Lead Cloud Identity Architect: Zero Trust & IAM Leader
Koch
We have an exciting opportunity to hire a Lead Cloud Identity Engineer to join our already skilled engineering team. This individual will be a part of a global team that manages authentication and identity tools and procedures for Koch Industries. Working closely with global colleagues, as well as customers, will provide significant global exposure.
Our Team
The Koch Technology Identity team provides modern Identity solutions and services for all Koch businesses. We are responsible for the entire enterprise in designing innovative services, creating, and sharing best practices, and providing support for our services.
This role requires an in-office presence in our Zapopan office
What You Will Do
- Set IAM architecture & standards: Define reusable patterns for SSO/federation, authorization models, privileged access, and workload/machine identity.
- Lead design governance: Run identity design reviews for new applications and major platform changes; approve patterns, manage exceptions, and drive adoption.
- Build authentication & federation: Design and implement SAML2, OAuth2/OIDC, WS-Fed, and FIDO2/passkeys, including adaptive/risk-based auth, conditional access, and MFA.
- Engineer IAM platforms: Operate and enhance enterprise identity services (PingOne / PingOne DaVinci or equivalent orchestration platforms).
- Lead developer for IAM platforms: Serve as lead developer driving hands-on code development to build, extend, and maintain new and existing identity platforms, including custom connectors, APIs, and orchestration flows.
- Design authorization & governance: Build scalable RBAC/ABAC/PBAC models, entitlement catalogs, role engineering, and access request workflows (IGA).
- Automate identity lifecycle: Lead and design end-to-end JML automation integrating HRIS, ITSM, directories, and apps via SCIM and event-driven pipelines.
- Identity as Code: Manage identity configuration/policy using Terraform and CI/CD with testing, version control, and deployment discipline.
- Zero Trust & Detection: Implement least privilege and continuous verification; integrate ITDR-style monitoring, logging, alerting, SLOs, and rapid revocation.
- Incident leadership: Act as escalation for auth outages, federation issues, and credential compromise; lead RCA and post-incident hardening.
- Influence & mentoring: Partner globally with architects, developers, and security; coach engineers through reviews, playbooks, and training.
Who You Are (Basic Qualifications)
- Extensive experience owning identity platforms at scale, with deep protocol-level expertise across SAML, OAuth2/OIDC, SCIM, FIDO2/passkeys, LDAP, and Kerberos.
- Hands-on architecture across Azure Entra ID, AWS IAM, or Google Cloud Identity, including cross-cloud federation and hybrid identity patterns.
- Practical experience designing and building infrastructure across Azure, AWS, or GCP.
- Strong coding skills in Python and/or TypeScript, with API integrations, Git, CI/CD, and automated testing. Delivery of identity configuration as versioned, testable code using Terraform or similar technologies.
- Hands-on experience integrating diverse applications with enterprise governance platforms; design and delivery of JML automation, RBAC/ABAC/PBAC models and access workflows integrating HRIS → IAM → downstream apps via SCIM and event-driven pipelines.
What Will Put You Ahead
- Experience building multi-step user journeys for Workforce, CIAM, and partner ecosystems using platforms such as PingOne DaVinci or Okta Workflows.
- Hands-on development and design experience with SailPoint IdentityNow/IdentityIQ (or equivalent).
- Real-time detection and response to identity-based threats, integrating signals from IdPs, directories, and SIEM/SOAR platforms.
At Koch companies, we are entrepreneurs. This means we openly challenge the status quo, find new ways to create value and get rewarded for our individual contributions. Any compensation range provided for a role is an estimate determined by available market data. The actual amount may be higher or lower than the range provided considering each candidate's knowledge, skills, abilities, and geographic location. If you have questions, please speak to your recruiter about the flexibility and detail of our compensation philosophy.
Who We Are
Koch creates and innovates a wide spectrum of products and services that make life better. Our work spans a vast number of industries across the world, including engineered technology, refining, chemicals and polymers, pulp and paper, glass, electronics and many more. Headquartered in Wichita, Kansas, Koch employs about 120,000 employees across the globe.
At Koch, employees are empowered to do what they do best to make life better. Learn how our business philosophy helps employees unleash their potential while creating value for themselves and the company.
Additionally, everyone has individual work and personal needs. We seek to enable the best work environment that helps you and the business work together to produce superior results.
Atlanta, Georgia | Orlando, Florida | Philadelphia, Pennsylvania | Washington, District of Columbia | Wichita, Kansas
#J-18808-Ljbffr- ...We are currently seeking a Cloud Architect (AWS) to join our team in Guadalajara... ...(multi-account strategy, IAM, Lambda, API Gateway,... ...NTT DATA is a $30 billion trusted global innovator of business... ...connectivity. We are one of the leading providers of digital and AI infrastructure...IAM
- ...NTT DATA is seeking a Cloud Architect (AWS) to join our team in Guadalajara, Jalisco, Mexico. This role focuses on AWS-native architectures and automating workflows for onboarding and support services. The ideal candidate will have strong AWS expertise and experience...Sugerido
- ...Azure AD, and related identity technologies.... ...design solutions with zero impact to other platforms... ...platforms Lead Active Directory consolidations... ...experience in AD trusts, two‑way and one‑... ...Knowledge of IAM disciplines such as... ..., etc.) and AD trust, forest, domain tree...IAMDesde casaRemotoTurno de nocheFin de semana
- ...Link-Worldwide is seeking a Compliance and IAM Risk Analyst located in Mexico, Jalisco. The successful candidate will analyze data, identify IAM-related risks, and collaborate with vendors and senior management to align IT strategies. Key responsibilities include conducting...IAM
- ...Link-Worldwide is seeking a skilled IAM professional responsible for operational stability... ...role includes managing incident resolution, leading architecture planning, and collaborating with teams to ensure seamless identity services. The ideal candidate will have extensive...IAM
- ...NTT DATA is seeking a Cloud Architect (AWS) to join our team in Guadalajara, Jalisco, Mexico. Responsibilities Strong understanding of AWS‑native architectures (multi‑account strategy, IAM, Lambda, API Gateway, EventBridge) and the ability to codify infrastructure...IAM
- ...someone with deep experience in cloud‑native data engineering (... ...and bring them into a unified, trusted data layer. You’ll partner closely... ..., Lambda, CodeBuild, IAM, etc.). ~ Strong Python and... ...company whose portfolio includes leading brands in technology, shopping...IAM
- ...DevOps platforms and CI/CD pipelines, primarily using GitHub Actions, Terraform, and AWS. Candidates should have extensive experience in cloud deployment, reliability, and security practices. The ideal candidate will collaborate with cross-functional teams, drive...
- ...We are looking for a Lead/Senior Platform Engineer with strong experience in cloud infrastructure. This is not a traditional DevOps or admin role — we're seeking someone... ...cloud infrastructure experience with AWS (EC2, IAM, S3, Lambda, CloudWatch, etc.) Proven software...IAMContratoTrabajar en la oficina
- ...Role At A Glance The Payments Lead will own the execution, hardening, and scaling of Yaydoo’s payments operation. The product is... ...receive clear, data‑backed operational input. Leadership has trusted reporting on payments performance, risks, and expansion readiness...
- ...Active Directory/Azure AD/Identity skills. This role will... ...the requirement with zero impact to other platforms... ...directory design, Architect Solutions, Integration... ...Strong experience in AD Trusts, two-way Trusts and one... ...Strong Knowledge on IAM disciplines like PIM and...IAMDesde casaRemotoTurno de nocheFin de semana
- ...Link-Worldwide is seeking a remote cloud security specialist to deploy security models, define strategic plans, and design software architectures. You will need a Bachelor’s degree in a related engineering field and an AWS Security Specialty Certification. The role...Remoto
- ...Prior experience managing or leading a delivery team is required About the Role Lead Inviso's Guadalajara Solution Assessment... ...Microsoft end-customers across cloud, security, and AI... ...TCO) and security frameworks (Zero Trust, CIS) Exposure to the Cloud Adoption...Trabajar en la oficinaTrabajo híbrido
- ...Reliability Engineer to maintain operational resilience across multi-cloud environments including Azure, AWS, and GCP. This role involves... ...of experience, particularly in multi-cloud defense and federated IAM. Perks include professional growth opportunities and competitive...IAM
- ...across 17+ industries. We rank among the leaders in areas like application development... ...and 24/7 stability across a multi-cloud security program spanning Azure, AWS,... ...Wiz to secure cloud workloads under Zero Trust and federated IAM principles. The role requires deep compliance...IAMTiempo completoTrabajar en la oficinaRemoto
- ...Lead Data Steward – Insulet Global Business Services... .... ~ Experience with cloud‑based people analytics... ...recommendations to senior leaders. ~ Excellent written,... .... ~ Ability to build trusted relationships with... ...sexual orientation, gender identity, national origin,...InterinoTrabajar en la oficinaTrabajo híbrido
- ...Responsibilities Deliver, develop, and deploy modular cloud-based systems Develop and maintain cloud solutions according to best... ...environments. ~ The chance to work on innovative projects alongside leading international industry partners. ~ A dynamic, collaborative,...Remoto
- ...requires expertise in software development, particularly in Java and cloud technologies like AWS. Candidates should possess a Bachelor’s or... ...skills in both Spanish and English, along with the ability to lead projects, are essential for success in this position. #J-18808...
- A global renewable energy firm in Mexico seeks a Senior Advisor, OT Governance and Compliance to develop and lead OT governance strategies. The ideal candidate will manage cybersecurity risks, prepare executive reports, and ensure compliance with regulatory requirements...
- ...Link-Worldwide in Mexico is hiring for the role of Invoice to Pay Lead Americas. This working supervisor will assist in processing invoices and oversee business processes for accounts payable transactions. The ideal candidate will have a Bachelor's degree in relevant...Remoto
- ...Security Advisor (BISA) to enhance security management within the IT organization. The successful candidate will be responsible for leading security governance and managing IT-related risk management processes. Applicants should possess a degree in Computer Science or...
- A leading manufacturing firm located in Mexico is seeking an experienced Project Manager Onboarding Lead to ensure efficient onboarding of new programs and manage related projects. Responsibilities include overseeing documentation, tracking onboarding metrics, and fostering...
- ...Link-Worldwide is seeking a Regional Change, Communications and Training Lead for the Axial Programme in Mexico. This role plays a pivotal part in delivering effective change management during a significant ERP transformation. Responsibilities include developing change...
- ...Link-Worldwide is looking for a Process Mining Senior Manager to join the Global Business Services team in Guadalajara. You will lead Process Mining projects and work collaboratively with business partners to enhance operational efficiencies. The ideal candidate has...RemotoTrabajo híbrido
- DiDi Global is seeking a Business Development Lead in Guadalajara to manage a team of commercial leaders in the food and beverage industry. This role involves leading a team to exceed performance targets, developing strong client relationships, and co-developing commercial...
- ...Hewlett Packard Enterprise is looking for a Salesforce Marketing Cloud Regional Lead in Tlaquepaque, Mexico. This role focuses on driving marketing automation and CRM campaign strategies while collaborating with cross-functional teams to enhance customer experiences....
- ...Jade Global, Inc in Mexico is seeking a techno-functional lead for Salesforce implementations. The role involves gathering requirements... .... Ideal candidates will possess strong expertise in Sales Cloud, core CRM capabilities, and have a track record of mentoring junior...
- ...Link-Worldwide is hiring a MES Techno-Functional Consultant (Lead II - Enterprise Solutions) based in Guadalajara. The ideal candidate will have over 5 years of experience in MES solutioning, including configuring machines and understanding analytics requirements....
- ...Jade Global, Inc. is seeking a Salesforce Techno Functional Lead to act as a techno-functional lead for Salesforce implementations and... .... The ideal candidate will have strong experience with Sales Cloud, core CRM capabilities, and will drive delivery excellence...
- ...Link-Worldwide in Guadalajara, Jalisco is hiring a Lead Software Engineer - Full Stack. The role requires strong Java development... ...should be familiar with responsive design, RESTful APIs, JSON, and cloud-native technologies. This full-time position is for a mid-...Tiempo completo
¿Desea recibir más vacantes?
Suscríbase y reciba vacantes similares a Lead Cloud Identity Architect: Zero Trust & IAM Leader. ¡Sea el primero en aplicar!
- líder de capacitación Centro (municipio)
- lider grupo Centro (municipio)
- team leader Centro (municipio)
- lider tiendas oxxo Centro (municipio)
- líder de almacén Centro (municipio)
- lider cobranza Centro (municipio)
- lider visual Centro (municipio)
- lider Centro (municipio)
- jefe de equipo de ventas Centro (municipio)
- supervisor de equipo Centro (municipio)

