID, Virtual Directory and similar IAM products for Mainframe hosted applications.

Design IAM solution with SSO / MFA for applications hosted on Distributed as well as Mainframe environments.

Assist Application migration effort (Mainframe to Distributed environment) from IAM perspective to provide unified user experience throughout migration journey.

Create IT security standards easily consumed by stakeholders. Evaluate the existing application security controls, (on-premises and cloud), identify improvements, and build plans into the application security capability roadmap for implementation.

Build access management security patterns (standardizing authentication/authorization flows, single-sign-on/MFA, provisioning, user behavior analytics, access governance system controls, privileged/secrets mgt) and designs as part of initiatives to modernize the DTCC access management security posture.

Mentor junior security engineers and architects to enhance their cybersecurity and architecture skills.

Maintain professional and technical process knowledge by keeping abreast of the changing security landscape within the technology industry and changes in cybersecurity frameworks.

Align risk and control processes into day-to-day responsibilities to monitor and mitigate risk; escalates appropriately.

Qualifications

8-10 years of related experience

Bachelors degree preferred

Specific Skills & Technologies

Strong cybersecurity experience is required in designing and implementing solutions for API Gateway, IGA and Virtual Directory capabilities using PingIdentity, PlainID, SailPoint, RadiantLogic and Apigee etc.

Experience with standard IAM security protocols & technologies (Eg: SAML, OAuth, OIDC, RACF, LDAP, ID Federation, SSO, MFA, UEBA) is required.

Strong experience is required in designing integration of Ping Identity or other similar products with z/OS RACF, AD/AAD, LDAP and other IdPs for SSO with phishing-resistant MFA.

Strong experience on AuthN / AuthZ flow for CICS applications as well as Websphere hosted applications on Mainframe. Experience with System Authorization Facility (SAF) for z/OS.

Strong knowledge of Information Security frameworks (e.g., ISO 27001, CIS, MITRE ATT&K and NIST) & security architecture frameworks.

Experience with identity threat Analytics, Detection and Response.

Experience in OS security (Windows, Linux), Network security (Firewall, Proxy, WAF) and RDMS is preferred

Strong communication skills with the ability to present in front of large audience.

Keywords: zos active directory information technology golang Idaho New Jersey Virginia
[email protected]
View all
Thu Aug 17 20:40:00 UTC 2023

To remove this job post send "job_kill 539433" as subject from [email protected] to [email protected]. Do not write anything extra in the subject line as this is a automatic system which will not work otherwise.


Your reply to [email protected] -
To       

Subject   
Message -

Your email id:

Captcha Image:
Captcha Code:


Pages not loading, taking too much time to load, server timeout or unavailable, or any other issues please contact admin at [email protected]
Time Taken: 251

Location: , Indiana