
CIAM Solution Architect
- Drive and create roadmap for enterprise CIAM solution along with other engineering stakeholders
- Develop and document end-to-end CIAM solution and technical architectures for customer-facing applications, ensuring security, scalability, and compliance.
- Identify, develop and document omnichannel CIAM patterns across the channels (Mobile, Web, Customer Care etc.)
- Work with cross-functional teams to integrate Okta as a CIAM platform into cloud and hybrid environments.
- Implement Zero Trust principles and enforce authentication/authorization standards. Ensure adherence to regulatory frameworks (GDPR, CCPA, PCI-DSS, HIPAA, SOC2, ISO 27001).
- Design frictionless user journeys for registration, login, and account management, incorporating MFA, adaptive authentication, and consent management.
- Provide guidance on CIAM best practices, risk analysis, and security patterns for identity lifecycle management, federation, and privileged access.
- Maintain architecture diagrams, technical standards, and operational playbooks.
Qualifications
- 8+ years in Identity & Access Management, with at least 3+ years focused on CIAM architecture.
- Proven track record in designing and deploying CIAM solutions for large-scale, customer-facing environments.
- Intimately familiar with IAM related protocols such as SAML, SPML, XACML, SCIM, OpenID and OAuth
- Strong experience with Directories, SSO, Federation, Delegated administration, API gateways, SOA services
- Good understanding of MFA, PAM and Risk Based Authentication
- Familiarity with API-driven architectures and microservices.
- Hands‑on experience with CIAM platforms (Okta, Onespan, Twilio etc.).
- Experience with building integrated CIAM solutions with enterprise systems such as Salesforce, third‑party systems etc.
- Knowledge of cloud platforms (AWS, Azure, GCP) and DevSecOps practices.
- Ensure IAM architectures align with NIST, OWASP, MITRE, and encryption standards.
- Integrate IAM with data security controls and risk management frameworks and conduct risk assessments and implement mitigation strategies.
Preferred Qualifications
- Professional certifications: CISSP, CCSP, AWS/Azure Security, or equivalent.
- Experience in financial services industries.
Salary Range - $120,000-$140,000 a year
BACHELOR OF COMPUTER SCIENCE
#J-18808-Ljbffr