IAM Solutions Architect

Cognizant Technology Solutions Corporation
Dallas, TX, United States
24 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
6 years minimum
Compensation
$162,000.0 - $191,000.0
Working hours
Regular working hours
Job source

Tech stack

.NET Framework Active Directory Application Programming Interfaces (APIs) Amazon Web Services Application Integration Architecture Microsoft Azure Cloud Computing Security Middleware Java Platform Enterprise Edition (J2EE) Identity and Access Management Kerberos (Protocol) Lightweight Directory Access Protocols (LDAP)
+17 more
OAuth OpenID Public Key Infrastructure Role-Based Access Control Openid Connect Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Service-Oriented Architecture Single Sign-On Web Services Okta Cyberark Siteminder Ws-federation Information Technology SailPoint

Job description

We are seeking an experienced IAM Solutions Architect to lead the design, architecture, and modernization of enterprise Identity and Access Management (IAM) solutions. This role will be responsible for defining IAM strategy, driving secure authentication and authorization architectures, and enabling scalable identity services across enterprise, B2B, and B2C environments. The ideal candidate will possess deep expertise in identity governance, access management, federation, privileged access management, and modern authentication technologies. This position requires strong technical leadership, stakeholder engagement, and the ability to deliver secure, enterprise-scale IAM solutions.

Please note, this role is not able to offer visa transfer or sponsorship now or in the future

In this role, you will:

· Lead the architecture, design, and implementation of enterprise IAM solutions covering identity governance, authentication, authorization, federation, single sign-on (SSO), and privileged access management.

· Define IAM roadmaps, reference architectures, integration standards, and modernization strategies aligned with business and security objectives.

· Partner with security, infrastructure, application, and engineering teams to design scalable and secure IAM services across enterprise, B2B, and B2C environments.

· Evaluate IAM technologies and provide recommendations for platform enhancements, product selection, and future-state architecture.

· Design and govern integrations leveraging OAuth, OpenID Connect (OIDC), SAML, SCIM, Kerberos, WS-Federation, and related identity protocols.

· Drive architecture reviews, proof-of-concepts, risk assessments, and remediation strategies for IAM-related initiatives.

· Support implementation and optimization of Identity Governance and Administration (IGA), Access Management, Privileged Access Management (PAM), and Directory Services solutions.

· Collaborate with application teams to gather requirements, define integration patterns, and deliver IAM onboarding solutions.

· Develop architecture standards, technical documentation, governance models, and operational best practices.

· Mentor engineering teams and provide technical leadership for enterprise IAM transformation programs.

Requirements

· 12+ years of overall IT experience with 9+ years of IAM-focused technical leadership experience.

· 6+ years of experience in IAM architecture, solution design, and enterprise identity transformation initiatives.

· Deep expertise with Identity Management platforms such as SailPoint, CA Identity Manager, or equivalent IGA solutions.

· Strong experience with Access Management technologies such as Okta, SiteMinder, Azure AD, and enterprise SSO platforms.

· Experience with Privileged Access Management solutions such as CyberArk or similar platforms.

· Extensive knowledge of modern identity standards including OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, Kerberos, and WS-Federation.

· Strong understanding of Active Directory, Azure Active Directory, enterprise directory architecture, and LDAP services.

· Experience designing secure cloud identity solutions across AWS, Azure, and hybrid enterprise environments.

· Familiarity with application integration technologies, Java/J2EE, .NET, APIs, web services, and enterprise middleware platforms.

· Strong knowledge of IAM governance, user lifecycle management, access certification, role-based access control (RBAC), and regulatory compliance requirements.

· Excellent stakeholder management, communication, presentation, and leadership skills with the ability to influence executive and technical audiences.

Preferred Qualifications

· Experience in large enterprise IAM modernization and cloud transformation programs.

· Industry certifications such as CISSP, CISM, SailPoint, CyberArk, Okta, Azure Identity, or cloud security certifications.

· Knowledge of Zero Trust architecture principles and modern identity security frameworks.

· Experience with PKI, SOA architecture, and enterprise security governance initiatives.

Benefits & conditions

The annual salary for this position is between $[162,000 - 191,000] depending on experience and other qualifications of the successful candidate.

This position is also eligible for Cognizant’s discretionary annual incentive program, based on performance and subject to the terms of Cognizant’s applicable plans.

Benefits: Cognizant offers the following benefits for this position, subject to applicable eligibility requirements:

· Medical/Dental/Vision/Life Insurance

· Paid holidays plus Paid Time Off

· 401(k) plan and contributions

· Long-term/Short-term Disability

· Paid Parental Leave

· Employee Stock Purchase Plan

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

5:21 min

Protecting infrastructure with the shared responsibility model

Mustafa Toroman · WWC 2023

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · WWC 2024

Videos

See all

Related articles

See all