Description

  • Develop the overarching vision, principles, and architecture for the workload identity and access management system across all environments (Azure, GCP, hybrid, on-premises).
  • Define the types of workload identities (e.g., Managed Identities, Service Accounts, SPIFFE identities), their attributes, and their lifecycle management processes.
  • Design the framework and specific policies for controlling workload access to resources based on the principle of least privilege.
  • Define and design secure methods for workloads to authenticate and communicate with each other.
  • Design the integration points and processes for connecting the workload IAM system with Ford's current IAM infrastructure (e.g., Entra ID).
  • Drive the creation of the long-term workload IAM governance framework, ensuring alignment with industry best practices and Ford's policies.
  • Serve as the subject matter expert on workload identity concepts, technologies (e.g., Entra Workload Identity, SPIFFE/SPIRE), and best practices.
  • Assess and recommend appropriate workload identity features and tools available in Azure, GCP and other relevant platforms.
  • Design the system to meet relevant security and compliance requirements

Key Skills
Education

Any Gradute