**Introduction**: Convatec is exploring the need for adding an Architect in the existing Architecture team who would focus on providing strength and skills in Digital Work place and Identity management The architecture would support projects and initiatives Act as an bridge between Solution Architecture, Platform Architecture, IT Delivery (Engineering) and IT Operations **Technical Skills**: **1. Identity and Access Management (IAM)**: Understanding IAM Principles: Knowledge of fundamental IAM concepts such as authentication, authorization, user provisioning, and de-provisioning is crucial. Implementation of IAM Solutions: Proficiency in implementing IAM solutions using tools like Okta, Microsoft Azure AD, Azure B2C and SailPoint. Implementation of Privilege Access Management Solutions: Proficiency in implementing PAM solutions using tools like Okta, Microsoft Azure AD, Delinea, Salesforce or Omada **2. Directory Services**: Expertise in Directory Services: Experience with directory services like Active Directory, Active Directory Federation Services, Entra AD, Azure B2C and LDAP, including their integration and management. Schema Management: Ability to design and manage directory schema to support business requirements. Role Based Access: Knowledge of fundamental Role Based Access concepts and best practices is crucial. **3. Security Protocols and Standards**: Familiarity with Security Protocols: Knowledge of protocols like SAML, OAuth, OpenID Connect, LDAP, DMARC, DKIM, SPF and RADIUS is essential for securing communications. Private Key Infrastructure: Knowledge of Microsoft PKI services both on premise and on Azure Cloud. Compliance and Standards: Understanding of industry standards and compliance requirements such as GDPR, HIPAA, and NIST. **5. Messaging and Collaboration**: MS Exchange: Proficiency in Microsoft Exchange and Exchange online on hybrid environments. Teams Voice and Collaboration: Knowledge of Office 365 services such as Copilot, SharePoint, OneDrive, Teams services and endpoint devices, Teams voice services, protocols and hybrid infrastructure architecture. **6. Software Deployment and Patching**: Knowledge of MECM: Proficiency in SCCM and Intune service deployments and integrations such as Patch My PC. Mobile Device Management: Knowledge mobile device management tools such as Microsoft Intune, Apple Business Manager or MaaS360. **7. Software Development and Scripting**: Programming Languages: Proficiency in languages such as Java, Python, and C# for developing customized identity solutions. Scripting Skills: Knowledge of scripting for automation and integration, using tools like PowerShell and Batch. **8. Digital Workplace Skills**: - Design and develop comprehensive digital workplace architectures that align with the organization's strategic goals and objectives. - Assist in planning Mergers and Acquisitions. - Enterprise Mobility: Knowledge of mobile device management (MDM) and enterprise mobility management (EMM) solutions. - Networking: Understanding of network architecture, including VPNs, firewalls, SIP and LAN/WAN configurations. - Cybersecurity: Familiarity with cybersecurity principles and tools, such as endpoint security, identity and access management (IAM), privilege access management and data protection. - Virtualization and VDI: Experience with virtualization technologies and virtual desktop infrastructure (VDI) solutions, such as Azure Virtual Desktop, AWS Workspaces, VMware and Citrix. - Automation and Scripting: Ability to write scripts and automate tasks using PowerShell, Python, or similar languages. - Integration: Knowledge of API integration and development, ensuring different systems can communicate and work together effectively. - Software Development: Basic understanding of software development processes and methodologies. **Analytical Skills**: **1. Problem-Solving and Troubleshooting**: Analytical Thinking: Ability to analyse complex problems related to identity and access management and develop effective solutions. Root Cause Analysis: Proficiency in identifying the root causes of issues and implementing corrective measures. **2. Risk Assessment**: Risk Analysis: Evaluating potential risks to identity systems and developing strategies to mitigate these risks. Security Audits: Conducting regular audits to ensure compliance with security policies and standards. **3. Project Management**: Project Planning: Ability to plan and manage IAM projects, ensuring they are completed on time and within budget. Team Coordination: Coordinating with cross-functional teams to achieve project goals and objectives. **Soft Skills**: **1. Communication**: Effective Communication: Ability to communicate complex technical concepts to non-technical stakeholders. Documentation Skills: Proficiency in creating clear and concise documentation for identity systems and processes. **2. Collaboration**: Team Collaboration: Working effectively with other IT profess