
Security Solutions Architect – IAM
Posted Jul 17

Posted Jul 17
This is a fully remote position, open to applicants in Portugal.
• Assist in the IAM architectural roadmap, collaborating with security and enterprise architecture to ensure alignment with the overall enterprise security and technology strategies.
• Create comprehensive IAM solutions that encompass identity governance and administration (IGA), privileged access management (PAM), and access management.
• Develop and uphold architectural patterns, standards, and reference designs for IAM across cloud, hybrid, and on-premises settings.
• Design and supervise the implementation of authentication protocols such as OAuth 2.0, OpenID Connect (OIDC), SAML 2.0, and FIDO2/WebAuthn.
• Promote the use of multi-factor authentication (MFA), single sign-on (SSO), and password-less authentication features, improving and broadening the conditional access implementation.
• Collaborate with related functions like Workplace Technology, Enterprise Architecture, and Security Architecture as needed.
• Coordinate with appropriate teams to ensure IAM solutions adhere to relevant regulatory and control frameworks (including GDPR, SOX, PCI-DSS, NIST, and ISO 27001).
• Assist in the analysis and implementation of role-based access control (RBAC), attribute-based access control (ABAC), and entitlement management frameworks.
• Support audit and assurance efforts, generating architectural documentation and evidence as necessary.
• Serve as the subject matter expert (SME) for IAM solutions, guiding stakeholders and product teams on identity-related risks, capabilities, and mitigations.
• Maintain a “customer first” approach to ensure that user experience is prioritized in the delivery of IAM services.
• Assess and support recommendations for IAM vendor solutions and tools, contributing to procurement and commercial decisions.
• Mentor and coach junior colleagues to enhance IAM understanding within Flutter.
• A degree in Computer Science, Information Security, or a related field - or equivalent demonstrable experience.
• Over 7 years in identity and access management or information security positions, with at least 3 years in an architectural or engineering role.
• Familiarity with federation protocols: SAML 2.0, OAuth 2.0, OIDC, SCIM, LDAP, Kerberos.
• Strong grasp of zero trust network access (ZTNA) and its relevance to identity architectures.
• Experience in designing IAM solutions across multi-cloud environments (AWS, Azure, GCP).
• Understanding of API security patterns, including OAuth token management and API gateway integration.
• Knowledge of Infrastructure as Code (IaC) tools (e.g., Terraform, Ansible) as applied to identity configuration.
• Familiarity with PKI, certificate lifecycle management, and best practices in secrets management.
• Architectural experience, preferably with a foundation in a recognized framework such as TOGAF, SABSA, or Zachman.
• Proven experience working within complex, large-scale enterprise environments with varied technology stacks.
• Strong comprehension of cloud-native architecture patterns, microservices, and containerization (Kubernetes, Docker).
• Health insurance
• Flexible working hours
• Professional development opportunities
• Commitment to diversity and inclusion
Ramp
Park Place Technologies
Valtech
Talkdesk
Get handpicked remote jobs straight to your inbox weekly.