Cyber Identity Systems Architect (IGA)

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in New York, NY
Remote
Hybrid
130K-160K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
NBCUniversal has a rich history of evolving the media and entertainment industry.
The Role
The role involves driving the strategy for identity and access management solutions, translating business requirements into functionalities, developing scalable architectures, guiding compliance with security goals, and mentoring team members. The candidate will collaborate with technology and security teams, evaluate products, and maintain vendor relationships.
Summary Generated by Built In

Company Description
We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.
Here you can be your authentic self. As a company uniquely positioned to educate, entertain and empower through our platforms, Comcast NBCUniversal stands for including everyone. Our Diversity, Equity and Inclusion initiatives, coupled with our Corporate Social Responsibility work, is informed by our employees, audiences, park guests and the communities in which we live. We strive to foster a diverse, equitable and inclusive culture where our employees feel supported, embraced and heard. Together, we'll continue to create and deliver content that reflects the current and ever-changing face of the world.
Job Description
Join the NBCUniversal Operations and Technology (O&T) team and help drive strategy for the growing Identity and Access Management (IAM) service portfolio. The O&T IAM Architecture team is responsible for creating strategic solutions and setting the identity roadmap that supports the NBCUniversal enterprise and lines of business. This role is responsible for Identity Governance and Administration (IGA) service support and strategy. You'll be responsible for evaluating and developing on-prem and cloud-based IGA services with the goal of reducing cyber risk where our personas, devices, and applications consume identity. Successful candidates will couple a technical architectural mindset with a balanced solution approach, while applying knowledge, flexibility, and strong communication skills.
Responsibilities

  • Translate complex business requirements into IAM and IGA service functionality
  • Develop highly scalable identity service architectures serving enterprise, customer access, and external partner requirements
  • Produce technical solutions that meet NBCU business objectives and drive compliance with NBCU's information security goals
  • Partner with technology and security teams across NBCU to provide technical expertise, design guidance, and drive best practices
  • Catalog risk embedded in legacy authentication implementations and help define a path to industry-aligned secure designs and services
  • Create and deliver effective presentations that inform NBCUniversal Senior Leadership teams to drive business relevant information security decisions
  • Mentoring/advising other team members
  • Lead product evaluations and new technology adoptions
  • Maintain strong vendor relationships that drive partnership with NBCU


Qualifications
Basic Requirements

  • Bachelors Degree or higher in Computer Science related field OR Non-Computer related Degree with equivalent work experience
  • 5+ years of experience in an identity architecture role
  • 8+ years of overall experience in IAM technical role(s) in a large enterprise that includes experience with modern IGA platforms (SailPoint IIQ, Saviynt, SailPoint IDN, EntraID), Windows Active Directory, Microsoft Azure AD, REST API programming
  • In-depth experience with defining secure and hardened information IAM solutions
  • Exceptional communication and interpersonal skills; including negotiation, facilitation, and consensus building skills; ability to influence, persuade, and manage polarities without direct control
  • High degree of flexibility and ability to work with employees at all levels of the organization with diverse backgrounds
  • Makes wise, data-informed decisions, finds and owns problems to closure
  • Ability to balance the long-term big picture and short-term implications of tactical decisions
  • Possesses an innovative technical mindset with a focus on architecture, strategy, and design
  • Strong desire to drive change
  • Significant experience with application connection design, consulting experience on IGA functions (i.e. user lifecycle management), access control policies, federation, certifications, access management, MFA, and role management
  • Significant experience designing initial infrastructure, on-boarding of applications, role-based access controls, policy and password management, certifications, workflows, work items and rules
  • Deep understanding of RBAC, identity policies, identity lifecycle automation and reporting, password policies, separation of duties, user provisioning, and approval workflows in Saviynt, EntraID, SailPoint IIQ, or SailPoint IDN
  • Ability to make source code level changes and has worked in a large multinational organization providing hands-on technical architecture services with J2EE development, Database, Java, Bean Shell/JavaScript, JSP/Servlets, SQL
  • Experience with REST Web services, SAML 2.0, JDKs, WS-Security, etc.
  • Experience working with modern and legacy enterprise authentication services (OpenID Connect (OIDC), OAuth2, SAML, WS Fed, Kerberos) and platforms (preferably Active Directory, Entra ID, AWS)
  • Experience with enterprise directory architecture, including significant knowledge of Active Directory and Entra ID


Desired Characteristics

  • Experience architecting and delivering large-scale Enterprise SailPoint service instances
  • Experience developing and delivering Zero Trust architectural designs
  • Experience with Venafi / Netwrix/ CyberArk
  • Experience with Google Cloud Platform (GCP) and Amazon Web Services (AWS)
  • Experience with large-scale ID Verification solutions for Enterprise and Consumer Identity solutions
  • A current cybersecurity professional certification (such as CISSP), a current IGA certification
  • Additional experience with other areas of IAM, such as Multi-factor Authentication (MFA), passwordless, Privileged Access Management (PAM), and Public Key Infrastructure (PKI)


Additional Requirements:

  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee's residence.


This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $130,000 - $160,000 (bonus eligible)
We are accepting applications for this position on an ongoing basis.
Additional Information
As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.
If you are a qualified individual with a disability or a disabled veteran and require support throughout the application and/or recruitment process as a result of your disability, you have the right to request a reasonable accommodation. You can submit your request to [email protected].
For LA County and City Residents Only: NBCUniversal will consider for employment
\nqualified applicants with criminal histories, or arrest or conviction records, in a manner
\nconsistent with relevant legal requirements, including the City of Los Angeles' Fair Chance
\nInitiative For Hiring Ordinance, the Los Angeles' County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.

Top Skills

Iam
Iga

What the Team is Saying

Naomi
Mike
Teela
Steve
Grace
Dora
Grander
Chris
Anne
The Company
New York City,, NY
0 Employees
Hybrid Workplace
Year Founded: 1910

What We Do

From film, television, news, theme parks, interactive media, and streaming, our people are at the center of it all. ​Here, we solve complex and business-critical problems. That’s why we’re looking for people to help us continue our evolution, imagining and delivering the most innovative and disruptive products and services through the latest tech advancements in the industry. ​

Here you can develop solutions. You’ll develop solutions that allow engineers to broadcast live TV from the comfort of their homes. These solutions will enable the use of our collection of hundreds of thousands of distinct intellectual properties across our film, television and streaming brands.

Here you can transform. You’ll make decisions and solve complex problems by leveraging insights that come from data, building AI to help enable solutions to optimize every aspect of our content eco-system.

Here you can build. You’ll build emerging immersive technologies that are used to power the broadcasts and streaming of global events like the Super Bowl and Olympics. You can create secure, elastic cloud-based services connecting parts of our global platform ecosystem that effect tens of millions of viewers, consumers and businesses that consume and love NBCUniversal’s content. And while you design, build and architect your career, we have the culture to make sure you’re supported.

Here you can work and still live your best life!

We’re leaders in our fields. We hire smart people and trust them to get the job done. We are never too busy to develop a fellow colleague. We understand our goals – or we ask. When we see something that needs doing – we do it. We make data-driven decisions. We fiercely believe in our talent and their growth. If you're ready to make an impact, here you can.

Why Work With Us

For us, it's more than just a work life. It's a daily passion. We take great pride in our legacy. We find fun in the challenge. We collaborate and inspire others. We're always creating, always solving and always ahead of competition.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

NBCUniversal Teams

Team
Tech that entertains the world
About our Teams

NBCUniversal Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Flexible
New York, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account