Role Overview An opportunity to join a major telecommunications organization to lead identity architecture, governance, and Zero Trust strategy across enterprise platforms. In this role, you will define reusable security patterns, design end-to-end IAM solution architectures, and embed security-by-design principles across cloud and hybrid environments. You will play a pivotal role in securing non-human identities, mitigating novel identity-based threats, and driving the safe adoption of core identity controls across complex enterprise initiatives.
Key Criteria
- Experience: 8+ years of IT solution design, build, or delivery experience, with 5+ years specializing in IT security, IAM, IGA, PAM, and cloud security.
- Core Technologies: Expertise with Microsoft Entra ID (Conditional Access, ZTNA, Global Secure Access, Graph API), Okta (SSO, SAML, OIDC, OAuth), CyberArk or BeyondTrust, and SailPoint, Saviynt, or One Identity.
- Architecture & Security Frameworks: Practical experience in Zero Trust Architecture, identity threat modeling, and applying frameworks such as MITRE ATT&CK and NIST AI RMF.
- Technical Skills: Hands-on knowledge of Azure AD Connect, B2B/B2C, IdentityNow (non-human/AI identities), Defender for Identity, Intune, and PowerShell scripting within hybrid cloud-native environments (Azure, AWS, GCP, VMware).
- Methodologies: Familiarity with Agile and DevSecOps practices, alongside experience handling legacy-to-SaaS system migrations.
- Soft Skills: Outstanding communication, negotiation, and stakeholder management skills to influence technical and business leaders effectively.
- Education & Certifications: Tertiary qualification in IT/Engineering or equivalent experience; industry certifications such as CISSP are preferred.
Key Relationships
- Senior Business Stakeholders (General Managers, Product Owners)
- Senior IT Stakeholders (General Managers, Engineering Managers, Delivery Managers)
- Enterprise IT & Delivery Teams
- External Industry & Open-Source Communities
Key Responsibilities
- IAM Solution Architecture: Design and deliver robust solution architecture artifacts (including SAR, SOAP, and NFRs) for assigned Enterprise Portfolio Epics, ensuring integration across the enterprise landscape.
- Zero Trust & Security Strategy: Enforce Zero Trust, least privilege access models, and ZTNA Global Secure Access (GSA) solutions.
- Identity Security & Threat Modeling: Conduct identity-specific threat modeling to mitigate novel identity-based risks across data, APIs, and models.
- Access Control & Lifecycle Management: Architect strategies for SSO, MFA, Conditional Access, Passwordless Authentication, and automated Joiner-Mover-Leaver lifecycle management.
- PAM & IGA Oversight: Lead the design and implementation of Privileged Access Management (PAM) and Identity Governance and Administration (IGA) platforms.
- Governance & Enterprise Alignment: Maintain domain documentation, update Enterprise Architecture tools (LeanIX), and present strategic recommendations to senior leadership.
If this sounds like you, someone you know, or you're ready for a confidential chat regarding your next career step, then apply below and/or send your email to nick.shannon@randstaddigital.com.au All applications will be reviewed, however due to large demand, detailed feedback may not always be possible.
At Randstad Digital, we are passionate about providing equal employment opportunities and embracing diversity to the benefit of all. We actively encourage applications from any background.
experience
5 years