Cyber Identity Systems Architect

Logo of NBCUniversal

NBCUniversal

πŸ’΅ $130k-$160k
πŸ“Remote - United States

Job highlights

Summary

Join the NBCUniversal Operations and Technology (O&T) team and contribute to the Identity and Access Management (IAM) service portfolio strategy. This role focuses on Identity Governance and Administration (IGA) service support and strategy, encompassing on-prem and cloud-based services. You will translate business requirements into IAM and IGA functionality, develop scalable identity service architectures, and partner with technology and security teams. The position requires a strong technical background in IAM, IGA platforms, and secure solutions design. Success hinges on strong communication, collaboration, and a data-informed decision-making approach. This is a fully remote position with competitive benefits.

Requirements

  • Bachelors Degree or higher in Computer Science related field OR Non-Computer related Degree with equivalent work experience
  • 5+ years of experience in an identity architecture role
  • 8+ years of overall experience in IAM technical role(s) in a large enterprise that includes experience with modern IGA platforms (SailPoint IIQ, Saviynt, SailPoint IDN, EntraID), Windows Active Directory, Microsoft Azure AD, REST API programming
  • In-depth experience with defining secure and hardened information IAM solutions
  • Exceptional communication and interpersonal skills; including negotiation, facilitation, and consensus building skills; ability to influence, persuade, and manage polarities without direct control
  • High degree of flexibility and ability to work with employees at all levels of the organization with diverse backgrounds
  • Makes wise, data-informed decisions, finds and owns problems to closure
  • Ability to balance the long-term big picture and short-term implications of tactical decisions
  • Possesses an innovative technical mindset with a focus on architecture, strategy, and design
  • Strong desire to drive change
  • Significant experience with application connection design, consulting experience on IGA functions (i.e. user lifecycle management), access control policies, federation, certifications, access management, MFA, and role management
  • Significant experience designing initial infrastructure, on-boarding of applications, role-based access controls, policy and password management, certifications, workflows, work items and rules
  • Deep understanding of RBAC, identity policies, identity lifecycle automation and reporting, password policies, separation of duties, user provisioning, and approval workflows in Saviynt, EntraID, SailPoint IIQ, or SailPoint IDN
  • Ability to make source code level changes and has worked in a large multinational organization providing hands-on technical architecture services with J2EE development, Database, Java, Bean Shell/JavaScript, JSP/Servlets, SQL
  • Experience with REST Web services, SAML 2.0, JDKs, WS-Security, etc
  • Experience working with modern and legacy enterprise authentication services (OpenID Connect (OIDC), OAuth2, SAML, WS Fed, Kerberos) and platforms (preferably Active Directory, Entra ID, AWS)
  • Experience with enterprise directory architecture, including significant knowledge of Active Directory and Entra ID

Responsibilities

  • Translate complex business requirements into IAM and IGA service functionality
  • Develop highly scalable identity service architectures serving enterprise, customer access, and external partner requirements
  • Produce technical solutions that meet NBCU business objectives and drive compliance with NBCU’s information security goals
  • Partner with technology and security teams across NBCU to provide technical expertise, design guidance, and drive best practices
  • Catalog risk embedded in legacy authentication implementations and help define a path to industry-aligned secure designs and services
  • Create and deliver effective presentations that inform NBCUniversal Senior Leadership teams to drive business relevant information security decisions
  • Mentoring/advising other team members
  • Lead product evaluations and new technology adoptions
  • Maintain strong vendor relationships that drive partnership with NBCU

Preferred Qualifications

  • Experience architecting and delivering large-scale Enterprise SailPoint service instances
  • Experience developing and delivering Zero Trust architectural designs
  • Experience with Venafi / Netwrix/ CyberArk
  • Experience with Google Cloud Platform (GCP) and Amazon Web Services (AWS)
  • Experience with large-scale ID Verification solutions for Enterprise and Consumer Identity solutions
  • A current cybersecurity professional certification (such as CISSP), a current IGA certification
  • Additional experience with other areas of IAM, such as Multi-factor Authentication (MFA), passwordless, Privileged Access Management (PAM), and Public Key Infrastructure (PKI)

Benefits

  • Fully Remote
  • Medical, dental and vision insurance
  • 401(k)
  • Paid leave
  • Tuition reimbursement
  • A variety of other discounts and perks
  • Salary range: $130,000 - $160,000 (bonus eligible)

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Remote Jobs

Please let NBCUniversal know you found this job on JobsCollider. Thanks! πŸ™