Talent.com
Senior IAM Architect

Senior IAM Architect

First American (India)Pune, Maharashtra, India
6 days ago
Job description

JD – Senior IAM Architect

About FAI :

First American (India) is a GCC (Global Capability Center) of the First American Financial Corporation (NYSE : FAF) family of companies, a proud member of the FORTUNE 500 companies and was named one of FORTUNE’s 100 Best Companies to Work For® in 2024. First American Financial Corporation provides comprehensive title insurance, closing / settlement, property data and technology solutions. First American (India) creates quality solutions for its customers by combining software, back office and knowledge processing operations to fulfill First American's business requirements. Our priorities are our employees, customers, and shareholders - in that order. FAI has been certified a Great Place to work by Great Place to work Institute®, is a certified Best Workplaces for Women and Workplace with Inclusive Practices.

Job Profile Summary

We are seeking a highly skilled Senior IAM Security Architect to join our information security architecture team. This role requires deep expertise in the design, implementation, and management of IAM security controls, with a focus on identity protection across cloud environments. The ideal candidate will have a strong background in AWS, Azure, and Entra ID, and possess at least 7 years of experience in IAM related security risk assessment and threat modeling.

The Senior IAM Security Architect

will be responsible for ensuring the secure and efficient management of user & non-human identities, access controls, and security policies within the organization. This role will also focus on establishing a Zero Trust identity posture, implementing behavioral risk assessments, and driving automation for identity security. Expertise in Single Sign-On (SSO), Multi-Factor Authentication (MFA), and modern authentication protocols is essential.

HOW YOU'LL CONTRIBUTE

Participate in design of secure IAM architectures across multiple platforms (AWS, Azure, Entra ID), ensuring all components align with best practices and organizational security requirements.

Develop security controls for IAM, including user authentication, authorization, role management, identity federation, and privilege management across cloud and hybrid environments.

Establish and maintain a Zero Trust security model for IAM, ensuring that all access requests are continuously verified, regardless of location or network.

Integrate Zero Trust principles with cloud-native security tools and IAM platforms (e.g., AWS, Azure, Entra ID) to ensure seamless, secure, and dynamic access control.

Automate risk-based access controls and adaptive authentication based on behavioral signals, ensuring a dynamic response to security events.

Establish and enforce least privilege access principles for all roles across cloud and on-prem environments, ensuring users only have the minimal access necessary to perform their job functions.

Design and implement Just-in-Time (JIT) access control mechanisms to dynamically grant access based on user needs, significantly reducing standing permission sets.

Design SSO solutions that provide seamless and secure access to enterprise applications, ensuring a frictionless user experience while maintaining high security standards.

Lead the adoption of modern authentication protocols (e.g., OAuth 2.0, OpenID Connect, SAML) for secure, scalable, and standardized access management across applications and systems.

Implement and manage MFA solutions to enhance authentication security, applying risk-based policies to ensure strong protection for sensitive data and critical resources.

Develop and integrate IAM security controls with cloud platforms such as AWS, Azure, and Entra ID, ensuring secure access management across both public and hybrid cloud environments.

Work closely with cloud engineers and architects to align IAM security protocols with cloud service provider best practices, while ensuring compliance with industry standards.

Leverage native security features of cloud platforms (e.g., AWS IAM, Azure AD, Entra ID) to design scalable, secure, and automated IAM solutions.

Lead the migration process from Hybrid Active Directory to Entra-ID based authentication to ensure minimal disruption and proper synchronization and federation across systems.

Develop and maintain security governance frameworks for IAM, focusing on identity lifecycle management, role-based access control (RBAC), user provisioning, deprovisioning, and enforcement of least privilege.

Ensure proper identity governance and access reviews are conducted regularly, documenting changes and exceptions as part of compliance audits.

Collaborate with cross-functional teams, including application security, network security, infrastructure, and DevOps, to integrate IAM security best practices across systems and services.

Stay up to date on the latest IAM trends, security threats, and technology advancements to continuously improve IAM practices and solutions.

Implement security automation tools and workflows to improve efficiency and reduce manual efforts in identity management and access control.

WHAT YOU'LL BRING

Bachelor’s degree in computer science, Information Security, or related field.

Preferred Certified Information Systems Security Professional (CISSP) or Certified Identity and Access Manager (CIAM) or other relevant IAM / security certification.

9+ years of experience in IAM security, including at least 6 years of experience in IAM risk assessment, threat modeling, and security control design.

Proven expertise in implementing and securing IAM solutions in cloud environments such as AWS, Azure, and Entra ID.

In-depth knowledge of IAM security best practices, identity governance, and access management policies.

Experience with IAM protocols such as SSO, MFA, OAuth, SAML, OpenID Connect, and identity federation.

Hands-on experience in conducting security risk assessments and threat modeling for IAM systems.

Demonstrated experience in establishing least privilege access and implementing Just-in-Time (JIT) access controls across cloud and on-premises environments.

Expertise in implementing and managing a Zero Trust security posture for IAM, with hands-on experience in identity validation, continuous authentication, and risk-based access controls.

Strong expertise with IAM platforms such as Microsoft Entra ID (Azure AD), AWS IAM, Azure Active Directory.

Experience with cloud security, integrating IAM systems with AWS, Azure, and hybrid environments.

Strong understanding of IAM security controls, including role-based access control (RBAC), attribute-based access control (ABAC), policy enforcement, and Just-in-Time (JIT) provisioning.

Experience in implementing and managing SSO and MFA, with expertise in modern authentication protocols such as OAuth 2.0, OpenID Connect, and SAML.

Qualifications

Bachelor’s in computer science / information technology

Any Degree / certification in Cyber / Information Security, Forensics, Analytics or equivalent

Total Experience : 15 + years.

Create a job alert for this search

Senior Architect • Pune, Maharashtra, India

Related jobs
  • Promoted
iAM Engineer - Okta / Active Directory

iAM Engineer - Okta / Active Directory

TechmoraPune
Job Title : Identity & Access Management (IAM) Engineer Location : Pune / Noida Experience : 4 6 ye...Show moreLast updated: 30+ days ago
APEX Developer

APEX Developer

Talent WorxPune, MH, IN
Quick Apply
Develop and Maintain Applications : .Design, implement, and maintain Oracle APEX applications.Write efficient PL / SQL code for database applications. Develop and optimize SQL queries, stored procedures...Show moreLast updated: 30+ days ago
  • Promoted
STIBO Developer

STIBO Developer

Mastech DigitalPune, IN
Remote with quarterly visit to Chennai office.Immediate joiner / Currently serving notice / Notice is less than 30 days.LPA (Depending on level of expertise). Product and Vendor Master Data Management (...Show moreLast updated: 30+ days ago
  • Promoted
iAM Developer

iAM Developer

TeksandsPune
Description : Were Hiring - IAM Specialist (One Identity / IAM Tools).Location : : 7+ years in Enterprise IT with core focus on IAM. Technologies (One Identity or s...Show moreLast updated: 26 days ago
  • Promoted
RPA Developer - UiPath

RPA Developer - UiPath

AVE QUESTPune
Description : Inviting applications for the role of Lead Consultant - UiPath Developer In this role, the developer will take par...Show moreLast updated: 11 days ago
  • Promoted
Noww - CyberArk Engineer - PIM / PAM

Noww - CyberArk Engineer - PIM / PAM

Nowwin International Pvt LtdPune
Description : CyberArk Engineer.Experience : 46 Years.Location : Hyderabad / Pune (Hybrid).Notice Period : Immediate to 30 Days preferred.Employment Type...Show moreLast updated: 4 days ago
  • Promoted
Senior IAM Architect

Senior IAM Architect

First American (India)Pune, IN
First American (India) is a GCC (Global Capability Center) of the First American Financial Corporation (NYSE : FAF) family of companies, a proud member of the FORTUNE 500 companies and was named one...Show moreLast updated: 19 days ago
  • Promoted
RPA Developer

RPA Developer

ConcentrixPune, IN
Develop and maintain RPA bots using Automation Anywhere to automate repetitive tasks and workflows.Integrate bots with databases (SQL, PostgreSQL) and external systems via RESTful APIs.Write Python...Show moreLast updated: 20 days ago
  • Promoted
Capgemini - Design Verification Engineer - SoC / IP Verification

Capgemini - Design Verification Engineer - SoC / IP Verification

Capgemini Technology Services India LimitedPune
Location : Mumbai, Pune, Hyderabad, Chennai, Noida, Gurgaon, Bangalore, Gandhinagar At Capgemini Engineering, the world leader in engineering services, we bring toget...Show moreLast updated: 30+ days ago
  • Promoted
Scada Engineer

Scada Engineer

SgurrEnergyPune, Maharashtra, India
SgurrEnergy is one of the leading renewable energy consulting companies that has worked on over 160GW of renewable energy projects globally. In South Asia SgurrEnergy has consulted over 12GW of util...Show moreLast updated: 4 days ago
  • Promoted
Qualys - Senior IAM Engineer - Privilege Access Management

Qualys - Senior IAM Engineer - Privilege Access Management

QUALYS SECURITY TECHSERVICES PRIVATE LIMITEDPune
Description Description : As a Sr.IAM Engineer, you will report to the Associate Director of within the IT function and play a critica...Show moreLast updated: 4 days ago
  • Promoted
SSO Developer

SSO Developer

Renovision Automation Services Pvt.Ltd.Pune
The Software Engineer (Single Sign-On developer) will collaborate with other front-end and back-end web developers to support the design, development and improvement of our web and mobile web appli...Show moreLast updated: 26 days ago
AXIOM Developer

AXIOM Developer

Talent WorxPune, MH, IN
Quick Apply
Axiom developer, Axiom V9 / V10.Experience in Regulatory Reporting such as IFRS9, GAAP, CRDIV ,Liquidity.Creation of Data Sources, Data Models, Shorthands, Portfolios, Aggregations, Free Form an...Show moreLast updated: 30+ days ago
  • Promoted
AWS Architect

AWS Architect

Persistent SystemsPune, Maharashtra, India
About Position : Design and implement AWS IAM solutions, including policies, roles, permissions, and federation.Role : AWS Architect - Location : All Persistent Locations - Experience : 8 to 12 Years ...Show moreLast updated: 20 days ago
  • Promoted
VBCS Developer

VBCS Developer

ZK TechnologiesPune
Job Title : Oracle VBCS / OIC Developer Work Model : Hybrid (2 Days WFO) Employment Type : 6 Months Contract&...Show moreLast updated: 30+ days ago
  • Promoted
AOSP Embedded Engineer

AOSP Embedded Engineer

VOLANSYS (An ACL Digital Company)Pune / Pimpri-Chinchwad Area, India
Total relevant experience 6 plus years with Embedded domain.Minimum 3 year of working experience in AOSP.Well-versed with the AOSP compilation process and integration of new modules.Experienced in ...Show moreLast updated: 19 days ago
  • Promoted
AEM DevOps Engineer

AEM DevOps Engineer

MPowerment Resources LLPPune
Hiring for AEM DevOps (Adobe Experience Manager) Experience : 4-6 years Work Location : Chennai, Gurugram...Show moreLast updated: 30+ days ago
  • Promoted
Capgemini - DFT Engineer

Capgemini - DFT Engineer

Capgemini Technology Services India LimitedPune
Location : Mumbai, Pune, Hyderabad, Chennai, Noida, Gurgaon, Bangalore, Gandhinagar At Capgemini Engineering, the world leader in engineering services, we bring toge...Show moreLast updated: 30+ days ago