Lead Cybersecurity Identity Engineer Job at Cox Automotive in Dunwoody
Cox Automotive, Dunwoody, GA, US
Cox Automotive is on the lookout for a skilled and experienced Lead Cybersecurity Identity Engineer to enhance our Identity and Access Management (IAM) team. In this pivotal role, you will design, develop, and maintain cutting-edge identity management and authentication solutions, including Single Sign-On (SSO) and Multi-Factor Authentication (MFA). Your efforts will be crucial in establishing secure, scalable access systems that improve user experience while upholding security standards and regulatory compliance.
Key Success Factors:
- A profound grasp of IAM technologies, principles, and best practices, along with an understanding of various IAM solutions and secrets management.
- Hands-on experience in workforce and customer authentication environments.
- Expertise in authentication architecture and design.
Key Responsibilities:
- Design and oversee enterprise-wide authentication and SSO solutions.
- Manage integrations of identity providers (IdPs) like Okta, Azure AD, and Ping Identity with internal and third-party applications.
- Develop secure authentication mechanisms utilizing protocols such as SAML, OAuth 2.0, OpenID Connect, and Kerberos.
- Collaborate with application owners and developers to implement SSO and federated identity integrations.
- Enforce multi-factor authentication (MFA) policies and technologies.
- Troubleshoot and resolve access-related incidents.
- Document architecture, configurations, and processes for authentication and access systems.
- Stay informed about emerging technologies, Threats, and best practices related to authentication.
Minimum Requirements:
- Bachelor's degree in a relevant field and 4 years of experience; master's degree with 2 years; Ph.D. with up to 1 year; or 16 years of relevant experience.
- Proven experience in designing, implementing, and managing authentication solutions.
- Strong communication skills to convey cybersecurity policies to both technical and non-technical stakeholders.
- Excellent customer service, writing, and presentation skills.
- A collaborative approach to develop productive working relationships with key stakeholders and coordinate with cybersecurity teams.
- Consultative ability to navigate complex concepts with employees and leadership.
- Competence in evaluating risks and making informed recommendations.
Required Technical Skills:
- In-depth knowledge of IAM concepts: authentication, authorization, SSO, MFA, RBAC, and ABAC.
- Experience with IAM platforms like Okta, Ping Identity, Azure AD, or SailPoint.
- Proficiency in current authentication protocols like SAML 2.0, OAuth 2.0, OIDC, Kerberos, and Radius.
- Experience implementing SSO and federated identity solutions.
- Knowledge of identity federation standards and cross-domain authentication.
- Proficient in implementing MFA solutions (e.g., Duo, Microsoft Authenticator, YubiKey, Google Authenticator).
- Experience with passwordless authentication methods (e.g., FIDO2, Windows Hello for Business).
- Familiarity with cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and relevant regulations (e.g., GDPR, FFIEC, GLBA).
Preferred Technical Skills:
- Experience developing connectors for aggregation and user provisioning, with a thorough understanding of SCIM.
- Deep understanding of federated authentication and implementation protocols.
- Expertise in deploying identity controls and building conditional access policies in Entra ID.
- Knowledge of contemporary cybersecurity architectures such as zero trust.
- Familiarity with the AWS Well-Architected Framework.
Preferred Qualifications:
- Experience in the automotive industry.
- Experience with big four consulting firms or within Fortune 500 companies.
- Relevant industry certifications (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA).
Salary: USD 99,000.00 - 165,000.00 per year
Compensation: The base salary may vary based on factors such as location and the selected candidate's qualifications. Additional compensation may include an incentive program.
Benefits: Employees have flexible vacation policies, seven paid holidays, and up to 160 hours of paid wellness leave each year. Additional paid time off includes bereavement, voting leave, jury duty, volunteer time, military leave, and parental leave.