Cybersecurity Architect - IAM
Creative Artists Agency (CAA) · Tennessee
📍 Nashville, TNvia workday
Apply on company site ↗
CareerRiver pulls this listing straight from the employer's hiring system — no recruiter middleman, no reposts. Applying takes you directly to Creative Artists Agency (CAA).
Job Description
Who We Are
Creative Artists Agency (CAA) is the leading entertainment and sports agency, with global expertise in filmed and live entertainment, digital media, publishing, sponsorship sales and endorsements, media finance, consumer investing, fashion, trademark licensing, and philanthropy. Distinguished by its culture of collaboration and exceptional client service, CAA’s diverse workforce identifies , innovates, and amplifies opportunities for the people and organizations that shape culture and inspire the world. The trailblazer of the agency business, CAA was the first to build a sports business, create an investment bank, launch a venture fund, found technology start-up companies, establish a philanthropic arm, build a business in China, and form a brand marketing services division, among other innovations. Named Most Valuable Sports Agency by Forbes for eight consecutive years, CAA represents more than 2,000 of the world’s top athletes in football, baseball, basketball, hockey, soccer, in addition to coaches, on-air broadcasters, and sports personalities and works in the areas of broadcast rights, corporate marketing initiatives, social impact, and sports properties for sales and sponsorship opportunities. Founded in 1975, CAA is headquartered in Los Angeles, and has offices in New York, Nashville, Memphis, Chicago, Miami, London, Munich, Geneva, Stockholm, Shanghai, and Beijing, among other locations globally.
The Role
This is a hands-on security position working within the Information Security group and with the internal IT department at large. We are looking for candidates who have a passion for cyber security, identity management and threat response. You will provide domain expertise to design and develop the capabilities of the identity and access management platform and the automation of application deployment pipelines to the platform. As a key leader in our security organization, the Cybersecurity Architect will drive the development of secure design principles, reference architectures, and security standards across a modern, SaaS-enabled and cloud-first ecosystem. This includes securing complex identity flows, third-party integrations, APIs, and distributed systems while addressing the shared responsibility model inherent across SaaS and internally developed line of business platforms. In this role, you will be an essential partner and technical specialist for identity and access platform development and provide thought leadership on enterprise security and a rchitecture across identity access and governance . You will be a key part of our efforts to enable the business needs in a highly collaborative organization . The environment is fast-paced and commonly on the leading edge of technology, including early adoption of various cloud services along with the challenges of integrating those services into our security practice.
Responsibilities
Maintain architectural diagrams and workflows of the identity access management platform
Provide design, evaluation, analysis, of identity and access management programs to support the company’s strategy
Develop standards and guidelines for access management across the company and department
Understand user lifecycle management; including provisioning/de-provisioning, access requests, user entitlements and audit & validations
Collaborate with HRIS, IT service owners, service desk and end-users to gather feedback and design solutions with identity related workflows
Present on design & vision that meets user and business nee ds
Design overall structure for new and existing cloud and on-premise applications into the identity access management platform
Create identity governance workflows with the concepts of attestation and auditing.
Ensure systems are scalable, maintainable and meet business needs
Create documentation to support architectural decisions and workflows
Review identity workflows and processes for lifecycle management, auditing, reporting, governance and self-service
D esign a RESTful identity API to provide Identity as a Service to downstream services and directory owners
Play an active role in CAA’s security incident response efforts, working to identify and mitigate information security threats
Required Capabilities
A minimum of 7 years in Information Technology, ideally with a focus on information security
A minimum of 3 years’ experience in identity and access management Architecture or Engineering
A Bachelor’s or Master’s Degree in a relevant field of work
Experience architecting IAM projects from design through implementation
Strong communication and presentation skills with ability to explain complex con cepts to both technical and non-technical audiences
Have designed and supported the implementation of Zero Trust Identity architecture
Understanding of OAuth , SAML and OpenID frameworks
An understanding of the fundamental operations of servers, operating systems, networks, firewalls, cloud applications, and infrastructure
Knowledge in automation and integration with SaaS applications
Knowledge of lifecycle management and p rovisioning and d e- p rovisioning
Knowledge of different MFA and compensating controls for identity
Knowledge of privilege identity management, privileged access management, and concepts of just in time provisioning , just enough access , and principal of least privilege
Knowledge of scripting in at least one of the following languages: PowerShell, Python, JavaScript
Desired Capabilities
Cross-team collaboration and vendor management
Set up and integrat ions for Single Sign-On with various SaaS vendors
Knowledge
More Tennessee jobs
Tennessee jobs · Browse all locations