Senior Identity Governance & Administration (IGA) Architect

  • Full-time
  • Job Type (exemption status): Exempt position - Please see related compensation & benefits details below
  • Salary Range: 148,495.00-210,300.00
  • Business Function: IT Security
  • Work Location: Remote Office - Northern California--LOC_WDT_USCA18
  • Location (Secondary): Milpitas Office--LOC_WDT_USCA25

Company Description

At Western Digital, our vision is to power global innovation and push the boundaries of technology to make what you thought was once impossible, possible.

At our core, Western Digital is a company of problem solvers. People achieve extraordinary things given the right technology. For decades, we’ve been doing just that. Our technology helped people put a man on the moon.

We are a key partner to some of the largest and highest growth organizations in the world. From energizing the most competitive gaming platforms, to enabling systems to make cities safer and cars smarter and more connected, to powering the data centers behind many of the world’s biggest companies and public cloud, Western Digital is fueling a brighter, smarter future.

Binge-watch any shows, use social media or shop online lately? You’ll find Western Digital supporting the storage infrastructure behind many of these platforms. And, that flash memory card that captures and preserves your most precious moments? That’s us, too.

We offer an expansive portfolio of technologies, storage devices and platforms for business and consumers alike. Our data-centric solutions are comprised of the Western Digital®, G-Technology™, SanDisk® and WD® brands.

Today’s exceptional challenges require your unique skills. It’s You & Western Digital. Together, we’re the next BIG thing in data.

Job Description

Responsibilities and Professional Attributes

  • Architect, design, and implement IGA solutions that align with the organization's security policies, compliance requirements, and business objectives.
  • Develop identity lifecycle management processes and procedures for managing the entire identity lifecycle, including provisioning, authentication, authorization, and de-provisioning.
  • Define access control policies and enforce least privilege principles to ensure that users have appropriate access rights based on their roles and responsibilities.
  • Responsible for overseeing identity and access governance operation and architecture design.
  • Demonstrate ability to handle heavy multi-tasking and hands-on development and support.
  • Tasks involve integration of identity management processes or methodologies to resolve total system problems or technology problems.
  • Applies analytical and systematic approaches in the resolution of problems of workflow, organization, and planning and directs and assists junior engineers in the application of system engineering principles to the solution of secure systems design problems.
  • Strong problem-solving skills and the ability to compile, analyze complex issues and recommend effective solutions.
  • Work with teams to perform security assessments and tool evaluations on all application onboarding and integration requirements based on optimal enterprise architecture and design.
  • Conducts workshops and integrates solutions for Identity Management platform as developed by IAM architect.
  • Ability to work with leadership on IGA/IAM strategy and roadmap.
  • Actively participates to improve procedures and standards.
  • Escalates issues to management and other teams when appropriate; follows up on issues and the results of issue resolutions.
  • Strength in communicating proactively and effectively.
  • Reporting mechanisms to capture information on the status of the environment or assigned projects.
  • Strong interpersonal skills to gather feedback from end users and collaborate with other groups in the business.
  • Strong organizational, follow-up skills, time management skills.
  • Clear ability to complete work with minimal oversight.

Qualifications

Technical Experience Required

  • Identity and Access Management system architecture including RBAC and Single Sign-On Federation using SAML/OAuth 2.0 standards.
  • Active Directory systems, Azure EntraID, Cloud applications / application access controls, delegated administration, API gateways, and SOA services.
  • Product experience includes Saviynt Identity and Access Governance, Azure EntraID, Azure B2B/B2C, and Active Directory Federation Services.
  • ERP application integration including SAP and Oracle.
  • Integration with cloud authentication services.
  • Experience with web and mobile technologies.
  • External identities, such as B2B and B2C experience is preferred.
  • In-depth understanding of identity lifecycle management concepts and processes including account management, access governance, and access control is a must-have.
  • Experience in Governance, Risk, Compliance and Sarbanes Oxley (SOX) Audit support.

Programming + Tools

Java, ASP, VB/Java script, Shell script, .Net/C#, SQL

Career and Education Experience

  • 12+ years of experience on IT or related field.
  • 10+ years of experience directly related to Identity Lifecycle Management and application onboarding.
  • 8+ years of experience directly related to Identity and Access Governance is highly desirable.
  • BA or BS or equivalent in IT related degrees

Language Experience

  • English proficiency in both speaking and writing.

Logistics

  • Primary work in an assigned office and/or home office environment.
  • Willing to be 24 x 7 on call.
  • Willing to perform work function cross time zone to support US coverage needs.

Additional Information

Western Digital is committed to providing equal opportunities to all applicants and employees and will not discriminate against any applicant or employee based on their race, color, ancestry, religion (including religious dress and grooming standards), sex (including pregnancy, childbirth or related medical conditions, breastfeeding or related medical conditions), gender (including a person’s gender identity, gender expression, and gender-related appearance and behavior, whether or not stereotypically associated with the person’s assigned sex at birth), age, national origin, sexual orientation, medical condition, marital status (including domestic partnership status), physical disability, mental disability, medical condition, genetic information, protected medical and family care leave, Civil Air Patrol status, military and veteran status, or other legally protected characteristics. We also prohibit harassment of any individual on any of the characteristics listed above. Our non-discrimination policy applies to all aspects of employment. We comply with the laws and regulations set forth in the “Know Your Rights: Workplace Discrimination is Illegal” poster. Our pay transparency policy is available here: Pay Transparency Nondiscrimination Provision (dol.gov)

Western Digital thrives on the power and potential of diversity. As a global company, we believe the most effective way to embrace the diversity of our customers and communities is to mirror it from within. We believe the fusion of various perspectives results in the best outcomes for our employees, our company, our customers, and the world around us. We are committed to an inclusive environment where every individual can thrive through a sense of belonging, respect and contribution.

Western Digital is committed to offering opportunities to applicants with disabilities and ensuring all candidates can successfully navigate our careers website and our hiring process. Please contact us at [email protected] to advise us of your accommodation request. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.

    #LI-AS1

    Compensation & Benefits Details

    • An employee’s pay position within the salary range may be based on several factors including but not limited to (1) relevant education; qualifications; certifications; and experience; (2) skills, ability, knowledge of the job; (3) performance, contribution and results; (4) geographic location; (5) shift; (6) internal and external equity; and (7) business and organizational needs.
    • The salary range is what we believe to be the range of possible compensation for this role at the time of this posting.  We may ultimately pay more or less than the posted range and this range is only applicable for jobs to be performed in California, Colorado, New York or remote jobs that can be performed in California, Colorado and New York.  This range may be modified in the future.
    • You will be eligible to participate in Western Digital’s Short-Term Incentive (STI) Plan, which provides incentive awards based on Company and individual performance.  Depending on your role and your performance, you may be eligible to participate in our annual Long-Term Incentive (LTI) program, which consists of restricted stock units (RSUs) or cash equivalents, pursuant to the terms of the LTI plan. Please note that not all roles are eligible to participate in the LTI program, and not all roles are eligible for equity under the LTI plan. RSU awards are also available to eligible new hires, subject to Western Digital’s Standard Terms and Conditions for Restricted Stock Unit Awards.
    • We offer a comprehensive package of benefits including paid vacation time; paid sick leave; medical/dental/vision insurance; life, accident and disability insurance; tax-advantaged flexible spending and health savings accounts; employee assistance program; other voluntary benefit programs such as supplemental life and AD&D, legal plan, pet insurance, critical illness, accident and hospital indemnity; tuition reimbursement; transit; the Applause Program, employee stock purchase plan, and the Western Digital Savings 401(k) Plan.
    • Note: No amount of pay is considered to be wages or compensation until such amount is earned, vested, and determinable. The amount and availability of any bonus, commission, benefits, or any other form of compensation and benefits that are allocable to a particular employee remains in the Company's sole discretion unless and until paid and may be modified at the Company’s sole discretion, consistent with the law.
    Privacy Policy