Job Description
As Senior Cyber Specialist - Consumer Identity, you will play a pivotal role in validating controls and governance supporting Customer Identity and Access Management (CIAM) platforms. You will serve as a trusted advisor on identity architecture, authentication, and authorization controls and governance. Product Owners, Engineers, and Architects will rely on your expertise and clear communication to guide decisions and maintain a secure, scalable, and compliant consumer identity ecosystem.
CIAM Controls Assessment:
Validate the implementation and governance of controls related to identity provider (IdP) configuration and federation protocols (e.g., SAML, OIDC).
Evaluate the design and implementation of authorization models, including role-based (RBAC), attribute-based (ABAC), and policy-based access controls (PBAC).
Determine the strength and efficiency of security controls governing password requirements, multi-factor authentication (MFA), and adaptive authentication for both consumer-facing access and internal platform operations.
CIAM Governance Assessment:
Assess and validate adherence to CIAM governance frameworks, including defined roles, responsibilities, and accountability structures.
Validate the effectiveness of processes designed to ensure compliance with GDPR, CCPA, HIPAA, PCI DSS, and other applicable consumer data protection standards.
Assess vendor oversight and review of third-party security certifications (e.g., SOC 2, ISO 27001).As Senior Cyber Specialist - Consumer Identity, you will play a pivotal role in validating controls and governance supporting Customer Identity and Access Management (CIAM) platforms. You will serve as a trusted advisor on identity architecture, authentication, and authorization controls and governance. Product Owners, Engineers, and Architects will rely on your expertise and clear communication to guide decisions and maintain a secure, scalable, and compliant consumer identity ecosystem.
CIAM Controls Assessment:
Validate the implementation and governance of controls related to identity provider (IdP) configuration and federation protocols (e.g., SAML, OIDC).
Evaluate the design and implementation of authorization models, including role-based (RBAC), attribute-based (ABAC), and policy-based access controls (PBAC).
Determine the strength and efficiency of security controls governing password requirements, multi-factor authentication (MFA), and adaptive authentication for both consumer-facing access and internal platform operations.
CIAM Governance Assessment:
Assess and validate adherence to CIAM governance frameworks, including defined roles, responsibilities, and accountability structures.
Validate the effectiveness of processes designed to ensure compliance with GDPR, CCPA, HIPAA, PCI DSS, and other applicable consumer data protection standards.
Assess vendor oversight and review of third-party security certifications (e.g., SOC 2, ISO 27001).