Cybersecurity IGA & SSO Architect

Propertyvalue Prudent Technologies And Consulting
Jersey City, NJ, United States
2 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
10 years minimum
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Java (Programming Language) Active Directory User Authentication Microsoft Azure Software as a Service Cloud Computing Cyber Security Software Design Documents Multi-Factor Authentication High-Level Architecture Identity and Access Management Kerberos (Protocol)
+23 more
Lightweight Directory Access Protocols (LDAP) OAuth PCI Data Security Standards Ping (Networking Utility) Windows PowerShell Role-Based Access Control Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Security Information and Event Management Single Sign-On Systems Integration Web Services Enterprise Software Applications Okta HR Software Ws-federation Enterprise Integration CIS Benchmarks SailPoint Restful APIs Servicenow

Job description

  • Serve as the Subject Matter Expert (SME) for Identity Governance, Access Management, Authentication, and Federation technologies.
  • Define enterprise IAM strategy, target architecture, operating models, and governance frameworks aligned with business and security objectives.
  • Lead customer workshops, architecture assessments, discovery sessions, and solution design engagements.
  • Collaborate with security, infrastructure, application, cloud, and business teams to deliver scalable identity governance and access management solutions.
  • Assess existing IAM environments and define modernization roadmaps focusing on automation, compliance, identity lifecycle management, and Zero Trust principles.
  • Provide architectural governance, solution reviews, technical leadership, and implementation oversight for IGA and SSO initiatives.

Requirements

  • 10+ years of experience designing, architecting, implementing, and leading enterprise Identity Governance & Administration (IGA) and Single Sign-On (SSO) solutions.
  • Proven experience delivering large-scale IAM transformations across cloud, on-premises, and hybrid environments., * Extensive experience designing and deploying Identity Governance solutions using Saviynt, Microsoft Entra ID Governance, or equivalent platforms.
  • Strong expertise in identity lifecycle management including provisioning, de-provisioning, birthright access, role management, certifications, access requests, and SoD controls.
  • Experience designing Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), governance groups, and entitlement management frameworks.
  • Deep understanding of SSO, authentication, authorization, federation, and identity protocols such as SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, Kerberos, LDAP, and WS-Federation.
  • Hands-on experience with Microsoft Entra ID, Okta, Ping Identity, ForgeRock, or similar IAM platforms.
  • Design High-Level Design (HLD) and Low-Level Design (LLD) documents for IAM solutions supporting cloud, on-premises, and hybrid architectures.
  • Lead application onboarding strategies for SaaS, custom, legacy, cloud, and enterprise applications.
  • Experience integrating IAM platforms with Active Directory, Entra ID, HR systems, ServiceNow, MFA solutions, SIEM tools, and enterprise applications.
  • Expertise in governance reporting, compliance management, certification campaigns, access reviews, and audit remediation activities.
  • Strong understanding of Zero Trust Architecture and modern identity-centric security models.
  • Experience developing integration solutions using REST APIs, web services, SCIM, PowerShell, java, or other automation technologies.
  • Knowledge of regulatory and compliance frameworks including SOX, GDPR, HIPAA, PCI-DSS, ISO 27001, NIST, and CIS Controls.
  • Ability to support RFPs, solution proposals, architecture reviews, and customer-facing technical discussions.

Soft Skills

  • Excellent Verbal and written communication skills in English.
  • Ability to present solutions to clients in person and remotely if needed.
  • Good documentation skills that will enable creation of design documents for the technical solutions proposed.
  • Excellent problem-solving skills.
  • Good collaboration skills in working with virtual and distributed teams.

Certifications

  • Good to have relevant IAM certifications such as:
  • Saviynt L100, L200 trainings
  • Microsoft Azure Security Engineer
  • AZ- 900 Azure Fundamentals
  • Educational Qualifications
  • University degree in IT or/and IT Security

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all