cover image
TekStaff IT Solutions

Solution Architect- CIAM

Hybrid

Toronto, Canada

Mid level

Freelance

03-09-2025

Share this job:
Expired

Skills

Communication Leadership Java JavaScript Architecture Security Architecture Programming Azure AWS NodeJs GCP

Job Specifications

Typical Day in Role:

*The Identify Access Management (IAM) Architect will work with business channels and product team to understand the challenges facing them, provide solutions to these challenges and recommend architecture and design to bring modern capabilities to various IAM platforms

* Responsible for the architecture and design of new features/capabilities the team is looking to introduce into the IAM platform (ForgeRock / Ping)

* Review the business requirements (the "what") provided by the IAM Product team and provide the overall architectural design (the "how") to the IAM Engineering team to build into the IAM service.

* Provide required design artifacts to key stakeholders which clearly outlines the solution, components involved, key decisions, and time and cost estimates

* Closely collaborate with IAM Engineering partners in all aspects of the design and ensure alignment and synergy regarding proposed solution.

* Evaluate new authentication capabilities introduced into the ever-changing IAM landscape and account for what is applicable into proposed designs (short-term and long-term)

* Partner with various cross functional architect teams (IAM, security, business channel, fraud) to solidify design approach which aligns with best practices and strategic direction of the platform

* Collaborate with stakeholders across the Bank - technology, security architecture, security advisory, fraud, compliance and business channel teams - to provide enterprise grade solutions which meet the business and security requirements

* Represent the CIAM Architecture team on various governance boards but providing both expertise and the required artifacts necessary to ensure stakeholder approval

* Design based on strong CIAM expertise that aligns with industry standards (FIDO, OIDC, OAUTH), best practices (MFA, NIST 800-63B) and a forward-looking mentality (Passkeys, VCs, DIDs)

Candidate Requirements/Must Have Skills:

1) 10+ years in IAM space with 3+ years in an Architect Role

2) 5+ years of experience working within CIAM space (ForgeRock, Okta, Ping Identity etc.)

3) 3+ years of hands-on experience with ForgeRock platform (SaaS or On-Prem).

4) 3+ years' experience with designing and implementing authentication and credential management flows based on channel requirements.

5) 3+ years' experience working with different MFA technologies

Nice-To-Have Skills:

* Knowledge of project finance or previous experience working within Banking Sector.

* Experience of preparation of presentation decks and presenting to senior leadership.

* Experience with cloud-based platforms (GCP, Azure, AWS) in relation to deployment of IAM services

* Experience with Java based programming languages (Java, JavaScript, NodeJS)

Soft Skills Required:

* Great communication skills to be able to communicate, design and propose solutions to various architects and receive buy-in

Education:

Bachelor's degree

About the Company

Just over 15 years ago TekStaff IT Solutions Inc was founded based on the need for a localized, professional staffing firm in the Greater Toronto Area. After gaining much recognition, and achieving a solid reputation, TekStaff has become a leading supplier of placement services. Today, we are acknowledged as a top leader in Canadian recruiting and have crossed borders securing contracts throughout the United States. We remain focused on developing long-term relationships with client companies and professionals looking for em... Know more