Job description:
Role:
Solution Architect
Position Overview
We are seeking an experienced Solution Architect with strong expertise in modern enterprise service architecture. This role will design and guide secure clear and consistent enterprise holistic architecture solutions including Single Sign-On (SSO), Active Directory (AD), and support our end-to-end Penetration-Testing-as-a-Service program and broader cybersecurity goals. The ideal candidate blends technical depth with clear communication and cross-team leadership. Key Responsibilities Develop end to end application onboarding patterns for SAML, OAuth2 / OIDC, WS Fed and modern authentication. Create reference architectures, security models, design standards and reusable patterns. Design and maintain secure, scalable SSO and IAM architectures, including authentication and authorization standards. Lead the integration and modernization of Active Directory and cloud identity platforms. Embed security by design identity controls to enable vendor access onboarding. Clear and consistent enterprise identity patterns used across teams. Strong alignment between identity architecture and PTaaS outcomes. Reduced identity-related risks and vulnerabilities. Improved SSO adoption and modernization of legacy authentication systems. Partner with Cybersecurity teams to ensure identity controls, application onboarding, and enterprise services align with PTaaS requirements. Translate PTaaS findings into long-term architecture improvements and reusable design patterns. Collaborate with Engineering, Security, Infrastructure, and Product teams to drive consistent identity standards. Provide architectural governance, document solutions, and guide teams through implementation. Qualifications Required: 7+ years in Solution Architecture, IAM Engineering, or Security Architecture. Strong knowledge of SSO, IAM, Active Directory, SAML, OAuth2, OIDC, and identity lifecycle processes. Experience with enterprise service architecture, APIs, and hybrid cloud identity models. Ability to work cross-functionally and communicate technical concepts to non-technical stakeholders. Background in security frameworks and best practices. Preferred: Experience with continuous security testing, or DevSecOps. Hands-on experience with identity governance tools Relevant certifications: CISSP, CCSP, Azure Architect, GIAC.