Remotery

Senior Identity Security Architect

Posted 1 day ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Act as a reliable advisor to enterprise clients implementing Identity Attack Path Management initiatives.

• Convert BloodHound Enterprise insights and attack path evaluations into actionable remediation plans.

• Assist clients in prioritizing remediation efforts based on factors such as risk, impact, dependencies, and operational limitations.

• Facilitate conversations among Security, Infrastructure, IAM, Endpoint Management, Engineering teams, and other relevant stakeholders.

• Counsel clients on both architectural and operational enhancements that mitigate attack path risks.

• Offer expertise on Active Directory, Microsoft Entra ID, and hybrid identity frameworks.

• Provide guidance on delegated administration, privileged access management, administrative tiering, identity governance, service account security, and identity modernization projects.

• Support clients in the development and operationalization of Privilege Zones.

• Assess identity architectures through the lens of adversaries and attack paths.

• Create remediation frameworks, playbooks, and reference architectures focused on attack paths.

• Develop standardized guidance for remediation prioritization, ownership, implementation planning, and validation.

• Identify recurring challenges faced by clients and solidify successful remediation approaches.

• Aid in establishing scalable delivery methodologies across BloodHound Scentry.

• Collaborate with researchers to implement emerging tradecraft and attack path studies.

• Provide support to consultants and TAMs through training, mentorship, and guidance.

• Contribute to the advancement of Identity Attack Path Management methodologies and best practices.

• Become a key contributor to BloodHound Scentry engagements.

• Establish SpecterOps' remediation methodology and frameworks for architectural guidance.

• Enhance customer outcomes by facilitating the transition from attack path identification to measurable risk reduction.

• Empower consultants and TAMs with repeatable remediation strategies and implementation guidance.

• Fortify SpecterOps' capacity to assist clients in operationalizing Identity Attack Path Management at scale.


⛳️ Requirements

• 8+ years of experience in designing, operating, securing, or modernizing enterprise identity environments.

• Extensive expertise in Active Directory and Microsoft Entra ID.

• Familiarity with BloodHound or attack path analysis.

• Experience with hybrid identity architectures and identity synchronization technologies.

• Proven track record of leading enterprise remediation, modernization, migration, or security enhancement projects.

• Strong understanding of administrative tiering, delegated administration, privileged access management, identity governance, and enterprise identity operations.

• Experience collaborating directly with technical and business stakeholders.

• Exceptional written and verbal communication abilities.

• Background in consulting, professional services, or customer-facing advisory roles.

• Experience in developing methodologies, frameworks, or operational programs.

• Candidate must have authorization to work and reside in the United States; immigration visa sponsorship is not currently available.

• Preferred: Experience with large-scale enterprise Active Directory environments (50,000+ users).

• Preferred: Knowledge of offensive security concepts, adversary tradecraft, or red team operations.

• Preferred: Experience with identity platforms such as Okta, Ping Identity, CyberArk, SailPoint, or similar.

• Preferred: Familiarity with endpoint management platforms including Microsoft Intune, SCCM, Tanium, Jamf, or others.

• Preferred: Understanding of PKI, virtualization platforms, cloud infrastructure, and other essential enterprise technologies.


🏝️ Benefits

• Health/Dental/Vision/life insurance: 100% covered for both the employee and their family.

• Flexible time-off policy.

• 13 paid holidays each year.

• 401(k) plan with up to 4% company match.

• Equity and quarterly bonuses based on company performance.

• Remote work: $1,500 allowance in the first year to establish a home office.

• $500 annual home office allowance after the first year.

• $150 monthly reimbursement for cell phone and internet expenses.

• $5,000 annual allowance for professional development.

• $5,250 towards continuing education or student loan repayment.

• $1,200 annual benefit for lifestyle, wellness, pet insurance, and more.

• A one-time $10,000 benefit for family planning.

• In-person and virtual employee events throughout the year.

• Company swag.

People also viewed

ASG Technologies6 hours ago

IT Security Director

US flagCalifornia OnlyFull-timeCybersecurity / Security Engineer$165k – $190k/year
ApplyView job
CrowdStrike6 hours ago

Associate Security Engineer

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$70k – $95k/year
ApplyView job
Culmen International7 hours ago

Border Security Trainer

US flagUnited States OnlyFreelanceCybersecurity / Security Engineer
ApplyView job
Threatscape7 hours ago

Security Consultant – Purview

GB flagUnited Kingdom, +1 more countryFull-timeCybersecurity / Security Engineer£35k – £47k/year
ApplyView job
Unity8 hours ago

Staff Security Architect

US flagTexas OnlyFull-timeCybersecurity / Security Engineer$160.3k – $305.4k/year
ApplyView job
Truist10 hours ago

Cybersecurity Group Manager

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers