Expert IAM Solution Architect – Cloud and Zero Trust Security

ITDS Polska Sp. z o.o.

Kraków

Hybrid

PLN 230,000 - 340,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Medical package
Multisport program
Pluralsight access
Flexible hours

Job summary

ITDS Polska Sp. z o.o. is seeking an IAM Solution Architect to lead design of identity capabilities for a major financial client.

The role focuses on high-level and low-level solution architectures across domains, translating requirements into secure technical solutions. You will develop reference architectures, define integration patterns, and architect cloud-native solutions for GCP and Kubernetes, establishing Zero Trust and federation standards while mentoring engineers in a global, hybrid

Qualifications

  • Minimum 8 years of enterprise solution architecture experience, focused on IAM.
  • Strong expertise in authentication and authorization design.
  • Proven experience with Zero Trust architecture.
  • Hands-on knowledge of cloud environments, especially GCP and Kubernetes.
  • Skills in identity federation protocols: OIDC, OAuth2, SAML, SCIM.
  • Deep understanding of API architecture, security, and event-driven systems.
  • Proficiency in Policy-as-Code (OPA/Cedar), PKI, certificates, and secrets management.
  • Experience designing high availability, resilience, and disaster recovery solutions.
  • Strong stakeholder management and technical leadership abilities.

Responsibilities

  • Design high-level and low-level solution architectures for identity capabilities across domains.
  • Translate business, security, and regulatory requirements into robust technical solutions.
  • Develop reference architectures, patterns, and standards for the program.
  • Define integration patterns for identity platforms, applications, and infrastructure.
  • Architect cloud-native solutions for GCP and Kubernetes environments.
  • Design authentication, authorization, and federation architectures.
  • Develop policies for Agent, Human, and Workload Identity capabilities.
  • Establish Zero Trust security architecture and trust boundaries.
  • Outline API security, service-to-service authentication, and workload authentication standards.
  • Create event-driven architectures utilizing messaging and asynchronous processing.
  • Support governance with architecture review procedures and design documentation.
  • Collaborate with engineering teams to ensure successful implementation, testing, and deployment.
  • Mentor engineers and uphold best practices in engineering.
  • Evaluate emerging technologies for alignment with project goals and future roadmap planning.]
  • CoT_job_summary_short: "COMPANY NAME: ITDS Polska Sp. z o.o.\nKEY POINTS: IAM architecture, Zero Trust, GCP/Kubernetes, hybrid Kraków"
  • job_summary_short":"<p>ITDS Polska Sp. z o.o. is seeking an IAM Solution Architect to lead design of identity capabilities for a major financial client. The role focuses on high-level and low-level solution architectures across domains, translating requirements into secure technical solutions.</p><p>You will develop reference architectures, define integration patterns, and architect cloud-native solutions for GCP and Kubernetes, establishing Zero Trust and federation standards while mentoring engineers in a global, hybrid Krakow-based program.</p>",
  • contract_type
  • location_type
  • remote_scope
  • perks
  • stated_min
  • stated_max
  • stated_absolute
  • salary_estimation_cot
  • estimated_low
  • estimated_medium
  • estimated_high
  • currency
  • frequency
  • bonus
  • tax
  • application_email
  • job_end_date
  • contact_person
  • hiring_department_name

Skills

IAM architecture
Authentication design
Zero Trust
Identity federation
API security
Policy-as-Code
PKI & certificates
Secrets management
HA & DR
Stakeholder management

Tools

GCP
Kubernetes

Job description

Nasze wymagania:
  • At least 8 years of enterprise solution architecture experience, specifically in IAM.
  • Strong expertise in authentication and authorization design.
  • Proven experience with Zero Trust architecture.
  • Hands-on knowledge of cloud environments, especially GCP and Kubernetes.
  • Skills in identity federation protocols: OIDC, OAuth2, SAML, SCIM.
  • Deep understanding of API architecture, security, and event-driven systems.
  • Proficiency in Policy-as-Code (OPA/Cedar), PKI, certificates, and secrets management.
  • Experience in designing high availability, resilience, and disaster recovery solutions.
  • Strong stakeholder management and technical leadership abilities.
Mile widziane:
  • Certification in cloud architecture or security (e.g., CCSK, CCSP, AWS/Azure certifications).
  • Knowledge of DevSecOps and CI/CD pipelines.
O projekcie:

As an IAM Solution Architect, you will be working for our client, a leader in redefining identity and access management on a worldwide level through a transformative program (Project Orbit / IDAM 2.0). You will contribute to building secure, scalable identity solutions that bridge modern technology with the complexity of a major financial institution, driving innovation and security across the enterprise. Unleash the Future of Identity Security — architect innovative solutions at a global scale! Krakow-based opportunity with hybrid work model. Only candidates with an existing legal right to work in Europe will be considered for this role.

Zakres obowiązków:
  • Design high-level and low-level solution architectures for identity capabilities across diverse domains.
  • Translate business, security, and regulatory requirements into robust technical solutions.
  • Develop reference architectures, patterns, and standards for the program.
  • Define integration patterns for identity platforms, applications, and infrastructure.
  • Architect cloud-native solutions for GCP and Kubernetes environments.
  • Design authentication, authorization, and federation architectures.
  • Develop policies for Agent, Human, and Workload Identity capabilities.
  • Establish Zero Trust security architecture and trust boundaries.
  • Outline API security, service-to-service authentication, and workload authentication standards.
  • Create event-driven architectures utilizing messaging and asynchronous processing.
  • Support governance with architecture review procedures and design documentation.
  • Collaborate with engineering teams to ensure successful implementation, testing, and deployment.
  • Mentor engineers and uphold best practices in engineering.
  • Evaluate emerging technologies for alignment with project goals and future roadmap planning.
Oferujemy:
  • Stable and long-term cooperation with very good conditions
  • Enhance your skills and develop your expertise in the financial industry
  • Work on the most strategic projects available in the market
  • Define your career roadmap and develop yourself in the best and fastest possible way by delivering strategic projects for different clients of ITDS over several years
  • Participate in Social Events, training, and work in an international environment
  • Access to attractive Medical Package
  • Access to Multisport Program
  • Access to Pluralsight
  • Flexible hours
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Identity and Access Management Security Engineer – Cloud and Zero Trust
Senior Identity and Access Management Security Engineer – Cloud and Zero Trust

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 210,000 - 320,000
Stabilne zatrudnienie i długoterminowa
Praca w międzynarodowym środowisku
Karta medyczna
+3
Security Engineer
Security Engineer

Antal Poland • Kraków

Hybrid
PLN 156,000 - 246,000
Praca hybrydowa
Biuro w Krakowie
Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure
Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 180,000 - 260,000
Stable cooperation and good conditions
Developing expertise in financial行业
Social events and international环境
+4
Identity & Access Management Engineer
Identity & Access Management Engineer

your Jared • Warszawa

Hybrid
PLN 120,000 - 190,000
Expert Quantum-Safe Cybersecurity Specialist
Expert Quantum-Safe Cybersecurity Specialist

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 250,000 - 360,000
Elastyczne godziny pracy
Pakiet medyczny
Karta Multisport
+2
Security Architect / Senior IAM
Security Architect / Senior IAM

HeadHR • Poland

On-site
Expert Security Researcher – Vulnerability Discovery & AI Optimization
Expert Security Researcher – Vulnerability Discovery & AI Optimization

ITDS Polska Sp. z o.o. • Kraków

On-site
PLN 260,000 - 360,000
Stabilna i długoterminowa współpraca
Atrakcyjny pakiet medyczny
Multisport program
+2
Ekspert / Ekspertka ds. Administracji Identity & Access Management (IAM)
Ekspert / Ekspertka ds. Administracji Identity & Access Management (IAM)

Bank Pekao S.A. • Warszawa

Hybrid
PLN 100,000 - 130,000
Prywatna opieka medyczna
Karta MultiSport
Ubezpieczenie grupowe
+2
Ekspert / Ekspertka ds. Administracji Identity & Access Management (IAM)
Ekspert / Ekspertka ds. Administracji Identity & Access Management (IAM)

Bank Pekao • Poland

Hybrid
PLN 180,000 - 280,000
Opieka zdrowotna dla Ciebie i rodziny
Karta MultiSport i ubezpieczenie grupy
Szkolenia i certyfikacje
+1
Mid-Level Data Analyst – Cybersecurity & Azure Data Lake
Mid-Level Data Analyst – Cybersecurity & Azure Data Lake

ITDS Polska Sp. z o.o. • Kraków

Hybrid
PLN 120,000 - 180,000
Stable cooperation
Medical package
Multisport program
+3