Responsibilities The Identity and Access Management (IAM) Architect will serve as technical expert responsible for architecture, design and solutioning for application and enterprise platforms within the Identity and Access Management areas. The IAM Architect is a technical role focused on the platforms, services, and architecture, supporting the IAM products. The architect works across cross functional Development, Engineering, Enterprise Architecture, business and Operations teams to develop, deploy and administer IAM capabilities for PepsiCo systems. Accountabilities Drive technical solutions and architecture for IAM solutions Responsible for evaluations, roadmaps, architectures of highly scalable Identity, authentication, Directory, privileged access, Federation and Single Sign On services involving enterprise, B2B and B2C identity requirements. Work closely with design and implementation engineers Partner with technology and security teams across PepsiCo to provide technical expertise, design guidance and drive best practices. Catalog risk embedded in legacy implementations and help define the path to industry leading secure designs and services Create and deliver effective presentations that inform PepsiCo Leadership teams to ultimately drive business relevant information security decisions. Establish appropriate stakeholder relationships that facilitate improvements in the architects domain. Manage Architecture/ POC for complex IAM solutions Gather requirements and guide / recommend the right integration pattern for applications needing services, taking into consideration the impact to the environment and standards set in PepsiCo Drive technical integrations across IAM and ensure the right architecture/design is implemented in enabling the business partnering across appropriate architects and leads Specifying guidelines and supporting processes for integration, administration, and maintenance Developing general purpose services, usable by a variety of authorized systems and applications Interaction with application teams to gather requirements, design and deliver solution to integrate with PepsiCo IAM products Recommend improvements, corrections, remediation, or requirements for associated projects Create and maintain documentation for appropriate IAM related activities and metric reporting Advocate secure computing practices and procedures and communicate Information Security best practices throughout the company. Ability to troubleshoot and resolve issues quickly identifying the best option in an emergency situation Ability to work with different teams and interact with technical and business folks across the Enterprise COVID-19 vaccination is a condition of employment for this role. Please note that all such company vaccine requirements provide the opportunity to request an approved accommodation or exemption under applicable law#LI-USA Qualifications University or College education in Computer Science or related field such as Cyber Security 9+ years of relevant IAM technical leadership experience 12+ years of overall IT experience Essential Skills Bachelors or Masters in computer science, information security, or non-computer related degree with equivalent work experience. 6+ years experience in an identity architecture role 6+ years of experience with Identity Management solutions such as CA idM, sailpoint 6+ years of experience with Access Management solutions such as CA SiteMinder, Okta 3+ years experience working with PKI 7+ years of information security experience with a focus in IAM 3+ years of experience with Privileged Account Management solutions such as CyberArk 6+ years of experience with troubleshooting issues with Identity Management solutions, and n-tier Web applications 5+ years experience with SOA architecture 3+ years experience with Directory Server; preferably development experience with LDAP via JNDI preferred 7+ years experience designing solutions in IAM technical role(s) for large enterprise. Hands on experience with modern and enterprise authentication patterns (OpenID Connect (OIDC), OAuth, SAML, WS Fed, Kerberos) and platforms, preferably Azure AD, Okta and SiteMinder. Advanced experience in enterprise directory architecture and design including significant knowledge of Active Directory and Azure Active Directory. In-depth experience with defining secure and hardened information technology solutions including IAM services. Exceptional communication and interpersonal skills; including negotiation, facilitation, and consensus building skills; ability to influence and persuade, without direct control. High degree of flexibility and ability to work with employees at all levels of the organization with diverse backgrounds. Strong desire to drive change. Ability to balance the long-term big picture and short-term implications of decisions. An innovative technical mindset with a focus on architecture, strategy, and design. Makes data informed decisions, finds and owns problems to closure Technical knowledge of and experience with all of the below are required Java & .Net Apache, Tomcat, WebSphere, Jboss Oracle, SQL Server, and DB2 Windows, Unix, Linux, OAuth, OIDC, SAML, SCIM AWS IAM, Azure AD, Okta, Workspace one Deep understanding of OAuth2 and OIDC. Working knowledge of provisioning protocols, such as SCIM 5+ years of experience with web application development using J2EE components such as JSP, Servlet, Web Service, JDBC, JNDI, etc., and experience with web application deployment on BEA WebLogic platform; in addition to, performance tuning, configuration, support, and troubleshooting web applications on a WebLogic platform 5+ years of working experience with building and using shell and Pearl scripts Advanced understanding of user life cycle management, access certifications and role-based access control Soft Skills Ability to clearly communicate thoughts and ideas in both oral and written formats in technical and non technical forums Self-motivated and ability to prioritize and handle tasks with some supervision or questions in a fast paced environment. Proven track record of achieving results through collaboration and teamwork. Intermediate level proficiency with Microsoft Word, Excel, and Outlook. Foster company success through a professional appearance, being courteous to customers and all PepsiCo associates and by having a positive attitude. #LI-USA","location_name":"TX-Plano-5600-Office-TX240","street_address":"5600 Headquarters Dr","city":"Plano","state":"Texas