Do you want your voice heard and your actions to count?
Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world’s leading financial groups. Across the globe, we’re 120,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.
With a vision to be the world’s most trusted financial group, it’s part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.
Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.
The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.Job Summary:
MUFG is seeking a highly motivated Customer Identity & Access Management (CIAM) Engineer as part of the Engineering team to design and implement cutting-edge technology to improve security posture. The person will work with the engineering team to drive the engineering standards and implementation across the global deployment.
Responsibilities:
Design and implement various engineering solutions by working with other stakeholders.
Leverage industry trends and market research to adopt the best practices to enhance the CIAM platform.
Experience with building and managing global infrastructure to support high availability and high performance
Define standard patterns to integrate different systems into CIAM platforms such as OIDC, SAML, OAuth, ID Gateway, SCIM and API Access
Working knowledge of user store data design with RBAC/ABAC model
A good understanding of Authentication, MFA, Access Management, outbound provisioning and self-service capabilities using ID verification
Ability to develop different scripts and products RegEx for configuring policy to implement the right solution.
Generate different types of reports
Identify opportunities to enhance the current baseline processes and configuration
Produce engineering, integration and process related documentation.
Manage vendor relationships to drive roadmap, solution design, implementation and troubleshooting
Work with key stakeholders of the services to ensure the expectations are meeting the requirements
Knowledge of various applications and systems that include security products, middleware, Clouds (SaaS, PaaS and IaaS), Containers to come up with the right approach of CIAM integration
Ability to understand security risks and controls, to analyze various methods of controlling information security problems, determine the strengths and weaknesses of each method and implement the best cost-justified solution
Qualifications:
Minimum of 7+ years of experience in technology with emphasis on cyber security.
At least 3+ years of experience in CIAM products such as PIngIdentity, Okta, or TransmitSecurity
At least 5+ years of experience in CIAM technology such as Authentication, Multi Factor Authentication, SSO, SAML, OIDC and OAuth
At least 2+ years of experience with LDAP, Active Directory and other user stores
Experience with scripting is highly preferred like Python or Ansible
Experience in creating trending, metrics, and management reports
Knowledge and experience operating in a hybrid-cloud environment.
Knowledge of modern security principles and their practical applications.
Knowledge and experience in AWS or Azure
Knowledge and experience with programming language to automate tasks such as Python or PowerShell
Preferred:
Certified Information Systems Security Professional (CISSP)
Certified Information Systems Manager (CISM)
Certified Information System Auditor (CISA)
Certified Ethical Hacker (CEH)
Education:
Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field, or relevant industry certifications. Equivalent work experience is equally preferable.
The typical base pay range for this role is between $110K to 140K depending on job-related knowledge, skills, experience, and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.
We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual’s associates or relatives that is protected under applicable federal, state, or local law.
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
MUFG seeks an Assistant Vice President in Third-Party Management to oversee vendor lifecycle, perform risk assessments, and ensure regulatory compliance across MUFG Americas.
Provide L2 compute hardware support for a major Spring, TX IT firm, troubleshooting servers, networking, and storage connectivity to keep multi-node clusters and production systems running.
Astor & Sanders seeks a Senior Network Engineer to design, operate, and secure data center and enterprise networks onsite in Portsmouth, VA, requiring strong Cisco experience and an active Secret clearance.
Guidehealth is hiring a Senior Technical Implementation Specialist to manage healthcare data integrations, onboarding, and go-live activities for clinical and claims systems in support of AI-driven care programs.
Alabama State University's Office of Technology Services seeks an IT Support & Digital Services Coordinator to manage campus ID services and digital workflow platforms while providing Tier I/II technical support to the university community.
FIS is looking for a proactive Business Systems Analyst II to own ITSM processes, facilitate CAB meetings, and drive reporting, documentation and continual service improvements within a fast-paced fintech team.
Lead and enhance Gilead's cybersecurity operations by managing detection, incident response, MSP support, and continuous improvement of security capabilities.
Lead the architecture and delivery of SAP IBP and APO planning solutions at NVIDIA to drive advanced supply-chain optimization and operational excellence.
Senior IT Security A&A specialist needed to lead RMF-based security assessments and authorization activities for federal systems in a hybrid Suitland, MD role.
Vanguard is hiring an Administrative Associate to support Cloud Security Engineering within GR&S, offering hands-on administrative experience in a hybrid, mission-driven environment in the Dallas/Ft. Worth area.
Support Sandisk's CRM operations as a Salesforce Data Administrator responsible for data integrity, user support, reporting, and process improvements across Salesforce.
Geeks on Site is expanding its network of on-call IT field technicians in the Amarillo area to deliver hands-on PC, Mac, printer and network support as 1099 contractors.
Adtalem Global Education is hiring a Systems Engineer in Chicago to automate, monitor, and support enterprise applications (including Ellucian Banner) and infrastructure in a hybrid work model.
Astor & Sanders is hiring an experienced Wireless Network Engineer to architect, configure, and secure enterprise Cisco wired and wireless networks for a government-focused, onsite role in Portsmouth, VA.