Principal IAM Architect
Pure StorageAbout the role
We’re in an unbelievably exciting area of tech and are fundamentally reshaping the data storage industry. Here, you lead with innovative thinking, grow along with us, and join the smartest team in the industry.
This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us.
SHOULD YOU ACCEPT THIS CHALLENGE...
…. Do you lie awake at night, thinking of NIST SP800-63-3? Do you get shivers when you hear the words “service account”? Does “zero trust” actually mean something to you? As they say, Identity is the new perimeter, and it could be your new frontier here at Pure Storage.
The Global Information Security Office (GISO) at Pure is seeking an Identity and Access Management (IAM) Architect with a proven track record of designing and implementing IAM solutions. You will utilize your strong technical competencies to provide the highest level of implementation capability and technical consultation throughout the organization. You will collaborate with security, IT, engineering, and business teams to develop safe and sane identity processes and solutions while overseeing identity governance, authentication, authorization, privileged access management. You will oversee change management and provide secure baseline configurations, detect errors, and perform validation prior to implementation. This is an activist role, not an “ivory tower” role.
Our ideal candidate plays a pivotal role in safeguarding enterprise digital assets, fostering a secure and seamless user experience, and ensuring regulatory compliance within an ever-evolving technological landscape. As a technical leader, you will drive the creation of the IAM roadmap, design, and partner on the maturity of Pure Storage’s Identity and Access Management platforms and capabilities.
What You’ll Do
- Lead the design and implementation of enterprise-wide identity and access management solutions, using comprehensive expertise in Okta and AWS Identity Center.
- Develop and maintain IAM reference architectures, roadmaps, and best practices to guide technology decisions.
- Establish platform architecture and design documentation describing business requirements, support processes, platform design, data flow, component interactions, API designs, and related features required by engineers, DevOps, QA, and Operations teams.
- Lead the evaluation, selection, and integration of IAM technologies.
- Define policies and processes for identity governance, access recertification, role-based access control (RBAC), and attribute-based access control (ABAC).
- Collaborate with business partners and the leadership team to understand organizational security goals and lead the creation of technical product roadmaps, including security best practices and emerging technologies that ensure our identity and access management platforms are industry-leading.
- Implement identity governance policies to safeguard sensitive data while maintaining regulatory compliance.
- Conduct regular and comprehensive audits of the existing identity management infrastructure, including Okta and AWS Identity Center, implementing enhancements to proactively identify and mitigate any potential vulnerabilities or security risks.
- Evaluate and implement Zero Trust security models that involve continuously verifying and validating user identities and devices before granting access to sensitive resources, thereby minimizing the risk of potential breaches.
- Manage vendor relationships, understand vendor product roadmaps, and be able to socialize and plan for the impact of vendor changes on our solutions.
- Provide mentorship and technical leadership to junior team members, promoting a culture of continuous learning, experimentation, and refinement within the Identity domain.
What you bring to the team:
- 12+ years of security engineering experience, 8+ years of Security & Identity architecture experience.
- Knowledge of Zero Trust security models and principles of least privilege.
- Proven track record in a specialized technical leadership role, with extensive experience architecting and implementing sophisticated identity and access management solutions using Okta.
- Advanced hands-on proficiency in Okta and standard authN/Z technologies, encompassing their functionalities, configurations, and platform administration.
- Profound understanding of identity protocols and standards such as FIDO2/WebAuthN, SAML, OpenID Connect, OAuth, Kerberos, and LDAP, with hands-on expertise in integrating them with Okta.
- Experience designing resiliency and scalable technologies and implementing passwordless capabilities for large companies.
- Effective collaboration with diverse cross-functional teams a
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s