FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Senior Identity Security Architect
Jones Lang LaSalle Americas, Inc.. Define and own JLL's enterprise identity security architecture across IdP services, Active Directory, M365, cloud platforms, and third-party SaaS .
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates extensive expertise in identity security architecture, including hands-on experience with enterprise IdP platforms like Okta and Privileged Access Management solutions such as CyberArk. Proficient in developing security architectures that align with business requirements and regulatory standards while leading cross-functional security initiatives.
Highest-signal resume keywords
Identity Security ArchitecturePrivileged Access ManagementActive Directory GovernanceZero Trust ArchitectureNIST CSF Compliance
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Identity SecurityEnterprise IdP PlatformsPrivileged Access Management SolutionsActive Directory Governance ModelsIdentity-Aware DetectionOAuth 2.0/OIDCZero Trust ArchitectureFederationMachine-to-Machine AccessSecurity Architecture Development
Soft Skills
Exceptional CommunicationInfluencing SkillsAbility to Operate in Ambiguity
Tools & Technologies
OktaCyberArkM365AWSAzureSaaS ApplicationsCIS Controls v8MITRE ATT&CKOWASP AI/LLM Guidance
Industry Keywords
Identity GovernanceEntitlement ModelsAccess CertificationSegregation of DutiesLeast-Privilege Policies
Tech Stack
Tools & technologiesAWSAzureCloudCyber Security
About the role
Key responsibilities & impact- Define and own JLL's enterprise identity security architecture across IdP services, Active Directory, M365, cloud platforms, and third-party SaaS
- Establish and maintain identity security policies and standards across user, non-person, on-premises, cloud, and SaaS identities
- Partner with identity security, engineering, and operations teams to translate standards into engineering and operational direction
- Lead JLL's zero trust strategy for user and third-party access
- Shape the Customer Identity and Access Management architecture for externally facing digital products
- Extend identity security architecture to machine identities, service accounts, AI, APIs, and modern authentication patterns
- Define identity governance and administration strategies, entitlement models, access certification cadence, and joiner/mover/leaver standards
- Define segregation-of-duties and least-privilege policies and translate them into enforceable entitlement structures
- Architect JLL's Privileged Access Management strategy and provide direction for PAM tooling
- Collaborate with threat management and insider threat teams on identity-aware detection and response
- Partner with Active Directory, authentication, and cloud engineering teams to implement enforceable security controls
- Serve as identity security subject matter expert for major programs, transformations, and acquisitions
- Lead security architecture reviews and design governance processes
- Mentor junior architects, engineers, developers, and security professionals
- Lead cross-functional security initiatives and support secure development training and awareness programs
Requirements
What you’ll need- 10+ years of technical cybersecurity experience
- At least 7 years focused on identity security architecture in large, complex enterprise environments
- Hands-on architectural experience with enterprise IdP platforms, especially Okta
- Experience with Privileged Access Management solutions, especially CyberArk
- Experience securing identity across M365, AWS/Azure, SaaS applications, and on-premises infrastructure
- Experience implementing Active Directory governance models, including hybrid AD/Entra ID sync architecture, delegation and privilege-escalation attack paths, and tiered administrative models
- Experience designing identity-aware detection capabilities with threat management, insider threat, and incident response teams
- Experience architecting non-person and machine-to-machine access, including service accounts, workload identity, and OAuth delegation patterns
- Comprehensive knowledge of zero trust architecture, federation, SSO, OAuth 2.0/OIDC, and PAM
- Strong command of NIST CSF, NIST 800-63, ISO 27001, MITRE ATT&CK, CIS Controls v8, and OWASP AI/LLM guidance
- Ability to develop sophisticated security architectures addressing business requirements, regulatory obligations, and enterprise risk
- Exceptional communication and influencing skills
- Ability to operate in ambiguity and drive progress in a fast-moving global environment
Benefits
Comp & perks- Equal opportunity employment
- Reasonable accommodations for individuals with disabilities