Security Engineer - Identity Access Management

Gera Commerzone SEZ, Pune, India

Barclays

Barclays is a British universal bank. Our businesses include consumer banking, as well as a top-tier, global corporate and investment bank.

View all jobs at Barclays

Apply now Apply later

Job Description

Purpose of the role

To develop, implement and maintain solutions that support the safeguarding of the banks systems and sensitive information.  

Accountabilities

  • Provision of subject matter expertise on security systems and engineering patterns.
  • Development and implementation of protocols, algorithms, and software applications to protect sensitive data and systems.
  • Management and protection of secrets, ensuring that they are securely generated, stored, and used.
  • Execution of audits to monitor, identify and assess vulnerabilities in the banks infrastructure/software and support the response to potential security breaches.
  • Identification of advancements in to support the innovation and adoption of new cryptographic technologies and techniques.
  • Collaboration across the bank, including developers and security teams, to ensure that cryptographic solutions align with business objectives, security policies and regulatory requirements.
  • Development/ Implementation and maintenance of Identity and Access Management solutions and systems.

Vice President Expectations

  • To contribute or set strategy, drive requirements and make recommendations for change. Plan resources, budgets, and policies; manage and maintain policies/ processes; deliver continuous improvements and escalate breaches of policies/procedures..
  • If managing a team, they define jobs and responsibilities, planning for the department’s future needs and operations, counselling employees on performance and contributing to employee pay decisions/changes. They may also lead a number of specialists to influence the operations of a department, in alignment with strategic as well as tactical priorities, while balancing short and long term goals and ensuring that budgets and schedules meet corporate requirements..
  • If the position has leadership responsibilities, People Leaders are expected to demonstrate a clear set of leadership behaviours to create an environment for colleagues to thrive and deliver to a consistently excellent standard. The four LEAD behaviours are: L – Listen and be authentic, E – Energise and inspire, A – Align across the enterprise, D – Develop others..
  • OR for an individual contributor, they will be a subject matter expert within own discipline and will guide technical direction. They will lead collaborative, multi-year assignments and guide team members through structured assignments, identify the need for the inclusion of other areas of specialisation to complete assignments. They will train, guide and coach less experienced specialists and provide information affecting long term profits, organisational risks and strategic decisions..
  • Advise key stakeholders, including functional leadership teams and senior management on functional and cross functional areas of impact and alignment.
  • Manage and mitigate risks through assessment, in support of the control and governance agenda.
  • Demonstrate leadership and accountability for managing risk and strengthening controls in relation to the work your team does.
  • Demonstrate comprehensive understanding of the organisation functions to contribute to achieving the goals of the business.
  • Collaborate with other areas of work, for business aligned support areas to keep up to speed with business activity and the business strategies.
  • Create solutions based on sophisticated analytical thought comparing and selecting complex alternatives. In-depth analysis with interpretative thinking will be required to define problems and develop innovative solutions.
  • Adopt and include the outcomes of extensive research in problem solving processes.
  • Seek out, build and maintain trusting relationships and partnerships with internal and external stakeholders in order to accomplish key business objectives, using influencing and negotiating skills to achieve outcomes.

All colleagues will be expected to demonstrate the Barclays Values of Respect, Integrity, Service, Excellence and Stewardship – our moral compass, helping us do what we believe is right. They will also be expected to demonstrate the Barclays Mindset – to Empower, Challenge and Drive – the operating manual for how we behave.

Join us as a Security Engineer- Identity Access Management. You will be bringing to life a new digital platform capability, transforming, and modernising our digital estate to build a market-leading digital offering with customer experience at its heart. You will be partnering with business aligned engineering and product teams, to ensure a collaborative team culture is at the heart of what we do.

To be successful in this role you should have:

• Hands-on IAM (Identity Access Management) engineer background with broad expertise across the IAM (Identity Access Management) domain, including tooling, products, protocols, taxonomy, identity management, authentication, authorization, and identity federation.

• Experience with single sign on, OAuth2, OIDC, PKI, PSD2 SCA knowledge and possession-based authentication.

• Experience with ForgeRock developer experience with Ping Gateway, Ping AM, Ping IDM, and Ping DS, including JavaScript coding of Ping Gateway scripted routes, and Ping AM authentication tree nodes is an advantage.

• Strong hands-on coding across either JavaScript or Java, and you must be comfortable in designing extensible IAM APIs for seamless integration with external and internal applications.

• Working knowledge of implementing Ping AM custom authentication trees, including downstream API integration with threat sensors (Threat Metrix, Bio Catch, etc.), adaptive authentication and step-up authentication, including the ability to implement data links between internal and external LDAPS, JDBC, SOAP, HTTPS, and other data sources.

Some other highly desirable skills include:

• Experience in implementing Ping Gateway single-sign-on routes, dynamic proxies and filter chains, or implementing Ping IDM based data links.

• Experience in partnering with security, product, engineering, and compliance teams, to embed identity-first principles into the DevSecOps lifecycle.

You may be assessed on the key critical skills relevant for success in role, such as risk and controls, change and transformation, business acumen strategic thinking and digital and technology, as well as job-specific technical skills.

This role will be based out of our Pune office.

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: APIs Audits Compliance DevSecOps ForgeRock Governance IAM Java JavaScript PKI PSD2 Strategy Vulnerabilities

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.