Lead Cloud Identity Architect: Zero Trust & IAM Leader
Koch
We have an exciting opportunity to hire a Lead Cloud Identity Engineer to join our already skilled engineering team. This individual will be a part of a global team that manages authentication and identity tools and procedures for Koch Industries. Working closely with global colleagues, as well as customers, will provide significant global exposure.
Our Team
The Koch Technology Identity team provides modern Identity solutions and services for all Koch businesses. We are responsible for the entire enterprise in designing innovative services, creating, and sharing best practices, and providing support for our services.
This role requires an in-office presence in our Zapopan office
What You Will Do
- Set IAM architecture & standards: Define reusable patterns for SSO/federation, authorization models, privileged access, and workload/machine identity.
- Lead design governance: Run identity design reviews for new applications and major platform changes; approve patterns, manage exceptions, and drive adoption.
- Build authentication & federation: Design and implement SAML2, OAuth2/OIDC, WS-Fed, and FIDO2/passkeys, including adaptive/risk-based auth, conditional access, and MFA.
- Engineer IAM platforms: Operate and enhance enterprise identity services (PingOne / PingOne DaVinci or equivalent orchestration platforms).
- Lead developer for IAM platforms: Serve as lead developer driving hands-on code development to build, extend, and maintain new and existing identity platforms, including custom connectors, APIs, and orchestration flows.
- Design authorization & governance: Build scalable RBAC/ABAC/PBAC models, entitlement catalogs, role engineering, and access request workflows (IGA).
- Automate identity lifecycle: Lead and design end-to-end JML automation integrating HRIS, ITSM, directories, and apps via SCIM and event-driven pipelines.
- Identity as Code: Manage identity configuration/policy using Terraform and CI/CD with testing, version control, and deployment discipline.
- Zero Trust & Detection: Implement least privilege and continuous verification; integrate ITDR-style monitoring, logging, alerting, SLOs, and rapid revocation.
- Incident leadership: Act as escalation for auth outages, federation issues, and credential compromise; lead RCA and post-incident hardening.
- Influence & mentoring: Partner globally with architects, developers, and security; coach engineers through reviews, playbooks, and training.
Who You Are (Basic Qualifications)
- Extensive experience owning identity platforms at scale, with deep protocol-level expertise across SAML, OAuth2/OIDC, SCIM, FIDO2/passkeys, LDAP, and Kerberos.
- Hands-on architecture across Azure Entra ID, AWS IAM, or Google Cloud Identity, including cross-cloud federation and hybrid identity patterns.
- Practical experience designing and building infrastructure across Azure, AWS, or GCP.
- Strong coding skills in Python and/or TypeScript, with API integrations, Git, CI/CD, and automated testing. Delivery of identity configuration as versioned, testable code using Terraform or similar technologies.
- Hands-on experience integrating diverse applications with enterprise governance platforms; design and delivery of JML automation, RBAC/ABAC/PBAC models and access workflows integrating HRIS → IAM → downstream apps via SCIM and event-driven pipelines.
What Will Put You Ahead
- Experience building multi-step user journeys for Workforce, CIAM, and partner ecosystems using platforms such as PingOne DaVinci or Okta Workflows.
- Hands-on development and design experience with SailPoint IdentityNow/IdentityIQ (or equivalent).
- Real-time detection and response to identity-based threats, integrating signals from IdPs, directories, and SIEM/SOAR platforms.
At Koch companies, we are entrepreneurs. This means we openly challenge the status quo, find new ways to create value and get rewarded for our individual contributions. Any compensation range provided for a role is an estimate determined by available market data. The actual amount may be higher or lower than the range provided considering each candidate's knowledge, skills, abilities, and geographic location. If you have questions, please speak to your recruiter about the flexibility and detail of our compensation philosophy.
Who We Are
Koch creates and innovates a wide spectrum of products and services that make life better. Our work spans a vast number of industries across the world, including engineered technology, refining, chemicals and polymers, pulp and paper, glass, electronics and many more. Headquartered in Wichita, Kansas, Koch employs about 120,000 employees across the globe.
At Koch, employees are empowered to do what they do best to make life better. Learn how our business philosophy helps employees unleash their potential while creating value for themselves and the company.
Additionally, everyone has individual work and personal needs. We seek to enable the best work environment that helps you and the business work together to produce superior results.
Atlanta, Georgia | Orlando, Florida | Philadelphia, Pennsylvania | Washington, District of Columbia | Wichita, Kansas
#J-18808-Ljbffr- ...We are currently seeking a Cloud Architect (AWS) to join our team in Guadalajara... ...(multi-account strategy, IAM, Lambda, API Gateway,... ...NTT DATA is a $30 billion trusted global innovator of business... ...connectivity. We are one of the leading providers of digital and AI infrastructure...IAM
- ...Fairygodboss is seeking a Lead Azure Data Engineer based in Mexico to drive architecture and optimization of scalable data platforms... ...strong communication with stakeholders and proficiency in Azure Cloud services and Databricks. Candidates must have over 8 years of IT...SugeridoTrabajo híbrido
- ...someone with deep experience in cloud‑native data engineering (... ...and bring them into a unified, trusted data layer. You’ll partner closely... ..., Lambda, CodeBuild, IAM, etc.). ~ Strong Python and... ...company whose portfolio includes leading brands in technology, shopping...IAM
- ...issues across compute, storage, networking, IAM, and security services. Improve... ...Utilize AWS Budgets, Cost Explorer, and Trusted Advisor for spend analysis and optimization... ...on Cloudability, Turbonomics, ProsperOps Cloud Cost Optimization platforms Containers...IAM
- ...NTT DATA is seeking a Cloud Architect (AWS) to join our team in Guadalajara, Jalisco, Mexico. This role focuses on AWS-native architectures and automating workflows for onboarding and support services. The ideal candidate will have strong AWS expertise and experience...Sugerido
- ...Azure AD, and related identity technologies.... ...design solutions with zero impact to other platforms... ...platforms Lead Active Directory consolidations... ...experience in AD trusts, two‑way and one‑... ...Knowledge of IAM disciplines such as... ..., etc.) and AD trust, forest, domain tree...IAMDesde casaRemotoTurno de nocheFin de semana
- ...NTT DATA is seeking a Cloud Architect (AWS) to join our team in Guadalajara, Jalisco, Mexico. Responsibilities Strong understanding of AWS‑native architectures (multi‑account strategy, IAM, Lambda, API Gateway, EventBridge) and the ability to codify infrastructure...IAM
- ...world succeed and we do so by earning the trust of some of the biggest names in... ...additional challenges. May act as informal team lead and/or coach less experienced team members... ...marital status, sexual orientation, gender identity or expression, disability, veteran status...Horario flexible
- ...is seeking a Kubernetes Engineer in Guadalajara, Jalisco, MX, to lead the design and optimization of container orchestration solutions... ...role involves working cross-functionally to create scalable, cloud-native systems and improve the Continuous Delivery Pipeline using...
- ...Role At A Glance The Payments Lead will own the execution, hardening, and scaling of Yaydoo’s payments operation. The product is... ...receive clear, data‑backed operational input. Leadership has trusted reporting on payments performance, risks, and expansion readiness...
- ...Intermedio. Company Overview Driscoll’s is the global market leader for fresh strawberries, blueberries, raspberries and... ...berry experience with our many supply chain partners. Driscoll’s is the trusted brand for Only the Finest Berries™. #J-18808-Ljbffr...AutónomoTrabajar en la oficina
- ...Make your mark for patients We are looking for a Ecosystem Lead Immunology who has the ability to Lead the activities of UCB's customer-facing commercial roles involved in patient value creation and the pursuit of UCB's organizational goals. Based in Guadalajara...
- ...Client Success Lead Quick description: Client Success Lead, a Delivery Manager with a Computer Science or related degree and 5 to 10 years of experience , capable of managing complex strategic accounts, leading growth on a portfolio of accounts, revenue, and...
- ...creating a world with better blueberries through its collaborative team spread across the globe. POSITION NAME: Applied Research Lead Rubus MX. This position is based in Sayula, Jalisco Mexico. Regular domestic travel. Application requirement: Please...Trabajar en la oficina
- ...Active Directory/Azure AD/Identity skills. This role will... ...the requirement with zero impact to other platforms... ...directory design, Architect Solutions, Integration... ...Strong experience in AD Trusts, two-way Trusts and one... ...Strong Knowledge on IAM disciplines like PIM and...IAMDesde casaRemotoTurno de nocheFin de semana
- ...Senior Associate & Team Lead Opportunities Are you an experienced accounting or taxation professional with hands-on QuickBooks experience... ...directly with US CPA firms. Familiarity with Xero and other cloud-based accounting platforms. *These are full-time on-site...Tiempo completo
- A leading manufacturing partner located in Jalisco is seeking an Integration Processes Superintendent to oversee manual assembly and integration processes. This role demands a strong background in electronics or automotive fields and proven people management experience,...
- ...Molex is seeking a Supplier Quality Lead in El Salto, Mexico, to oversee supplier quality activities for their CMS business. This role focuses on ensuring robust quality planning, supplier development, and seamless production launches while collaborating with global quality...
- ...Infosys Limited is seeking a Lead Azure Data Engineer to drive the architecture and optimization of data platforms on Azure. This role... ...will possess extensive experience in Python, SQL, and Azure cloud services. The position operates on a hybrid model, covering multiple...Trabajo híbrido
- ...Responsibilities Deliver, develop, and deploy modular cloud-based systems Develop and maintain cloud solutions according to best... ...environments. ~ The chance to work on innovative projects alongside leading international industry partners. ~ A dynamic, collaborative,...Remoto
- A leading tech company located in Mexico seeks an experienced data engineer with over 8 years in developing enterprise big data solutions. This role involves building complex data ingestion and transformation pipelines primarily using the Microsoft Azure platform. The successful...Remoto
- ...requerimientos del negocio y diseñar soluciones IAM efectivas (provisión/desprovisión de... ..., herramientas y tecnologías IAM (identity providers, plataformas de gestión de acceso... ...Implementar herramientas de gobierno de identidades para automatizar certificación de...IAMPráctica
- ...223,000 people in 60 countries, delivering industry-leading capabilities centered around digital, engineering, cloud and AI, powered by a broad portfolio of technology... .... Skills: ~ AWS (Lamda, Terraform, S3, IAM, Dynamo DB, RDS/Aurora, API Gateway), GoLang...IAMRemoto
- ...We rank among the leaders in areas like... ...looking for a Senior Cloud Security Engineer... .... You will architect federated IAM models, build automated... ...operates under Zero Trust principles and strict... ...manage complex Identity and Access... ...enterprises and leading product brands....IAMTiempo completoRemotoHorario flexible
- ...Lead Azure Data Engineer (Ingeniero líder de Datos Azure) Location: Mexico (Mexico City... ...fixes. Work extensively with Azure Cloud Services, Azure Data Factory, Databricks,... ...without regard to race, color, sex, gender identity, sexual orientation, religious practices...Trabajo híbridoHorario flexible
- ...sentence AWS DevOps Cloud Engineer works for support... ...You will manage and lead root cause analysis, lessons... ...AWS administration (IAM, VPN, securities,... ...storage and protecting identities. Strong Linux administration... ...for the global market leader in its field. We are...IAMTrabajo híbridoTrabajo por turnosFin de semana
- ...Lead Azure Data Engineer (Ingeniero líder de Datos Azure) Location: Mexico (Mexico City, Guadalajara, Monterrey) - Hybrid as per Infosys... ..., and implement necessary fixes. Work extensively with Azure Cloud Services, Azure Data Factory, Databricks, Python, and Spark,...Trabajo híbridoHorario flexible
- DiDi Global is seeking a Business Development Lead in Guadalajara to manage a team of commercial leaders in the food and beverage industry. This role involves leading a team to exceed performance targets, developing strong client relationships, and co-developing commercial...
- ...least 4 years of experience in mobile application development, proficiency in either iOS or Android technologies, and the ability to lead development teams. The role offers meaningful projects and access to continuous learning through internal academies. Capgemini...Remoto
- ...clients in the banking, cards & payments sectors. The role includes managing capture channels, performing business analysis and leading communication with stakeholders. We offer a competitive salary, benefits package, and opportunities for career growth with ongoing...
¿Desea recibir más vacantes?
Suscríbase y reciba vacantes similares a Lead Cloud Identity Architect: Zero Trust & IAM Leader. ¡Sea el primero en aplicar!
- production lead Estado de Jalisco
- jefe de equipo de ventas Estado de Jalisco
- lead Estado de Jalisco
- lider de cajas Estado de Jalisco
- lider equipo Estado de Jalisco
- lider de procesos Estado de Jalisco
- lider grupo Estado de Jalisco
- lider area Estado de Jalisco
- farmacia lider Estado de Jalisco
- jefe de equipo Estado de Jalisco


