CIAM Solution Architect
Location: ONSITE-Raleigh(NC), Phoenix (AZ), Remote
Duration: 6 months
Descriptions:
• Drive and create roadmap for enterprise CIAM solution along with other engineering stakeholders
• Develop and document end-to-end CIAM solution and technical architectures for customer-facing
• applications, ensuring security, scalability, and compliance.
• Identify, develop and document omnichannel CIAM patterns across the channels (Mobile, Web,
• Customer Care etc.)
• Work with cross-functional teams to integrate Okta as a CIAM platform into cloud and hybrid environments.
• Implement Zero Trust principles and enforce authentication/authorization standards. Ensure adherence
• to regulatory frameworks (GDPR, CCPA, PCI-DSS, HIPAA, SOC2, ISO 27001).
• Design frictionless user journeys for registration, login, and account management, incorporating MFA,
• adaptive authentication, and consent management.
• Provide guidance on CIAM best practices, risk analysis, and security patterns for identity lifecycle
• management, federation, and privileged access.
• Maintain architecture diagrams, technical standards, and operational playbooks.
• 8+ years in Identity & Access Management, with at least 3+ years focused on CIAM architecture.
• Proven track record in designing and deploying CIAM solutions for large-scale, customer-facing environments.
• Intimately familiar with IAM related protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth
• Strong experience with Directories, SSO, Federation, Delegated administration, API gateways, SOA services
• Good understanding of MFA, PAM and Risk Based Authentication
• Familiarity with API-driven architectures and microservices.
• Hands-on experience with CIAM platforms (Okta, Onespan,Twilio etc.).
• Experience with building integrated CIAM solutions with enterprise systems such as Salesforce,
Third party systems etc.
• Knowledge of cloud platforms (AWS, Azure, Google Cloud Platform) and DevSecOps practices.
• Ensure IAM architectures align with NIST, OWASP, MITRE, and encryption standards.
• Integrate IAM with data security controls and risk management frameworks and conduct risk
• assessments and implement mitigation strategies.
Roles and Responsibilities Drive and create roadmap for enterprise CIAM solution along with other engineering stakeholders Develop and document end-to-end CIAM solution and technical architectures for customer-facing applications| ensuring security| scalability| and compliance. Identify| develop and document omnichannel CIAM patterns across the channels (Mobile| Web| Customer Care etc.)Work with cross-functional teams to integrate Okta as a CIAM platform into cloud and hybrid environments.Implement Zero Trust principles and enforce authentication authorization standards. Ensure adherence to regulatory frameworks (GDPR| CCPA| PCI-DSS| HIPAA| SOC2| ISO 27001).Design frictionless user journeys for registration| login| and account management| incorporating MFA| adaptive authentication| and consent management. Provide guidance on CIAM best practices| risk analysis| and security patterns for identity lifecycle management| federation| and privileged access.Maintain architecture diagrams| technical standards| and operational playbooks. Qualifications8 years in Identity Access Management| with at least 3 years focused on CIAM architecture. Proven track record in designing and deploying CIAM solutions for large-scale| customer-facing environments. Intimately familiar with IAM related protocols such as SAML| SPML| XACML| SCIM| OpenID and OAuth Strong experience with Directories| SSO| Federation| Delegated administration| API gateways| SOA services Good understanding of MFA| PAM and Risk Based Authentication Familiarity with API-driven architectures and microservices. Hands-on experience with CIAM platforms (Okta| Onespan| Twilio etc.).Experience with building integrated CIAM solutions with enterprise systems such as Salesforce| Third party systems etc. Knowledge of cloud platforms (AWS| Azure| Google Cloud Platform) and DevSecOps practices. Ensure IAM architectures align with NIST| OWASP| MITRE| and encryption standards. Integrate IAM with data security controls and risk management frameworks and conduct risk assessments and implement mitigation strategies. Preferred Qualifications Professional certifications CISSP| CCSP| AWS Azure Security| or equivalent. Experience in financial services industries.
Essential Skills: Roles and Responsibilities Drive and create roadmap for enterprise CIAM solution along with other engineering stakeholders Develop and document end-to-end CIAM solution and technical architectures for customer-facing applications| ensuring security| scalability| and compliance. Identify| develop and document omnichannel CIAM patterns across the channels (Mobile| Web| Customer Care etc.)Work with cross-functional teams to integrate Okta as a CIAM platform into cloud and hybrid environments. Implement Zero Trust principles and enforce authenticationauthorization standards. Ensure adherence to regulatory frameworks (GDPR| CCPA| PCI-DSS| HIPAA| SOC2| ISO 27001).Design frictionless user journeys for registration| login| and account management| incorporating MFA| adaptive authentication| and consent management.Provide guidance on CIAM best practices| risk analysis| and security patterns for identity lifecycle management| federation| and privileged access.Maintain architecture diagrams| technical standards| and operational playbooks. Qualifications8 years in Identity Access Management| with at least 3 years focused on CIAM architecture.Proven track record in designing and deploying CIAM solutions for large-scale| customer-facing environments. Intimately familiar with IAM related protocols such as SAML| SPML| XACML| SCIM| OpenID and OAuth Strong experience with Directories| SSO| Federation| Delegated administration| API gateways| SOA services Good understanding of MFA| PAM and Risk Based Authentication Familiarity with API-driven architectures and microservices.Hands-on experience with CIAM platforms (Okta| Onespan|Twilio etc.).Experience with building integrated CIAM solutions with enterprise systems such as Salesforce| Third party systems etc