Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Identity Systems Architect (SSO) image - Rise Careers
Job details

Cyber Identity Systems Architect (SSO)

Company Description

We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our theme parks and consumer experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, MSNBC, CNBC, NBC Sports, Telemundo, NBC Local Stations, Bravo, USA Network, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through Universal Filmed Entertainment Group and Universal Studio Group, and have world-renowned theme parks and attractions through Universal Destinations & Experiences. NBCUniversal is a subsidiary of Comcast Corporation.

Here you can be your authentic self. As a company uniquely positioned to educate, entertain and empower through our platforms, Comcast NBCUniversal stands for including everyone. Our Diversity, Equity and Inclusion initiatives, coupled with our Corporate Social Responsibility work, is informed by our employees, audiences, park guests and the communities in which we live. We strive to foster a diverse, equitable and inclusive culture where our employees feel supported, embraced and heard. Together, we’ll continue to create and deliver content that reflects the current and ever-changing face of the world.

Job Description

Join the NBCUniversal Operations and Technology (O&T) team and help drive strategy for the growing Identity and Access Management (IAM) service portfolio.  The O&T IAM Architecture team is responsible for creating strategic solutions and setting the identity roadmap that supports the NBCUniversal enterprise and lines of business.  This role is responsible for IAM service support and strategy.  You'll be responsible for evaluating and developing on-prem and cloud-based IAM services with the goal of reducing cyber risk where our personas, devices, and applications consume identity.  Successful candidates will couple an advanced technical mindset with a balanced solution approach, while applying knowledge, flexibility, and strong communication skills.

Responsibilities:

 

  • Translate complex business requirements into IAM service functionality
  • Develop highly scalable identity service architectures serving enterprise, customer access, and external partner requirements
  • Produce technical solutions that meet NBCU business objectives and drive compliance with NBCU’s information security goals
  • Partner with technology and security teams across NBCU to provide technical expertise, design guidance, and drive best practices
  • Catalog risk embedded in legacy authentication implementations and help define a path to industry-aligned secure designs and services
  • Create and deliver effective presentations that inform NBCUniversal Senior Leadership teams to drive business relevant information security decisions
  • Lead product evaluations and new technology adoptions
  • Maintain strong vendor relationships that drive partnership with NBCU

Qualifications

Basic Requirements:

  • Bachelors Degree or higher in Computer Science related field OR Non-Computer related Degree with equivalent work experience
  • 5+ years’ experience in an identity architecture role
  • 8+ years’ experience designing solutions in IAM technical role(s) for large enterprise
  • In-depth experience defining secure and hardened IAM solutions
  • Strong communication and interpersonal skills; including negotiation, facilitation, and consensus building skills; Ability to influence, persuade, and manage polarities without direct control
  • High degree of flexibility and ability to work with employees at all levels of the organization with diverse backgrounds
  • Makes wise, data-informed decisions, finds and owns problems to closure
  • Ability to balance the long-term big picture and short-term implications of tactical decisions
  • Possesses an innovative technical mindset with a focus on architecture, strategy, and design
  • Strong desire to drive change
  • Significant experience designing initial infrastructure, on-boarding of applications, role-based access controls, policy and password management, certifications, workflows, work items and rules
  • Strong understanding of RBAC, identity policies, identity lifecycle automation and reporting, password policies, separation of duties, user provisioning, and approval workflows
  • Experience working with modern and legacy enterprise authentication services (OpenID Connect (OIDC), OAuth2, SAML, WS Fed, Kerberos) and platforms (preferably Active Directory, Entra ID, AWS)
  • Experience with Single-Sign-On, Multi-Factor Authentication, Passwordless Technologies, Privileged Access Management (PAM), and Public Key Infrastructure (PKI)

Desired Characteristics:

  • Experience architecting and delivering large-scale Enterprise IAM service instances
  • Experience with enterprise directory architecture, including significant knowledge of Active Directory and Entra ID
  • Experience developing and delivering  Zero Trust architectural designs
  • Experience with Venafi / Netwrix / CyberArk
  • Experience with Google Cloud Platform (GCP) and Amazon Web Services (AWS)
  • Experience with large-scale ID Verification solutions for Enterprise and Consumer Identity solutions
  • A current cybersecurity professional certification (such as CISSP), a current IGA certification

Additional Requirements:

  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee’s residence.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $130,000 - $160,000 (bonus eligible)

We are accepting applications for this position on an ongoing basis.

Additional Information

As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.

If you are a qualified individual with a disability or a disabled veteran and require support throughout the application and/or recruitment process as a result of your disability, you have the right to request a reasonable accommodation. You can submit your request to [email protected].

For LA County and City Residents Only:  NBCUniversal will consider for employment
qualified applicants with criminal histories, or arrest or conviction records, in a manner
consistent with relevant legal requirements, including the City of Los Angeles' Fair Chance
Initiative For Hiring Ordinance, the Los Angeles' County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.

NBCUniversal Glassdoor Company Review
4.0 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
NBCUniversal DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of NBCUniversal
NBCUniversal CEO photo
Jeff Shell
Approve of CEO

Average salary estimate

$145000 / YEARLY (est.)
min
max
$130000K
$160000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Identity Systems Architect (SSO), NBCUniversal

Are you ready to take your career to the next level? Join us as a Cyber Identity Systems Architect (SSO) at NBCUniversal, and become a vital part of our Operations and Technology (O&T) team. We're all about creating world-class content across film, television, and streaming, and we’re looking for someone to help shape the future of our Identity and Access Management (IAM) services. In this exciting role, you’ll be translating complex business needs into streamlined IAM service functionalities. You’ll craft highly scalable identity architectures tailored for enterprise clients, customer access, and our external partners. From developing secure IAM solutions to collaborating with technology and security teams, your expertise will drive compliance with our stringent information security objectives. You will also be finding innovative solutions to improve legacy authentication methods, while maintaining strong partnerships with our vendors and leading product evaluations. To thrive in this position, you should be an effective communicator with a knack for problem-solving and a deep understanding of identity policies, lifecycle automation, and modern authentication services. If you’re passionate about technology and eager to make a difference in a diverse and inclusive environment, we’d love to hear from you! Remote work flexibility is the cherry on top, meaning your home office is also your workspace. Enjoy a competitive salary range of $130,000 to $160,000, with bonus eligibility, healthcare benefits, and much more. Let’s create a secure digital future together at NBCUniversal!

Frequently Asked Questions (FAQs) for Cyber Identity Systems Architect (SSO) Role at NBCUniversal
What are the primary responsibilities of a Cyber Identity Systems Architect (SSO) at NBCUniversal?

As a Cyber Identity Systems Architect (SSO) at NBCUniversal, your primary responsibilities include translating complex business requirements into IAM service functionalities, developing scalable identity service architectures, and producing technical solutions that align with business objectives while ensuring robust information security. You'll also lead product evaluations, maintain vendor relationships, and create presentations for senior leadership to guide critical security decisions.

Join Rise to see the full answer
What qualifications are necessary for the Cyber Identity Systems Architect (SSO) role at NBCUniversal?

To qualify for the Cyber Identity Systems Architect (SSO) position at NBCUniversal, applicants should hold a Bachelor’s degree in a Computer Science-related field or possess equivalent work experience. Ideally, candidates should have over 5 years of experience in an identity architecture role and 8 years in IAM technical roles, along with a deep understanding of secure IAM solutions and technologies such as Active Directory, OAuth2, and SSO.

Join Rise to see the full answer
How does NBCUniversal support Diversity and Inclusion in the Cyber Identity Systems Architect (SSO) role?

NBCUniversal is firmly dedicated to fostering an inclusive work environment, as highlighted in our Diversity, Equity, and Inclusion initiatives. In the role of Cyber Identity Systems Architect (SSO), you'll work in a diverse team that values different perspectives, ensuring that everyone is supported and embraced. This commitment allows our employees to be their authentic selves as they contribute to our content and services.

Join Rise to see the full answer
What technologies are essential for the Cyber Identity Systems Architect (SSO) position at NBCUniversal?

In the Cyber Identity Systems Architect (SSO) role, familiarity with various modern and legacy enterprise authentication technologies is crucial. Essential technologies include OpenID Connect, OAuth2, SAML, and platforms such as Active Directory and AWS. Experience with Single-Sign-On, Multi-Factor Authentication, and Privileged Access Management will also be vital in ensuring the success of your IAM solutions.

Join Rise to see the full answer
What opportunities for growth does NBCUniversal offer for Cyber Identity Systems Architects (SSO)?

As Cyber Identity Systems Architects (SSO) at NBCUniversal, there are ample opportunities for personal and professional growth. You’ll be encouraged to stay informed on industry best practices and emerging technologies while collaborating with talented teams across multiple departments. Moreover, NBCUniversal provides resources to pursue ongoing education and certifications, ensuring you remain at the forefront of the cybersecurity field.

Join Rise to see the full answer
Common Interview Questions for Cyber Identity Systems Architect (SSO)
Can you explain how you would translate complex business requirements into IAM services for NBCUniversal?

Certainly! In responding to this question, I'd emphasize the importance of understanding the specific business needs and the stakeholders involved. I'd outline a structured approach that starts with gathering requirements through interviews and workshops, followed by creating a clear mapping of those needs to IAM functionalities. Techniques could include building models or prototypes to visualize how these requirements can translate into secure and efficient IAM solutions.

Join Rise to see the full answer
What experience do you have with creating scalable identity service architectures?

To effectively answer this question, I would describe a project where I designed a scalable IAM architecture. I’d focus on the technologies used, such as cloud providers like AWS or Google Cloud, and how I ensured that the architecture could handle increased user loads while maintaining performance and security standards. Highlighting metrics from previous projects can provide a quantitative perspective on my success in this area.

Join Rise to see the full answer
How do you approach maintaining vendor relationships as a Cyber Identity Systems Architect?

When discussing vendor relationships, I would articulate my belief in clear communication and mutual collaboration. I’d explain that I maintain regular check-ins to discuss performance, address any issues, and ensure alignment on goals. Additionally, being proactive in understanding their product roadmaps and providing feedback helps foster a cooperative partnership that benefits both the vendor and NBCUniversal.

Join Rise to see the full answer
What is your understanding of RBAC and its importance in identity management?

In responding, I'd clarify that RBAC, or Role-Based Access Control, is crucial for ensuring that users have the minimum permissions needed to perform their tasks, thus increasing security. I’d also mention how developing a clear role hierarchy and regularly reviewing access permissions ensures that RBAC effectively mitigates risks associated with unauthorized access.

Join Rise to see the full answer
Can you describe a significant challenge you faced in IAM and how you overcame it?

I would share a specific example of a challenge, such as integrating a new identity provider into an existing infrastructure. I'd detail the steps taken to assess compatibility, the communication with stakeholders involved, and how I formulated a phased implementation plan to address any risks, resulting in a successful integration that improved overall system efficiency.

Join Rise to see the full answer
How do you stay updated on the latest trends and advancements in IAM?

In answering this, I’d share my strategies for continuous learning, such as attending industry conferences, following relevant publications, participating in online communities, and pursuing certifications in areas like Zero Trust architecture. Mentioning a specific resource or recent trend could also demonstrate my active engagement with the IAM community.

Join Rise to see the full answer
How do you ensure compliance with information security goals while implementing IAM solutions at NBCUniversal?

I would emphasize my understanding of NBCUniversal's specific information security policies and how I would align the IAM solutions with those standards. In my approach, I would highlight the need for regular audits, strict adherence to regulatory requirements, and ongoing assessments of current IAM solutions to ensure they meet compliance objectives.

Join Rise to see the full answer
What role does effective communication play in your work as a Cyber Identity Systems Architect?

Effective communication is fundamental; it ensures that all stakeholders are aligned with project goals, timelines, and expected outcomes. I’d articulate my approach, stressing the importance of active listening, simplifying complex technical terms for non-technical stakeholders, and establishing clear channels for feedback and information sharing throughout the project lifecycle.

Join Rise to see the full answer
Can you share your experience with Multi-Factor Authentication in IAM solutions?

In my answer, I would describe specific implementations of Multi-Factor Authentication I've worked on, including the challenges and successes I encountered. I would illustrate how MFA increases security by requiring additional forms of verification beyond passwords and how user education and ease of integration played a key role in these projects.

Join Rise to see the full answer
What strategies do you employ to evaluate and select new IAM technologies?

I’d explain my methodical approach, which involves conducting a needs assessment, researching potential solutions, and evaluating them against established criteria such as scalability, security features, cost, and vendor support. I would highlight the importance of gathering input from both technical teams and end users to ensure the selected technology meets both functional and operational requirements.

Join Rise to see the full answer

We are in business to create and deliver content so compelling it entertains, informs and shapes our world. We believe that the talent, creativity and diversity of our people are our greatest resources. We take our business seriously, but do no...

605 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 12, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!