Solution Architect
Knauf Gips KG
Kitzingen, Germany
2 days ago
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Regular working hours Languages
EnglishJob location
Remote
Kitzingen, Germany
Tech stack
Microsoft Access
API
Software as a Service
Cloud Computing
Databases
Continuous Integration
DevOps
Disaster Recovery
Middleware
Identity and Access Management
Mobile Application Software
Information Systems Security Architecture Professional
OAuth
OpenID
Azure
Security Assertion Markup Language (SAML)
Data Streaming
Okta
Job description
-
Arbeitszeit Vollzeit
-
Typ Festanstellung
-
Qualifikationslevel B Ausübungsformen
Gewünschte Fähigkeiten & Kenntnisse
Microsoft Entra ID CISSP Access Management Integrity Cloud MS Access SAFe Make Disaster Recovery Automatisierung TARGET Security Design ISO-Normen Compliance IT Middleware across Origin Übersetzungssoftware Transport Mobile App Hybrid CSF Support CIS SaaS Continuous Integration DevOps Flexibilität, * Do you always put the customer at the center of your actions?
- Do you consider the future and upcoming generations in your actions?
- Do you strive for personal and professional growth?
What you'll do
- Set the IAM vision and target state for SSO, MFA and passwordless, federation, identity lifecycle and privileged access, aligned to business goals and risk
- Build a multi-year roadmap and maturity plan, define OKRs and KPIs, secure funding and provide functional leadership to platform architects and engineers to deliver secure and scalable services
- Design and govern integration patterns for SaaS, on-prem and custom applications using OIDC, OAuth2, SAML 2.0 and SCIM, with reusable blueprints through APIs, ESBs and event platforms
- Deliver PAM and secrets management across cloud, databases, networks and CI/CD with vaulting, rotation, session control, JIT, break-glass and session recording
- Embed security, compliance, and operations by design, enable access reviews and SoD, integrate logs with the security monitoring platform, and define clear monitoring, incident response, disaster recovery, and SLA commitments, We all shape our lives individually. As an employer, we play a significant role in the daily life of our employees and aim to support them with various offerings. This includes, among other things:
- Security: Permanent employment contract in a stable, successful family-owned company.
- Flexibility: 30 days of vacation, special leave for certain occasions, flexitime account with a broad time window for flexible working and weekly home office days.
- Fitness and health: Discounts on various sports and leisure activities (e.g., fitness studio Iphofen, swimming training, soccer, etc.), as well as opportunities for active health promotion through our company doctor and occupational health and safety offers.
- Daily time savings: Ample parking and access to public transport (train, bus).
- Welcome approach: Individual onboarding days, company and team events
- Career and professional development: Individual support and promotion for part-time studies, further education and training.
- Benefits and vouchers: Discounts on well-known brands and reduced-price employee purchases.
- Bike leasing: Using tax advantages while promoting your own health.
- Relocation support: Assistance with international relocation
Requirements
- An experienced IAM strategist and architect for hybrid enterprises with hands-on leadership across Okta and Microsoft Entra ID
- Strong in identity standards and patterns such as OIDC, OAuth2, SAML 2.0, SCIM and federation, plus passwordless and MFA, and end-to-end application and middleware integration
- Proven in Privileged access management and secrets management with least privilege and automation across infrastructure and DevOps toolchains
- Fluent in HLD and LLD, data flows and sequence diagrams, design reviews and threat modelling, and able to turn requirements into secure and scalable implementations
- Familiar with ISO 27001, NIST CSF, and the CIS Controls and communicates effectively across business and technical teams, with certifications such as CISSP, ISSAP, or relevant vendor certifications considered a plus
About the company
As a global building materials manufacturer with 43,500 employees in 90 countries, we offer diverse opportunities to ambitious talent. We value every contribution and are committed to creating a safe and inclusive work environment with the aim of developing sustainable solutions for a better future., Knauf Information Services GmbH, headquartered in Kitzingen, Germany, is a key driver of the KNAUF Group's global growth and digital transformation. A team of 500 highly qualified experts is committed to supporting the Group and its customers worldwide with innovative IT solutions and customized services. The core competencies of Knauf IT cover a wide range of IT services, including the development and implementation of complex software solutions, the optimization of business processes through digital technologies and ensuring IT security and data protection.
The Knauf Group is proud to be an equal opportunity employer. We are committed to a diverse and inclusive work environment, and we make all personnel decisions across all areas of our company based on experience, skills and integrity. We encourage applicants from all walks of life to apply for our positions, regardless of age, gender, gender identity, disability, sexual orientation, origin, religion and so forth.
Share our values and become part of the team to shape the future of Knauf together.