Firmenlogo

Cybersecurity Azure Architect - IAM (Chicago, IL, US, 60607) presso McDonald's

McDonald's · Chicago, Stati Uniti d'America · Onsite

129.800,00 USD  -  165.490,00 USD

Candidarsi ora

Company Description: 

McDonald’s growth strategy, Accelerating the Arches, encompasses all aspects of our business as the leading global omni-channel restaurant brand. As the consumer landscape shifts we are using our competitive advantages to further strengthen our brand. One of our core growth strategies is to Double Down on the 3Ds (Delivery, Digital and Drive Thru). McDonald’s will accelerate technology innovation so 65M+ customers a day will experience a fast, easy experience, whether at one of our 25,000 and growing Drive thrus, through McDelivery, dine-in or takeaway.  

McDonald’s Global Technology is here to power tomorrow’s feel-good moments.   

That’s why you’ll find us at the forefront of transformative technology, exploring new and innovative ways to serve our millions of customers and spread happiness one delicious Hot Fudge Sundae-dipped fry at a time. Using AI, robotics and emerging tech, we’re digitizing the Golden Arches. Combine that with our unparalleled global scale, and we’re reshaping all areas of the business, industry and every community that is home to a McDonald’s restaurant. We face complex tech challenges every day. But that’s where our diverse and talented teams come in. They’re made up of the best and brightest from all over the globe, and they thrive in the space where feel-good meets fast-paced.   

Check out the McDonald’s  Global Technology Technical Blog to learn how technology and our global team are directly enabling the Accelerating the Arches strategy.  

Department Overview

We are seeking a highly skilled Azure Architect to join our Identity and Access Engineering team. Reporting to the Senior Engineering Manager, this role will lead the architectural transformation of our custom IAM solution from a monolithic structure to a modern microservices-based architecture. The ideal candidate will bring deep expertise in Azure cloud services, microservices design, and API integration—particularly with platforms like Saviynt—and will play a key role in designing scalable IAM solutions that support access governance, role-based access control (RBAC), and separation of duties (SOD).

This is a strategic and hands-on role that requires strong technical leadership, architectural vision, and the ability to collaborate across engineering, security, and business teams.

Duties

  • Lead the migration of our IAM application from monolithic architecture to microservices, ensuring scalability, resilience, and performance.
  • Design, implement, and maintain scalable IAM solutions, including access governance, RBAC, and SOD.
  • Architect and oversee the integration of Saviynt APIs into our IAM platform to enhance identity governance and automation capabilities.
  • Design and implement cloud-native solutions using Azure services including AKS, Azure Functions, Logic Apps, Event Grid, Service Bus, and API Management.
  • Define and document architecture standards, patterns, and best practices for microservices, API design, and cloud infrastructure.
  • Collaborate with software engineers, DevSecOps, and cybersecurity teams to ensure secure, compliant, and efficient solutions.
  • Provide technical leadership and mentorship to development teams, including offshore partners.
  • Evaluate and recommend new Azure services and IAM technologies to improve platform capabilities.
  • Design, implement, and maintain secure CI/CD pipelines using GitHub Actions, Azure DevOps, and Jenkins.
  • Automate infrastructure provisioning using Terraform and ARM templates.
  • Integrate security tools into the SDLC, including SAST, DAST, and SCA (e.g., Snyk).
  • Manage secrets securely using Azure Key Vault and enforce secure coding practices.
  • Support containerization using Docker and orchestration with Kubernetes.
  • Participate in Agile ceremonies and contribute to sprint planning, backlog grooming, and technical reviews.
  • Troubleshoot complex architectural and integration issues across distributed systems.
  • Stay current with emerging IAM technologies, Azure services, and DevSecOps tools.

Qualifications

  • Bachelor’s or master’s degree in computer science, Engineering, or a related field.
  • 7+ years of experience in software architecture and development, with at least 3 years focused on Azure cloud solutions.
  • Proven experience designing and migrating applications to microservices architecture.
  • Strong expertise in Azure services: AKS, Azure Functions, Logic Apps, Event Grid, Service Bus, Azure Data Factory, Azure Cosmos DB, API Management, Azure AD, and Entra ID
  • Strong hands-on experience with .NET Core/.NET Framework, C#, and web technologies (HTML, CSS, JavaScript,), SQL and NoSQL Databases.
  • Experience with containerization and orchestration using Docker and Kubernetes.
  • Experience integrating third-party IAM platforms such as Saviynt, SailPoint, or Okta via APIs.
  • Deep understanding of IAM protocols and standards: OAuth 2.0, OpenID Connect, SAML, SCIM, LDAP.
  • Experience with CI/CD tools: GitHub Actions, Azure DevOps, Jenkins.
  • Experience with Git flow, branching strategies, and repository security configurations.
  • Experience with deployment strategies like Blue-Green and Canary.
  • Strong understanding of application security practices (Snyk, SAST, DAST and SCA)
  • Excellent communication and stakeholder management skills.
  • Relevant certifications such as Azure Solutions Architect Expert, Azure Security Engineer Associate, Microsoft Identity and Access Administrator Associate, CISSP are highly desirable.

Compensation

Bonus Eligible: Yes

Long - Term Incentive: Yes

Benefits Eligible: Yes

Salary Range

Salary Ranges-$129,800.00 - $165,490.00

Competencies

Additional Information: 

Benefits eligible: This position offers health and welfare benefits, a 401(k) plan, adoption assistance program, educational assistance program, flexible ways of working, and time off policies (including sick leave, parental leave, and vacation/PTO). Eligibility requirements apply to some benefits and may depend on job classification and length of employment.  

Bonus eligible: This position is eligible for a bonus, calculated based on individual and company performance. 

Long term Incentive eligible: This position is eligible for stock or other equity grants pursuant to McDonald’s long-term incentive plan. 

McDonald’s is an equal opportunity employer committed to the diversity of our workforce. We promote an inclusive work environment that creates feel-good moments for everyone. McDonald’s provides reasonable accommodations to qualified individuals with disabilities as part of the application or hiring process or to perform the essential functions of their job. If you need assistance accessing or reading this job posting or otherwise feel you need an accommodation during the application or hiring process, please contact [email protected]. Reasonable accommodations will be determined on a case-by-case basis. 

McDonald’s provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to sex, sex stereotyping, pregnancy (including pregnancy, childbirth, and medical conditions related to pregnancy, childbirth, or breastfeeding), race, color, religion, ancestry or national origin, age, disability status, medical condition, marital status, sexual orientation, gender, gender identity, gender expression, transgender status, protected military or veteran status, citizenship status, genetic information, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training. 

Nothing in this job posting or description should be construed as an offer or guarantee of employment. 

Candidarsi ora

Altri lavori