Source description
About the role
Responsibilities
-
The Cloud Identity and Access Management team is responsible for enabling the public cloud to become
-
a preferred platform across Morgan Stanley IT. This is a global, multi-discipline team responsible for
-
architecting and delivering secure, robust, and innovative solutions which would enable the
-
development teams to build and deploy new applications as well as migrate selected existing
-
applications into the public cloud.
-
The team works with multiple public cloud providers and are presently looking for an experienced Cloud
-
Engineer familiar with various cloud concepts, services, and tools, preferably from multiple public cloud
-
providers but primarily in the Identity and Access Management space (IAM) for Google Cloud. The
-
candidate will be involved in multiple aspects of the team's work, including evaluation of new cloud
-
products and services and integrating them into standard Morgan Stanley cloud solutions.
-
Primary Responsibilities:
-
• Providing IAM solutions for migrating or new applications in the Morgan Stanley environment
-
across multiple Cloud providers with an emphasis on Google Cloud
-
• Provide IAM services for complex, multi-tier applications that are migrating to Google Cloud,
-
including authentication and authorization (RBAC)
-
• Selecting appropriate IAM Cloud controls for migrating applications based on given
requirements
-
• Working in a globally distributed team to provide innovative and robust Cloud centric solutions
-
• Closely working with Vendors to develop and deploy Cloud services to meet customer
-
expectations
-
• Integrate, configure, document and deploy compliant infrastructure and supporting services in
-
Google Cloud
-
• Design, optimization and documentation of the operational aspects in Google Cloud
-
• Troubleshooting problems, resolving root cause, and where possible, fixing the bug(s)
-
• Collaborate with Risk Management to ensure necessary controls to Cloud services are deployed
-
and tested
Skills Required
-
• Working knowledge of Azure Active Directory and using it as an IDP for Google Cloud
-
• Expert experience in the Identity space with a background in Active Directory or similar LDAP
-
stores
-
• Strong understanding of IAM services offered in Google Cloud
-
• Expert knowledge of authentication with SAML, OAuth, OpenID and Kerberos
-
• Strong knowledge in providing Federated Identity with solutions such as PING Federate or ADFS
-
• Prior experience in providing RBAC solutions for Google Cloud
-
• Experience creating technical architecture documentation• Strong communication and written skills
-
• Experience creating technical architecture documentation
Skills Desired
-
• Strong scripting and automation abilities including PowerShell and/or Python
-
• Prior experience with products from HashiCorp such as Terraform, Vault and Consul
-
• Prior experience with risk control frameworks and engagements with risk and regulatory
-
functions
-
• Experience in the financial industry
More at 3B Staffing