Tech Stack
AWSAzureCloudGoogle Cloud Platform
About the role
- Partner with Invesco global security team to architect and implement solutions for network, cloud, data, software, application security and CIAM
- Lead creation of architecture strategies, reference architectures, roadmaps, patterns, and standards for security platforms and services
- Develop and implement customer identity and access management (CIAM) solutions aligned to business goals, policies, and objectives
- Define global deployment architecture of the enterprise-wide SaaS-based CIAM platform and own architecture roadmap, capabilities and application onboarding strategy
- Partner with the Enterprise Data Office to define data migration strategy for applications onboarding to CIAM and strategy for centralized identity, consent and preference datastore
- Drive technical evaluations and decision recommendations for security platforms (e.g., SIEM, ID proofing)
- Define strategies, reference architectures, standards, and roadmaps for key security capabilities such as secrets management
- Review and approve architecture solutions via EA governance to ensure strategic alignment and avoidance of technical debt
- Support the solution architecture community for security solution architects and collaborate with security architects and cloud team on cloud application migration strategy
Requirements
- In-depth understanding of customer identity, privacy and security
- Familiarity with authentication and authorization protocols
- Experience in an architecture role supporting information security architecture in enterprise environments
- Deep experience with Identity and Access Management (IAM/CIAM)
- Experience with architecture modeling using industry standard notation languages (Archimate)
- Experience drafting and institutionalizing architecture patterns and architecture standards
- Experience with software application development in multiple programming languages and technology platforms
- Experience with application design and development on one or more cloud platforms (AWS, Azure, GCP)
- Knowledge of network security, cloud security, data protection, software/application security
- Basic business understanding of financial services and asset management
- Bachelor's degree in computer science/information systems/information security or related field or equivalent demonstrated experience
- Preferred: TOGAF, CIAM Architect certifications; CISSP or CISA preferred
- Preferred: Vendor Certifications from AWS, Microsoft Azure or Google Cloud Platform