Case 01 / 04
Identity & Auth Platform
Lead Architect·Publicis Sapient · UK FTSE-listed bank·2022 — 2024
"10 million banking customers authenticated under a Zero Trust contract — adopted as the enterprise security standard."
End-to-end OAuth2 / OIDC service with signed JWTs, Istio-enforced mTLS, and Apigee + ForgeRock IAM. Every inter-service call policy-gated; tokens minted against HSM-backed keys in GCP KMS. Adopted as the bank-wide standard.
Java 17Spring BootGKEIstioApigeeForgeRockOIDCGCP KMS
Zero Trust Innovator Award · 2024
Fig. 01 · Auth Plane Topology