Cybersecurity IGA & SSO Architect

Phoenix Business, Inc

  • Jersey City, NJ
  • 11 days ago

    Highlights

    Design High-Level Design (HLD) and Low-Level Design (LLD) documents for IAM solutions supporting cloud, on-premises, and hybrid architectures. Years of Experience 10+ years of experience designing, architecting, implementing, and leading enterprise Identity Governance & Administration (IGA) and Single Sign-On (SSO) solutions.

    Numbers & Facts

    LocationJersey City, NJ

    Description

    Role :- Cybersecurity IGA & SSO Architect
    Location :- Jersey City, NJ(Onsite)


    Years of Experience
    • 10+ years of experience designing, architecting, implementing, and leading enterprise Identity Governance & Administration (IGA) and Single Sign-On (SSO) solutions.
    • Proven experience delivering large-scale IAM transformations across cloud, on-premises, and hybrid environments.
    General Description
    • Serve as the Subject Matter Expert (SME) for Identity Governance, Access Management, Authentication, and Federation technologies.
    • Define enterprise IAM strategy, target architecture, operating models, and governance frameworks aligned with business and security objectives.
    • Lead customer workshops, architecture assessments, discovery sessions, and solution design engagements.
    • Collaborate with security, infrastructure, application, cloud, and business teams to deliver scalable identity governance and access management solutions.
    • Assess existing IAM environments and define modernization roadmaps focusing on automation, compliance, identity lifecycle management, and Zero Trust principles.
    • Provide architectural governance, solution reviews, technical leadership, and implementation oversight for IGA and SSO initiatives.
    Technical Requirements
    • Extensive experience designing and deploying Identity Governance solutions using Saviynt, Microsoft Entra ID Governance, or equivalent platforms.
    • Strong expertise in identity lifecycle management including provisioning, de-provisioning, birthright access, role management, certifications, access requests, and SoD controls.
    • Experience designing Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), governance groups, and entitlement management frameworks.
    • Deep understanding of SSO, authentication, authorization, federation, and identity protocols such as SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, Kerberos, LDAP, and WS-Federation.
    • Hands-on experience with Microsoft Entra ID, Okta, Ping Identity, ForgeRock, or similar IAM platforms.
    • Design High-Level Design (HLD) and Low-Level Design (LLD) documents for IAM solutions supporting cloud, on-premises, and hybrid architectures.
    • Lead application onboarding strategies for SaaS, custom, legacy, cloud, and enterprise applications.
    • Experience integrating IAM platforms with Active Directory, Entra ID, HR systems, ServiceNow, MFA solutions, SIEM tools, and enterprise applications.
    • Expertise in governance reporting, compliance management, certification campaigns, access reviews, and audit remediation activities.
    • Strong understanding of Zero Trust Architecture and modern identity-centric security models.
    • Experience developing integration solutions using REST APIs, web services, SCIM, PowerShell, java, or other automation technologies.
    • Knowledge of regulatory and compliance frameworks including SOX, GDPR, HIPAA, PCI-DSS, ISO 27001, NIST, and CIS Controls.
    • Ability to support RFPs, solution proposals, architecture reviews, and customer-facing technical discussions.
    Soft Skills
    • Excellent Verbal and written communication skills in English.
    • Ability to present solutions to clients in person and remotely if needed.
    • Good documentation skills that will enable creation of design documents for the technical solutions proposed.
    • Excellent problem-solving skills.
    • Good collaboration skills in working with virtual and distributed teams.
    Certifications
    • Good to have relevant IAM certifications such as:
    • Saviynt L100, L200 trainings
    • Microsoft Azure Security Engineer
    • AZ- 900 Azure Fundamentals
    • Educational Qualifications
    • University degree in IT or/and IT Security

    Similar Jobs

    See more jobs