MUFGUB

IAM Security, Solution & Governance Architect - Vice President

Tampa, FL Full time

Do you want your voice heard and your actions to count?

Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.

With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.

Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.

The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.

Job Overview:

MUFG is seeking a highly motivated IAM Solution & Governance Architect as part of the Program Governance team to drive the IAM technical program with cutting-edge technology to improve security posture. This is a senior role that drives the IAM requirements, standards and governance across the global implementation.

Responsibilities:

  • An IAM Security & Solution expert in various technologies such as Authentication, MFA, Authorization, RBAC, ABAC, ID Governance, Provisioning, Privileged Access Management, Secret Management, etc.

  • Manage MUFG business relationships and gather IAM requirements across the different Business Units.

  • Publish & manage IAM Security Standards and Guidelines with the alignment of NIST CSF, CRI and NIST 800-63-4, ISO frameworks

  • Publish and manage IAM technical capabilities and features to the IAM Security Standards.

  • Work with key stakeholders of the services to ensure the expectations are meeting the requirements

  • Manage the close relationship with IAM Architecture and Engineering to publish the 1-3 years of the IAM roadmap

  • Manage finances and budgets for the IAM programs & projects

  • Review of IAM solutions

  • Manage application onboarding and integration efforts by working with various IAM teams

  • Publish many documentations using Confluence, Spreadsheets, word, Visio, etc.

  • Create presentations for different stakeholders including senior leadership

  • Identify opportunities to enhance the current baseline processes and configuration

  • Generate different types of reports, usage, performance, KPI, KRI, etc.

  • Knowledge of various applications and systems that include security products, middleware, Clouds (SaaS, PaaS and IaaS), Containers, etc. to come up with the right approach of IAM integration

  • Ability to understand security risks and controls, to analyze various methods of controlling information security problems, determine the strengths and weaknesses of each method and implement the best cost-justified solution

  • Ability to provide technical directions to other peer staff members, and to train new staff on the security team

Qualifications:

  • At least 12+ years of experience in IAM technology & Security

  • In depth knowledge of all IAM domains & technologies

    • Authentication, MFA, Authorization, Identity Governance, Provisioning, RBAC, ABAC, Risk based Access Control, Privileged Access Management (PAM), Secret Management, SAML, OIDC, OAuth, API Access, Encryption, etc.

  • Knowledge of same of different IAM products

    • Entra ID, AWS IAM, Key vault, CyberARK, PingIdentity, Okta, SailPoint, etc.

  • A security expert with a good understanding of NIST, CRI, ISO and other IAM and Security frameworks

  • Must be able map IAM security requirements to IAM technology solution.

  • Act as an IAM Security Solution Architect

  • Experience in creating trending, metrics, and management reports. PowerBI or other reporting tool experience is a plus.

  • Experience working in complex and large-scale environments.

  • Knowledge and experience operating in a hybrid-cloud environment.

  • Knowledge and experience in AWS & Azure

Education:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or relevant industry certifications. Equivalent work experience is equally preferable.

Preferred Certifications: Are these really preferred? It’s ok if they just wanted to ask if we are on track with the correct Certs

  • Certified Information Systems Security Professional (CISSP)

  • Certified Information Systems Manager (CISM)

  • Certified Information System Auditor (CISA)

  • Certified Ethical Hacker (CEH)

Other Qualifications: 

  • As per MUFG’s Return to Office policy, a candidate must work onsite for 4 days and 1 day remotely out of either Jersey City, NJ, Tampa, FL, or Tempe, AZ office.

  • The typical base pay range for this role is between $145K - $185K depending on job-related knowledge, skills, experience, and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.

MUFG Benefits Summary

We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.

The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.

We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.