Search This Blog

October 30, 2020

Identity and Access Management ( IAM ) Architect fully Remote Position.

Click here to unsubscribe if you no longer wish to receive our emails

Hi

Hopeyou are doing great, I have a position for Identity and Access Management (  IAM )  Architect  fully Remote below is the job description, pleaselet me know if you are comfortable to move with this position or help me withthe job title you are targeting with your compensation rate and workauthorization so that I could help you in finding a better position. 

 

 

Job Title: -  Identity and Access Management (  IAM)  Architect

Job Location: -  Fullyremote

JobDescription : 

 

This person needs to be a Sr. levelresource who is and EXPERT with Okta.

 

Top Skills:

1. OktaArchitecture Experience: someone who has implemented Okta in an enterpriselevel environment from the ground up (it would be a huge plus if we have acandidate that migrated SailPoint to Okta)
2. Managing API’s at it pertains to IAM: Execute with workflows within an APIendpoint, Create API code for plugging existing application to OktaAuthentication
3. MFA/SSO Experience

 

Job Description:

Anexperienced leader to provide guidance Identity and Access Management (IAM)roadmap, including implementation of RBAC and ABAC models for corporateidentities in a hybrid environment. The ideal person must be experienced indriving IAM technology changes, delivering projects, and implementing secureautomated processes that combine both cloud and on-premise resources. Must befamiliar with compliance and auditing controls required to implement corporateidentity governance on cloud based and on-premise resources. The person shouldhave hands on experience with integration on cloud environments, includingIaaS, PaaS, and SaaS services.

• 15+ years of overall IAM / software development experience, solution designand technical architecture experience. 10+ years of driving applicationarchitecture design
• Implementing, integrating and supporting Okta's cloud technologies intoClient's IAM environment.
• Build, design test workflows, including connecting applications, import andedit data in a table, set schedule options
• Execute workflows with API endpoint, save date with flow history and repairan invalid flow
• Design time- and context-based identity entitlement, build automation tocatch identity conflicts and lifecycle activity
• Create API code for plugging existing application to Okta authentication
• Design Portal Identity management with Okta, Integrate and federateauthentication with 3rd party portals
• Design Dynamic access grants, granular link between identities andentitlements to be able to tell who has access to what and who is responsiblefor maintaining an entitlement.
• Design frequent delta scans for changes since last scan, besides full scan,to support existing SLAs for new user on-boarding, role changes andterminations.
• Design dashboards for various KPIs for slicing and dicing of information onidentities, accounts, roles, entitlements, associations, assignments, identityevents
• Design and drive the implementation of regular user access reviews,attestation, and certification processes.
• Design delegation of access governance for specific catalogs to non-IT adminsand Implement industry standard IAM and IGA concepts including least privilegeand separation of duties for session management, password management,permission management, and entitlement management.
• Orchestrating tasks to enable functions such as access approvals,notifications, escalations, manual fulfillment requests and integration withother business processes to allow managers or resource owners to approve ordeny requests.
• Design security policy rules and constraints that govern automatic assignment(and removal) of entitlements
• Design oversight (self or Line of Business owner’s) to ensure that usersdon’t keep access when they no longer need it.
• Evaluating the current state of identities and entitlements against businessrules and controls, providing a means for alerting control owners of exceptions(such as changes made directly on target systems) and allowing for orderlyremediation
• Design and configure risk scoring for entitlements and evaluate risk based onidentity’s assigned roles and access to resources and report the risk forproactive policy violation detection.
• Automate the cleanup of excessive and unnecessary entitlements for policyenforcement.
• Experience with SCIM connectors, Okta Workflows, Azuqua
• Enhance the continuous process of identity governance by risk reporting, rolemining and engineering
• Experience in how legacy and web-based systems interfaces, ApplicationProgrammable Interfaces (APIs).
• Demonstrated knowledge of Systems Development Life Cycle (SDLC) methodologyand coding methods/best practices
• Strong knowledge of LDAP, Active Directory, SAML, SPML, SSO, RBAC
• Strong knowledge of web protocols XML, SOAP, JSON, REST
• Knowledge of software development security and cryptography.
• Experience with MFA, SSO, Kerberos, SAML, OIDC, OAuth, Privileged AccessManagement (PAM)
• Knowledge of Java EE, Ruby, Java, C, ksh/bash shell scripts, Python or Perland other development frameworks.
• CSP technical certifications (Azure, AWS, GCP)​

 

 

Theclient needs  need the following for each candidate in order tosubmit;

  • Updated resume
  • LinkedIn profile URL for candidate
  • DOB (month/day only)
  • Rate
  • 2 managerial or team lead references. These references must have LinkedIn accounts and I need the URLs to them.

 

 

 

 

 

 

 

Regards,

 

Niket Kumar

Logic Planet Inc
4525Route 27,Princeton, NJ08540.
Desk Ph: 732-512-0009 Ext: 408

Email: niket.kumar@logicplanet.comwww.logicplanet.com

 

Linkdin: https://www.linkedin.com/in/nikzun/

------------------------------------------------------------------------------------------

19 years in IT. 400 employees. $40Min revenues

------------------------------------------------------------------------------------------

cid:image001.png@01D310BE.FE17A730

cid:image002.png@01D5DBA5.63325F30cid:image004.jpg@01D5DBA5.63325F30

 





This email is generated using CONREP software.

A10101