IAM Architect

AppleSeattle, WA
1d

About The Position

Apple is a place where extraordinary people gravitate to do their life's best work. Together we craft products and experiences people once couldn’t have imagined — and now can’t imagine living without. The Apple Services Engineering (ASE) team builds and provides systems and infrastructure that fuel Apple’s services (such as Apple TV, App Store, Apple Music, Apple Fitness, iCloud, Siri, and Maps). We are the foundation on which Apple’s software developers build the products that our customers love. Our services have to scale globally, stay highly available, and meet the high security expectations for our billions of customers. The Security team within ASE is seeking a highly skilled and hands-on IAM Architect to design, implement, and optimize our Identity and Access Management (IAM) systems. This role requires deep technical expertise in IAM frameworks, authentication protocols, and access control mechanisms. The ideal candidate will be able to apply industry-leading security practices, build and execute identity and access management governance program, as well as drive seamless, secure access across the organization. DESCRIPTION Scaling and transforming systems in a safe and secure way requires experience and a deep understanding of how applications are built, deployed, and operated. In this role, you will work closely with stakeholders, engineers, product and program managers, and executives to charter a IAM unification strategy that includes all compute, storage, network, data warehouse, business operations, business applications, and beyond.

Requirements

  • 15+ years of experience in Identity and Access Management (IAM) architecture and engineering
  • Proven hands on experience building reliable web-scale policy-based Authentication and Authorization solutions
  • Proficiency in one or more programming languages (Golang, Java, Swift)
  • Experience with cloud-based IAM (AWS IAM, Azure AD, Google Cloud Identity)

Nice To Haves

  • Strong knowledge of privileged access management (PAM) and identity governance solutions
  • Working knowledge of Kubernetes ecosystem
  • Understanding of resource level authorization approaches at scale
  • Understanding of networking security controls and techniques for network isolation
  • Understanding of TPM, Hardware Root of Trust, PKI, UEFI Secure Boot, Measured Boot and security attestation architecture for hardware and workload identity provisioning
  • Understanding of Linux security subsystems (SELinux, BPF, IPC, etc.)
  • Experience with security frameworks (NIST, ISO 27001, SOC 2) and regulatory requirements
  • Proven experience leveraging GenAI

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service