Greensboro, NC, USA
91 days ago
Identity Architect
Posting Details Position Information

Position Number 002993 Functional Title Identity Architect Position Type Staff Position Eclass EP - EHRA 12 mo leave earning University Information Located in North Carolina’s third largest city, UNC Greensboro is among the most diverse, learner-centered public research universities in the state, with 18,000 students in eight colleges and schools pursuing more than 150 areas of undergraduate and over 200 areas of graduate study. UNCG continues to be recognized nationally for academic excellence, access, and affordability. UNCG is ranked No. 1 most affordable institution in North Carolina for net cost by the N.Y. Times and No. 1 in North Carolina for social mobility by The Wall Street Journal — helping first-generation and lower-income students find paths to prosperity. Designated an Innovation and Economic Prosperity University by the Association of Public and Land-grant Universities, UNCG is a community-engaged research institution with a portfolio of more than $67M in research and creative activity. The University’s 2,600 staff help create an annual economic impact for the Piedmont Triad region in excess of $1B. Primary Purpose of the Organizational Unit Plan, design, implement and support stable and secure enterprise central and client IT systems infrastructure. ITS Enterprise Systems supports more than 20,000 students, faculty and staff by administering the campus enterprise server infrastructure, enterprise databases, and client computing infrastructure. All of the core technology services offered by the University rely on the successful design, development, implementation, growth, maintenance and monitoring of the campus systems infrastructure. Position Summary Identifies, designs, and implements identity, authentication, and access management & governance solutions with the goal of improving operational performance/efficiency This position is a senior level systems architect and team leadership for University’s enterprise Identity and Access Management (IAM) infrastructure and related systems. This position plays a key role in developing and executing the strategic direction for single sign-on solution, enterprise group and role management, enterprise directory and related systems to support enterprise-class services. The position leads a team of engineers with an in-depth understanding of managing the IAM infrastructure and its related integrations with external applications. This position will also be the UNCG liaison with other state and national initiatives working on IAM projects. Minimum Qualifications Bachelors degree 8 years of Systems Administration 5+ years of Identity Management governance and design experience 5+ years of successful enterprise implementation of RBAC/ABAC/PBAC principals or equivalent combination of education and experience Additional Required Certifications, Licensures, and Certificates Preferred Qualifications Special Instructions to Applicants Recruitment Range Salary commensurate with experience Org #-Department Info Technology Services - 23101 Job Open Date 05/23/2025 For Best Consideration Date 05/30/2025 Job Close Date Open Until Filled Yes FTE 1.000 Type of Appointment Permanent If time-limited, please specify end date for appointment. Number of Months per Year 12 FLSA Exempt Key Responsibilities ________________________________________________________________________________________________________________________

Percentage Of Time 40 Key Responsibility Establish, design and manage a highly complex Windows endpoint management platform architecture on Microsoft Intune / AutoPilot. Essential Tasks This position will migrate UNCG from SCCM and Active Directory (including Group Policy) to Microsoft Intune and Azure Active Directory join. After the migration is complete, this position will administer Intune, including creating Intune compliance policies, deploying applications, and managing operating system and 3rd party application updates.  Evaluates and recommends changes to compliance policies, processes and procedures to reduce or eliminate those that become ineffective or unnecessary as systems are modified or updated. This position will serve as tier 3 (engineering) subject matter expert support for issues within the platform and resolve issues as needed.  This position will own and administer Microsoft Defender for Endpoint anti-malware for UNCG.  The position will report back to leadership the state of the Windows environment on a regular cadence and prepare for any needed updates and resourcing. This position will be the primary owner of the Windows endpoint management environment. Percentage Of Time 40 Key Responsibility Establish, design and manage a highly complex enterprise authorization and enterprise access/group management platform architecture currently on utilizing Internet2 Grouper as the primary mechanism. Essential Tasks This position will review and propose platform shifts in access and authorization mechanisms. Evaluates and recommends changes to compliance policies, processes and procedures to reduce or eliminate those that become ineffective or unnecessary as systems are modified or updated. This position will serve as the subject matter expert support for issues within the platform and resolve issues as the are escalated.  The position will report back to leadership the state of the enterprise access management environment on a regular cadence and prepare for any needed updates and resourcing.  This position is the primary owner of the Universities enterprise access management environment. Percentage Of Time 15 Key Responsibility Provide Enterprise Identity & Access Management and Governance Services Essential Tasks Evaluating and understanding relevant current and emerging infrastructure technologies to maintain expert level skills and knowledge. This position will develop and articulate to other systems architects the overarching technical architecture roadmap and participate in the setting of IAM/IGM use policies.  Guide stakeholders and data stewards in governing the changing landscape of identities, authentication, and authorization as the functional data changes.  Lead a team of technical staff to support the Identity and Access Management Services environment to include, but not limited to, Single Sign-on, authentication, access management, identity lifecycle management environment, and enterprise group management (EGM). Mentors and coaches subordinate positions for career development. In conjunction with Manager, Enterprise Systems, collaborates on work plans, performance appraisals, and develops or provides input to job descriptions of subordinates. Percentage Of Time 5 Key Responsibility Manage the technical projects, documentation and standards for the Identity and Access Management Services Essential Tasks Ensure technical staff adheres to standards and practices. Leads project management teams on supported system-related projects. Participates as a member of an integrated project management team on projects affecting multiple systems. ADA Checklist ADA Checklist

R for Rare (0-30%), O for Occasional (30-60%), F for Frequent (60-90%), C for Constant (90-100%).

Physical Effort Hand Movement-Repetitive Motions - F, Reading - f, Writing - F, Hearing - f, Talking - f, Sitting - c Work Environment Inside - C Applicant Documents Required Documents Resume/CV Cover Letter List of References Optional Documents Reference Letter 1 Reference Letter 2 Reference Letter 3 Supplemental Questions

Required fields are indicated with an asterisk (*).

* Are you eligible to work in the United States without sponsorship?

(Open Ended Question)

* Please indicate how you learned of the vacant position for which you are applying: SpartanTalent Website Piedmont Triad Area Newspaper The Chronicle of Higher Education Inside Higher Ed Other professional journal / website NCWorks.gov UNC School System Job Board Personal Networking Facebook Twitter Indeed.com NorthCarolinaDiversity.com Other If you selected "Other", please provide the name of the resource here.

(Open Ended Question)

Por favor confirme su dirección de correo electrónico: Send Email