Security Architect (Canada)

Security Architect (Canada)

12 Sep
|
Arkhya Tech.
|
Canada

12 Sep

Arkhya Tech.

Canada

Role: Security Architect (Saviynt, Delinea, GCP)

Location: Remote - Canada

Contract

Role Purpose

Own the end-to-end solution architecture and technical design for a GCP identity governance program using Saviynt and Delinea. Translate business, security, audit, and compliance requirements into scalable architecture, integration patterns, governance models, and implementation guidance.

Project Context

This role supports an identity governance program covering the following solution areas:

- GCP human identity lifecycle automation covering Joiner, Mover, and Leaver processes.
- Service account lifecycle governance including request, approval, provisioning, ownership, certification, and decommissioning.
- Onboarding of GCP projects, folders, groups, roles, memberships, IAM bindings, and entitlement inventory into Saviynt.
- Discovery and classification of non-human identities, including service, workload, automation, API, machine, and AI-agent identities.
- Access governance, ownership, certifications, privileged access reviews, audit evidence, dashboards, and compliance reporting.
- Time-bound GCP group membership controls and custom GCP role lifecycle governance.
- Saviynt-Delinea integration for credential governance and Delinea-based GCP discovery.
- Testing, deployment readiness, operational documentation, and knowledge transfer.

Key Responsibilities
- Lead current-state assessment and architecture discovery workshops across GCP, Saviynt, Delinea, and connected enterprise systems.
- Define target-state architecture for human and non-human identity lifecycle governance, service account governance, access certifications, and credential controls.




- Design integration patterns for Saviynt, GCP IAM, Delinea, authoritative sources, ticketing or approval systems, and downstream applications.
- Define entitlement, ownership, role, service account, NHI taxonomy, and lifecycle models aligned with least privilege and auditability.
- Create solution design documents, architecture diagrams, data flows, interface specifications, security controls, and non-functional requirements.
- Provide design oversight for time-bound group membership, custom GCP role lifecycle, access reviews, and privileged credential governance.
- Review configurations and customizations for scalability, maintainability, security, and alignment with product best practices.
- Facilitate architecture reviews, document decisions and risks, and support customer security, audit, and compliance approvals.
- Guide SIT, security validation, UAT support, production readiness, rollback planning, post-go-live validation, and knowledge transfer.
- Mentor engineering teams and resolve complex cross-platform technical issues.

Required Technical and Professional Skills
- Saviynt Enterprise Identity Cloud or equivalent IGA architecture
- GCP IAM, projects, folders, groups, roles, service accounts, and IAM bindings
- Delinea or comparable PAM and credential-vaulting platforms




- Identity lifecycle, access governance, RBAC, least privilege, certifications, and SoD concepts
- API, connector, workflow, data-model, and cloud security architecture
- Architecture documentation, stakeholder workshops, risk management, and design governance

Education and Experience
- Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related discipline.
- Typically 10+ years in IAM or Security engineering, including 3+ years in solution architecture or technical leadership.
- Relevant Saviynt, GCP, Security, or PAM certifications.

Key Deliverables
- Approved design or configuration artifacts appropriate to the role
- Configured and tested Saviynt, GCP, and Delinea capabilities
- Traceable test evidence, defect resolution inputs, and deployment artifacts
- Operational documentation, runbooks, and knowledge-transfer materials

Collaboration Works closely with the Solution Architect, Project Manager, security and compliance stakeholders, customer platform teams, QA, operations, and product or vendor support teams. Customer accountability and approval remain governed by the agreed statement of duties and project governance model.

Preferred Attributes

- Ownership mindset with solid attention to security, quality, and documentation
- Ability to communicate complex technical topics clearly to technical and non-technical stakeholders
- Structured problem-solving and disciplined management of risks, assumptions, and dependencies
- Comfort working in cross-functional, customer-facing, and globally distributed teams

📌 Security Architect (Canada)
🏢 Arkhya Tech.
📍 Canada

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security architect (canada) / canada

Subscribe to this job alert:

Get the latest job offers by email for: security architect (canada) / canada