Job Summary:
Provide support to the team in the stewardship of Corporate IT Security & Compliance.
Fundamental Job Tasks:
- Manage directory services, federation, public key infrastructure, and authentication mechanisms
- Design, develop, and deploy systems that increase the security of our platforms
- Identify risks, evaluate deficiencies, and provide recommendations on remediation efforts
- Ensure systems are following IT policies, standards, procedures, and regulatory requirements
- Design, develop, and deploy systems that increase the security of our platforms
- Implement strong authentication for internal and cloud applications with a focus on preventing data breach
- Incrementally validate investment in technologies and improve & support enterprise identity governance
- Demonstrate deep knowledge of the systems in your domain and how they interact with other products
- Provide on-call support on a rotational basis
- Review and interpret evidence for vulnerabilities or control deficiencies; work with stakeholders for resolution
- Develop single sign-on integrations and serve as an escalation point for your team
- Mentor others within and outside your immediate team
Education / Experience:
- Bachelor’s degree in Information Technology preferred
- 8+ years of experience working with enterprise role and group management such as LDAP, Active Directory
- Strong knowledge of federation technologies and identity providers, such as Azure AD, OKTA, Ping
- Identity, OneLogin, SailPoint identity management products or similar
- Advanced knowledge of public key infrastructure and encryption technologies
- Strong experience with securing cloud applications and PKI
- Strong experience with participating in various IT audit assessments
- Excellent planning, organizational, and project management skills
- Experience with risk control frameworks: PCI, CCPA, COBIT, COSO, and ITIL
- Experience with change management methodologies and IT service management
Required Licenses and / or Certification:
- CISA, CRISC, CISSP or equivalent is desirable
- CEH, CISM, or equivalent is highly desirable