Security & Access Management Governance (PAM) Lead
Telecom & Application Security Assessments
- Perform security assessments for telecom applications, platforms, and integrations (OSS/BSS, core network-related systems).
- Review application and network architectures to identify security gaps, risks, and non-compliance.
- Conduct threat modeling, risk assessments, and security design reviews across on‐prem and cloud-hosted applications.
- Provide assessment outputs including risk ratings, mitigation recommendations, and security assurance artefacts.
IAM Solution Design & Architecture
- Design end-to-end IAM solutions covering IGA, PAM, WAM, MFA, SSO, and directory services.
- Define High-Level and Low-Level Designs (HLD/LLD) for IAM integrations with telecom applications.
- Support IAM onboarding of applications, including entitlement modeling, access workflows, and approval constructs.
- Align IAM designs with Zero Trust and telecom security principles.
Network & Platform Security
- Provide security inputs for telecom network components (4G/5G core, transport networks, supporting platforms).
- Review firewall rules, network flows, privileged access paths, and secure connectivity models.
- Ensure alignment with network security standards, segmentation, and least privilege access.
Governance & Stakeholder Engagement
- Act as the onsite security/IAM focal point, coordinating with customer security teams, architects, and application owners.
- Support architecture governance forums, technical reviews, and customer walkthroughs.
- Produce customer-facing documentation such as security assessment reports, design documents, and solution proposals.
- Work closely with offshore delivery and CoE teams to ensure design-to-implementation alignment.
Required Skills & Experience
- 10+ years of experience in Telecom Security, Network Security, and IAM roles.
- Strong understanding of Telecom architecture (OSS, network-facing applications, integrations).
- Hands-on experience in IAM solution design using platforms such as SailPoint, CyberArk, Microsoft Entra ID (Azure AD), LDAP/AD.
- Experience with authentication and authorization standards (SAML, OAuth2, OIDC, MFA).
- Proven capability in security architecture reviews, risk assessments, and compliance support.
- Experience producing HLDs, LLDs, and security assurance documentation.
- Strong onsite stakeholder management and communication skills.
Preferred / Good to Have
- Experience working with UK Telecom operators or large-scale regulated environments.
- Knowledge of ISO 27001, NIST, Zero Trust, and telecom security frameworks.
- Exposure to cloud security (Azure/AWS) in telecom environments.
- Prior experience acting as onsite security consultant or IAM architect.