Role - Identity and Access Management Architect
Location - New York City - Hybrid
Type of hire - Full Time
Job Description
Must Have Technical/Functional Skills
- In depth knowledge delivering IAM and cloud security capabilities in a hybrid hosting model.
- Optimize RBAC controls and map workflows for individuals / groups and perform certification based on segregation of duties / role.
- Extensive knowledge of IAM technologies and protocols (SSO, MFA, Federation, PAM, OIDC, OAuth, SAML, and SCIM) and the ability to automate / streamline identity workflow scenarios.
- Knowledge of NIST CSF, Health Insurance Portability and Accountability Act (HIPAA)/Health Information Technology for Economic and Clinical Health (HITECH) security concepts where capable of reviewing / performing security assessments for project solutions.
- Ability to work effectively under pressure and function in a fast-paced collaborative team setting.
- Demonstrated capacity to acquire new skills efficiently and ability to blend technical expertise and business perspective.
- Able to make logical decisions regarding the best method to accomplish goals or solve a problem and is guided by precedent and general policy in making decisions.
- Able to coordinate and obtain cooperation with others and to handle controversial issues tactfully.
- At least ten (10) years of experience in a technical services function in a complex distributed enterprise network and application environment.
- Hands-on experience in managing and designing IAM technologies and services (e.g. SailPoint IdentityIQ, Active Directory / EntraID IAM solutions in a large environment is required.
- Ability to automate complex access management and authentication policies for on-prem and cloud hosted applications at an expert level required.
- Skilled at collaborating with peers and socializing IAM governance and strategy with senior leadership and executives.
- Working knowledge of Microsoft Purview, Azure IaaS security and data protection controls (e.g. data loss, encryption, conditional access, data classification).
- Experienced in the following areas: security architecture, design, implementation, and integration management for full stack IT infrastructure (applications, scripting, databases, operating systems, hardware, IP network, and test planning in a dynamic continuous improvement environment.
Generic Managerial Skills
- Responsible for the evaluation, architecture and delivery of advanced technology solutions while demonstrating a high degree financial awareness and consideration of final objectives.
- Determine requirements, develop, and recommend security solutions, capabilities, and controls that are aligned with business objectives, technology, and threat drivers.
- Evaluate, assess, and recommend improvements to statements of work and proposals from vendors to ensure that adequate security protections are in place for security-rel ated deficiencies and required "user controls," and report any findings to the CISO and vendor management teams.
- Develop and maintain security architecture, design, and roadmap documents. Develop and present detailed strategies, designs, and implementation plans to management.
- Deliver complex customized designs and solutions aligned to defense in depth strategies by self and by collaborating with peers, vendors, and stakeholders.
- Test, evaluate, and review security technologies, tools, and services aligned to business goals and make recommendations to the broader security team for their use based on security, financial and operational metrics.
- Track developments and changes in the digital business and threat environments to ensure that the YNHHS healthcare applications' landscape is adequately protected by existing security controls.
- Responsible for setting technical direction, scope, quality metrics, planning, execution and closing of technical projects.
- Determine baseline security configuration standards for operating systems, applications, network segmentation, and identity and access management.
- Provide high level of technical skill to enable resolution of complex security and identity and access related technology problems throughout the project lifecycle.
- Work collaboratively across technical, customer, and management constituencies to ensure quality and timely service delivery.
- Perform other job duties and responsibilities as assigned.
Salary Range: $100,000-$130,000 a year
TCS Employee Benefits Summary
- Discretionary Annual Incentive.
- Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.
- Family Support: Maternal & Parental Leaves.
- Insurance Options: Auto & Home Insurance, Identity Theft Protection.
- Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.
- Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.