Deskripsi Pekerjaan
Are you a visionary Identity and Access Management (IAM) professional ready to shape the future of global digital security? British American Tobacco (BAT) is seeking a highly skilled IAM Solution Architect to join our dynamic technology team in Kuala Lumpur. As we accelerate our digital transformation, we need a strategic thinker to design, implement, and govern robust identity solutions that support our global business ambitions.
In this high-impact role, you will bridge the gap between complex business requirements and cutting-edge security technologies. You will lead the architectural design for enterprise-wide identity governance, access management, and privileged access security, ensuring that our digital footprint is both agile and secure. If you are passionate about driving architectural excellence and securing the future of a global industry leader, your journey starts here.
Tanggung Jawab
- Design and document end-to-end IAM solution architectures, ensuring alignment with global security standards and business objectives.
- Lead the evaluation and selection of IAM technologies, providing expert guidance on cloud-based and hybrid identity solutions.
- Collaborate with cross-functional global teams to integrate IAM services with complex enterprise applications and legacy systems.
- Establish and maintain governance frameworks for identity lifecycles, access provisioning, and entitlement management.
- Act as a subject matter expert for Identity-as-a-Service (IDaaS) implementations and Multi-Factor Authentication (MFA) strategies.
- Identify and mitigate security risks related to identity and access, ensuring compliance with data privacy and internal audit requirements.
- Mentor engineering teams on best practices for secure identity integration and architectural compliance.
Kualifikasi
- Bachelor’s degree in Computer Science, Information Security, or a related field.
- Minimum of 8-10 years of experience in IT infrastructure, with at least 5 years focused on IAM architecture and design.
- Deep understanding of protocols such as SAML, OIDC, OAuth, SCIM, and LDAP.
- Proven expertise in managing leading IAM suites (e.g., Okta, SailPoint, Ping Identity, or Azure AD/Entra ID).
- Strong knowledge of privileged access management (PAM) solutions and zero-trust security architecture principles.
- Excellent communication skills with the ability to influence stakeholders at all levels of the organization.
- Relevant industry certifications (e.g., CISSP, CISM, or vendor-specific IAM architecture certifications) are highly preferred.