Back to job search
Rivago Infotech Inc logo
Rivago Infotech IncVerified Job Source

Security Architect

  • Canada
  • On-site
  • Posted Sep 18, 2026
  • 1 position

Opens an external site

Sign in to save this job
Employment type
Contract
Experience level
Lead · 10+ years
Minimum education
Bachelor’s degree
Posting language
English
Working hours
40 hours per week
Seniority
Mid-Senior level
Application method
Direct apply is available

Job summary

Lead the end-to-end solution architecture and technical design for a GCP identity governance program using Saviynt and Delinea. Translate business and compliance requirements into scalable architecture, integration patterns, and governance models for human and non-human identities.

Job details

Role Purpose Own the end-to-end solution architecture and technical design for a GCP identity governance program using Saviynt and Delinea. Translate business, security, audit, and compliance requirements into scalable architecture, integration patterns, governance models, and implementation guidance. Project Context This role supports an identity governance program covering the following solution areas: GCP human identity lifecycle automation covering Joiner, Mover, and Leaver processes. Service account lifecycle governance including request, approval, provisioning, ownership, certification, and decommissioning. Onboarding of GCP projects, folders, groups, roles, memberships, IAM bindings, and entitlement inventory into Saviynt. Discovery and classification of non-human identities, including service, workload, automation, API, machine, and AI-agent identities. Access governance, ownership, certifications, privileged access reviews, audit evidence, dashboards, and compliance reporting. Time-bound GCP group membership controls and custom GCP role lifecycle governance. Saviynt-Delinea integration for credential governance and Delinea-based GCP discovery. Testing, deployment readiness, operational documentation, and knowledge transfer. Key Responsibilities Lead current-state assessment and architecture discovery workshops across GCP, Saviynt, Delinea, and connected enterprise systems. Define target-state architecture for human and non-human identity lifecycle governance, service account governance, access certifications, and credential controls. Design integration patterns for Saviynt, GCP IAM, Delinea, authoritative sources, ticketing or approval systems, and downstream applications. Define entitlement, ownership, role, service account, NHI taxonomy, and lifecycle models aligned with least privilege and auditability. Create solution design documents, architecture diagrams, data flows, interface specifications, security controls, and non-functional requirements. Provide design oversight for time-bound group membership, custom GCP role lifecycle, access reviews, and privileged credential governance. Review configurations and customizations for scalability, maintainability, security, and alignment with product best practices. Facilitate architecture reviews, document decisions and risks, and support customer security, audit, and compliance approvals. Guide SIT, security validation, UAT support, production readiness, rollback planning, post-go-live validation, and knowledge transfer. Mentor engineering teams and resolve complex cross-platform technical issues. Required Technical and Professional Skills Saviynt Enterprise Identity Cloud or equivalent IGA architecture GCP IAM, projects, folders, groups, roles, service accounts, and IAM bindings Delinea or comparable PAM and credential-vaulting platforms Identity lifecycle, access governance, RBAC, least privilege, certifications, and SoD concepts API, connector, workflow, data-model, and cloud security architecture Architecture documentation, stakeholder workshops, risk management, and design governance Education and Experience Bachelor’s degree in Computer Science, Information Technology, Engineering, or a related discipline. Typically 10+ years in IAM or Security engineering, including 3+ years in solution architecture or technical leadership. Relevant Saviynt, GCP, Security, or PAM certifications. Key Deliverables Approved design or configuration artifacts appropriate to the role Configured and tested Saviynt, GCP, and Delinea capabilities Traceable test evidence, defect resolution inputs, and deployment artifacts Operational documentation, runbooks, and knowledge-transfer materials Collaboration Works closely with the Solution Architect, Project Manager, security and compliance stakeholders, customer platform teams, QA, operations, and product or vendor support teams. Customer accountability and approval remain governed by the agreed statement of duties and project governance model. Preferred Attributes Ownership mindset with strong attention to security, quality, and documentation Ability to communicate complex technical topics clearly to technical and non-technical stakeholders Structured problem-solving and disciplined management of risks, assumptions, and dependencies Comfort working in cross-functional, customer-facing, and globally distributed teams

What you’ll do

Lead the end-to-end solution architecture and technical design for a GCP identity governance program using Saviynt and Delinea. Translate business and compliance requirements into scalable architecture, integration patterns, and governance models for human and non-human identities.

Requirements

Requires a Bachelor's degree and over 10 years of experience in IAM or Security engineering, with at least 3 years in technical leadership. Proficiency in Saviynt, GCP IAM, and Delinea is essential, along with relevant security certifications.

Listed skills

  • Identity Governance · Preferred
  • Risk Management · Preferred
  • Stakeholder Management · Preferred

Other relevant skills

Identified from the job description. Confirm important requirements above.

  • Saviynt
  • GCP IAM
  • Delinea
  • Identity Governance
  • Privileged Access Management
  • Solution Architecture
  • RBAC
  • Least Privilege
  • Cloud Security Architecture
  • API Integration
  • Identity Lifecycle Management
  • Access Certifications
  • Technical Leadership
  • Risk Management
  • Design Governance
  • Stakeholder Management

Job areas

  • Security & Safety
  • Technology
  • Software
  • Engineering
  • Consulting

More jobs you can apply to directly

Similar opportunities posted by employers hiring on Jobs.ca, with no external application form.

Browse all Easy Apply jobs