What are the responsibilities and job description for the Cybersecurity IGA & SSO Architect :: Jersey City, NJ :: 5 Days Onsite :: W2 position at Prudent Technologies and Consulting?
Cybersecurity IGA & SSO Architect :: Jersey City, NJ :: 5 Days Onsite :: W2
Role :- Cybersecurity IGA & SSO Architect
Location :- Jersey City, NJ(Onsite)
Years of Experience
- 10 years of experience designing, architecting, implementing, and leading enterprise Identity Governance & Administration (IGA) and Single Sign-On (SSO) solutions.
- Proven experience delivering large-scale IAM transformations across cloud, on-premises, and hybrid environments.
General Description
- Serve as the Subject Matter Expert (SME) for Identity Governance, Access Management, Authentication, and Federation technologies.
- Define enterprise IAM strategy, target architecture, operating models, and governance frameworks aligned with business and security objectives.
- Lead customer workshops, architecture assessments, discovery sessions, and solution design engagements.
- Collaborate with security, infrastructure, application, cloud, and business teams to deliver scalable identity governance and access management solutions.
- Assess existing IAM environments and define modernization roadmaps focusing on automation, compliance, identity lifecycle management, and Zero Trust principles.
- Provide architectural governance, solution reviews, technical leadership, and implementation oversight for IGA and SSO initiatives.
Technical Requirements
- Extensive experience designing and deploying Identity Governance solutions using Saviynt, Microsoft Entra ID Governance, or equivalent platforms.
- Strong expertise in identity lifecycle management including provisioning, de-provisioning, birthright access, role management, certifications, access requests, and SoD controls.
- Experience designing Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), governance groups, and entitlement management frameworks.
- Deep understanding of SSO, authentication, authorization, federation, and identity protocols such as SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, Kerberos, LDAP, and WS-Federation.
- Hands-on experience with Microsoft Entra ID, Okta, Ping Identity, ForgeRock, or similar IAM platforms.
- Design High-Level Design (HLD) and Low-Level Design (LLD) documents for IAM solutions supporting cloud, on-premises, and hybrid architectures.
- Lead application onboarding strategies for SaaS, custom, legacy, cloud, and enterprise applications.
- Experience integrating IAM platforms with Active Directory, Entra ID, HR systems, ServiceNow, MFA solutions, SIEM tools, and enterprise applications.
- Expertise in governance reporting, compliance management, certification campaigns, access reviews, and audit remediation activities.
- Strong understanding of Zero Trust Architecture and modern identity-centric security models.
- Experience developing integration solutions using REST APIs, web services, SCIM, PowerShell, java, or other automation technologies.
- Knowledge of regulatory and compliance frameworks including SOX, GDPR, HIPAA, PCI-DSS, ISO 27001, NIST, and CIS Controls.
- Ability to support RFPs, solution proposals, architecture reviews, and customer-facing technical discussions.
Soft Skills
- Excellent Verbal and written communication skills in English.
- Ability to present solutions to clients in person and remotely if needed.
- Good documentation skills that will enable creation of design documents for the technical solutions proposed.
- Excellent problem-solving skills.
- Good collaboration skills in working with virtual and distributed teams.
Certifications
- Good to have relevant IAM certifications such as:
- Saviynt L100, L200 trainings
- Microsoft Azure Security Engineer
- AZ- 900 Azure Fundamentals
- Educational Qualifications
- University degree in IT or/and IT Security
Salary : $40 - $50