Security Architect
Bengaluru
Job No. atci-5404472-s1976423
Full-time
工作描述
Project Role : Security Architect
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : ForgeRock Identity Management
Good to have skills : NA
Minimum 3 year(s) of experience is required
Educational Qualification : 15 years full time education
Summary
As a professional you are expected to be a Mid-to-Senior ForgeRock Engineer who can independently handle application integrations, troubleshoot complex sync issues, and work with DevOps tools.
Key Responsibilities
1. Advanced AM & Access Control
Authentication Journeys: Design and implement multi-step Authentication Trees using scripted nodes (JavaScript) for MFA, risk-based access, and self-service registration.
Protocol Expert: Lead the configuration of SAML 2.0 and OpenID Connect (OIDC) for enterprise and third-party service providers.
Session Management: Optimize session handling and cross-domain SSO configurations.
2. IDM & Lifecycle Management
Connector Development: Configure and troubleshoot ICF (Identity Connector Framework) to link IDM with Active Directory, Databases, and CSV flat files.
Workflow Automation: Write and maintain Groovy scripts for custom synchronization logic and situational scripts during reconciliation.
Data Privacy: Manage user privacy and consent preferences within the IDM portal.
3. Performance & Directory Services
DS Tuning: Monitor and tune Directory Services (DS) performance, including indexing, VLV (Virtual List View), and replication monitoring.
Troubleshooting: Perform root-cause analysis on logs from Tomcat, AM, and DS to resolve authentication failures or performance lags.
4. Modern Infrastructure (ForgeOps)
Containerization: Deploy and manage ForgeRock components using Docker and Kubernetes.
Automation: Contribute to CI/CD pipelines for promoting ForgeRock configurations from Dev to Production environments.
Professional & Technical Skills
1. Experience in CI/CD tools including Jenkins, Nexus, GitHub, and Code Commit
2. Hands-on experience with AWS services such as S3 bucket replication, Managing EC2 Instances, SNS ,Lambda, and CloudWatch for debugging.
3. Skilled in working within Agile development environments
4. Familiar with using Linux command-line tools
5. Familiar with the basics of MySQL databases
6. Scripting: Strong proficiency in JavaScript (for AM) and Groovy (for IDM).
7. Linux: Solid understanding of Linux command line, SSL/TLS certificate management, and keytool.
8. Web Technologies: Experience with REST APIs, JSON, and Web Servers (Apache/Nginx)
Additional Information:
1.Bachelors and above degree in Computer Science, Information Technology, MIS, Engineering / Bachelor or college degree in related field or equivalent work experience (Full time).
2.The candidate should have minimum 2 years of experience in ForgeRock Identity Management & overall 6 years overall IT experience
Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations.
Must have skills : ForgeRock Identity Management
Good to have skills : NA
Minimum 3 year(s) of experience is required
Educational Qualification : 15 years full time education
Summary
As a professional you are expected to be a Mid-to-Senior ForgeRock Engineer who can independently handle application integrations, troubleshoot complex sync issues, and work with DevOps tools.
Key Responsibilities
1. Advanced AM & Access Control
Authentication Journeys: Design and implement multi-step Authentication Trees using scripted nodes (JavaScript) for MFA, risk-based access, and self-service registration.
Protocol Expert: Lead the configuration of SAML 2.0 and OpenID Connect (OIDC) for enterprise and third-party service providers.
Session Management: Optimize session handling and cross-domain SSO configurations.
2. IDM & Lifecycle Management
Connector Development: Configure and troubleshoot ICF (Identity Connector Framework) to link IDM with Active Directory, Databases, and CSV flat files.
Workflow Automation: Write and maintain Groovy scripts for custom synchronization logic and situational scripts during reconciliation.
Data Privacy: Manage user privacy and consent preferences within the IDM portal.
3. Performance & Directory Services
DS Tuning: Monitor and tune Directory Services (DS) performance, including indexing, VLV (Virtual List View), and replication monitoring.
Troubleshooting: Perform root-cause analysis on logs from Tomcat, AM, and DS to resolve authentication failures or performance lags.
4. Modern Infrastructure (ForgeOps)
Containerization: Deploy and manage ForgeRock components using Docker and Kubernetes.
Automation: Contribute to CI/CD pipelines for promoting ForgeRock configurations from Dev to Production environments.
Professional & Technical Skills
1. Experience in CI/CD tools including Jenkins, Nexus, GitHub, and Code Commit
2. Hands-on experience with AWS services such as S3 bucket replication, Managing EC2 Instances, SNS ,Lambda, and CloudWatch for debugging.
3. Skilled in working within Agile development environments
4. Familiar with using Linux command-line tools
5. Familiar with the basics of MySQL databases
6. Scripting: Strong proficiency in JavaScript (for AM) and Groovy (for IDM).
7. Linux: Solid understanding of Linux command line, SSL/TLS certificate management, and keytool.
8. Web Technologies: Experience with REST APIs, JSON, and Web Servers (Apache/Nginx)
Additional Information:
1.Bachelors and above degree in Computer Science, Information Technology, MIS, Engineering / Bachelor or college degree in related field or equivalent work experience (Full time).
2.The candidate should have minimum 2 years of experience in ForgeRock Identity Management & overall 6 years overall IT experience
职位要求
15 years full time education