Define and own the target state architecture and reference designs for the identity security platform across BeyondTrust (Password Safe, EPM, PRA), Microsoft Entra ID, Active Directory, and SailPoint IDN. Lead the architecture and deployment strategy for large scale identity security modernization initiatives: privileged access transformation, identity governance modernization, cloud identity adoption, Active Directory and hybrid identity modernization, and Zero Trust identity patterns. Establish architecture standards, design patterns teams implement against, and serve as design authority through architecture and design reviews. Develop migration and deployment strategies (sequencing, cutover, rollback, and risk mitigation) for moving large user and system populations onto modern identity platforms with minimal disruption. Integrate with cloud (Azure, AWS, GCP), and enterprise/SaaS applications using APIs, federation, and provisioning standards (SAML, OAuth2/OIDC, SCIM, Kerberos, LDAP). Drive phishing resistant authentication and least privilege/PAM architecture across the enterprise. Partner with engineering leads, security architecture, platform/cloud teams, and program management to translate architecture into delivery roadmaps and executable workstreams. Provide technical leadership and guidance to build engineers; review designs and key implementations to ensure alignment to architecture and security requirements. Identify and document architectural risks, dependencies, and trade offs; present recommendations and decisions to engineering and leadership audiences, ensuring designs meet Nordstrom security, compliance, and data handling requirements. Leverage AI tooling to accelerate architecture analysis, design documentation, and solution evaluation.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior