Architect, Identity Security
RemoteBrazil
Job Summary
Design and implement identity-security architecture across workforce, privileged, machine, and partner identities, covering authentication, authorization, lifecycle, federation, and conditional access. Shape requirements and own adoptable designs for authentication, authorization, lifecycle, governance, and identity threat detection while integrating with HR, ITSM, infrastructure, and application teams. Engineer integration patterns for HRIS, directories, identity providers, and SIEM/UEBA to validate designs, and establish sustainability models including role/entitlement modeling and architecture review cadence. Requires 9+ years of cybersecurity experience with a Bachelor's degree in a related field. This role reports to the Director, Identity Security & Privileged Access Management within the enterprise-wide Danaher Information Security team.
Required Qualifications
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or related field
- 9+ years of cybersecurity experience with a focus on identity and access management
- Experience designing identity security architecture across workforce, privileged, machine, or customer identities
- Experience with authentication, authorization, Joiner-Mover-Leaver lifecycle, role/entitlement modeling, access certification, and Segregation of Duties
- Hands-on experience with enterprise identity platforms (such as Microsoft Entra ID, Okta, Ping, SailPoint, or Saviynt)
- Experience with identity protocols (SAML, OIDC, OAuth, SCIM)
- Experience working independently with HR, IT service management, infrastructure, and application teams to design and govern identity controls
Desired Qualifications
- Experience with identity threat detection and response (ITDR), identity analytics/UEBA, or non-human / machine identity governance (NHI)
- CISSP, CISM, Microsoft SC-300, or a relevant IAM platform certification
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.