2025.11.20.
Description
• Architect, deploy, and maintain IAM solutions, including SSO, MFA, directory services, and privileged access management in an Azure infrastructure.
• Lead process design for identity lifecycle management, including automation of onboarding/offboarding, access provisioning, and role-based governance.
• Provide 3rd level operational support for the global organizational cloud and virtualization infrastructure and services while ensuring compliance to ITIL and other applicable Frameworks. Work cross-functionally to manage operational incidents and service requests.
• Contribute to the design and deployment of cloud and virtualization solutions by advising on the impact of planned changes, assisting operations in the roll-out and post-implementation.
• Establish and maintain cloud workload management processes, including maintaining on-premises virtualized and cloud-native components inventory and related documentation, layouts, and technical specifications.
• Ensure service availability and quality by continuous monitoring of cloud platforms’ performance metrics and overall health.
• Perform regular security audits and vulnerability assessment of cloud and on-premises infrastructure, adequately develop and implement risk mitigation plans for the findings. Confidential - Not Protected
• Participate in preparing and executing penetration testing activities, taking part in risk assessment,
identifying and evaluating risk/threat factors, and implementing/reviewing/updating existing control and compliance mechanisms.
• Maintain accurate technical documentation related to systems in scope, transfer knowledge to colleagues, ensure sufficient documentation is available for tasks assigned to 1st or 2nd-level support staff.
• Manage, maintain, and secure Azure infrastructure components, including identity services, role-based access controls, and networking as they relate to IAM.
• Lead process design for resource lifecycle management including cost-saving implementation best practices.
• Collaborate across cross-functional stakeholder groups—including HR, IT, security, and business units— to understand business objectives and develop IAM solutions that align with them.
• Champion integration of IAM systems with broader enterprise infrastructure, ensuring secure, efficient, and auditable access models.
• Resolve access-related conflicts through strong analytical, technical, and interpersonal skills.
• Implement validation techniques to audit and ensure compliance with security policies and regulatory requirements.
• Support and scale automation strategies for identity governance tasks, leveraging scripting or tooling to improve efficiency and consistency.
• Guide and mentor IAM peers and junior engineers, promoting knowledge sharing and best practices.
• Ensure proper daily operation of our Azure and PaaS infrastructure.
• Drive process optimization through automation and system integration, enhancing both user experience and operational efficiency.
• At the direction of lead architects (Enterprise Architect, Security Architect, Interface Architect) develop and implement technical efforts to design, build, deploy, integrate, and maintain secure cloud-based systems and services across all IFRC locations offices and data centres that contribute to the IFRC achieving its objectives.
• Develop, implement, and ensure quality and control of processes for accommodating near and long-term demands for growths and improving operating efficiencies of the global cloud and virtualization infrastructures in accordance with the applicable strategic considerations.
• Research, analyse and plan the establishment of innovative technologies and present suggestions for upgrades to improve the existing or replace the legacy physical and out-of-lifecycle virtual workloads and technologies.
• Support the Enterprise Architecture function with advising on architecture strategies, policies, and methodologies related to the global cloud, virtualization, and other information systems. Lead to the implementation of such deliverables.
• Participate in analysing and evaluating the global cloud, virtualization, and security systems, and related processes to ensure that the technical objectives are consistent with the long-term IFRC strategy.
• Assure that the most feasible and practical means to accomplish projects' objectives are identified and that any alternatives are defined for management evaluation.
• Develop project and operational support requirements and processes by identifying the scope and extent of effort required by all parties involved in the project design and implementation. Confidential - Not Protected
• Participate in the scoping, advise on the design, and lead the execution phases of the various IT projects affecting the overall security, availability, and reliability of cloud-native and other virtualized systems and services. Proactively identify future capacity requirements, define, and implement appropriate performance thresholds per the Tiering-levels definition for project-driven solutions prior to the solution acceptance for operations handover.
• Act as a subject matter expert in end-to-end tender and contract management and market assessment processes to ensure cloud infrastructure and security components and service providers are selected based on a comprehensive analysis of functional and non-functional requirements of business drives