IAM Lead/Architect

iTech US, Inc.
Chicago, IL, United States
5 days ago

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Artificial Intelligence Amazon Web Services Applications Architecture Application Integration Architecture Audit Trail User Authentication Microsoft Azure Cloud Computing Cloud Computing Security Cyber Security Information Systems
+35 more
Domain Name System (DNS) Multi-Factor Authentication Federated Identity Management Identity and Access Management IT Management Virtual Private Networks (VPN) Mobile Application Software Kerberos (Protocol) Key Management Lightweight Directory Access Protocols (LDAP) Massachusetts Comprehensive Assessment Systems OAuth OpenID Open Web Application Security Role-Based Access Control Azure Active Directory Cloud Services Kusto Query Language Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Software Engineering Systems Architecture Transport Layer Security Cloud Platform System Okta ReactJS Software Security Firewalls (Computer Science) Pingfederate Kubernetes Information Technology Api Management Docker Microservices

Job description

We are seeking a highly skilled Tech lead/Architect with deeper expertise in various security products, authentication, authorization, access management, AI, governance. As a key member of Workforce Authentication and Authorization team you lead a team to play a vital role in ensuring the secure implementation of various solutions (Hybrid and Cloud)., * Lead Identity centric Workforce Security team to develop authentication and access management solutions

Requirements

  • Drive the development of identity solutions, access patterns, modern security protocols, practicing Zero trust, least privileged, defense in depth principles
  • Good understanding of AI concepts, Patterns and impact on identity and access management domain
  • Participate and engage in AI adoption with Identity focus, knowledge and understanding of Entra ID agentic Identity, authentication flows and Patterns
  • Review and provide feedback on Identity and access management related security solutions proposed by stakeholders and can provide consultation to the partners and IT Management
  • In-depth knowledge and experience on Entra ID, EPM, Sentinel, Azure, AWS Security
  • Knowledge on Okta, PingFederate, Entitlement management solutions
  • Strong knowledge on Identities management on Azure AD with OAuth, OIDC, SAML, SSO, MFA, Conditional access policies, MFA, Kerberos, LDAP, Identity Federations etc.
  • Experience in providing security solutions for Java based Micro services, React based frontends and Android/iOS based mobile applications on the Azure
  • Hands-of experience in JWT, session handling, Code signing, Certificate authentication, TLS/SSL, API Security, Application registration, application integration scenarios etc.
  • Awareness of API Management, Firewalls, DLP, VPNs, DNS, Azure Defender, MCAS, Sentinel, WAFs, Application Gateways, NSGs, App Proxy, Radius clusters, CDN etc.
  • Good understanding of Cloud Infrastructure Entitlement Management solution (CIEM) to ensure smooth remediation of toxic combinations, high risk entitlements etc.
  • Understanding and application of threat modeling concepts and methodologies
  • Understanding of Applications security, OWASP standards, security best practices, browser compatibilities/storages/cookies
  • Acts as Workforce cybersecurity expert to in solutions spanning end user computing, proxy solutions, MFA, SSO, conditional accesses, Password less, Yubikey, bio-metric solutions, identity and governance scenarios, Secrets Management, automation, role based access control, Privileged identity management, Just in time accesses etc.
  • Participates in solutions to support- token handling, OIDC/ OAuth flows, authorization patterns, identity federation, cloud architectures, cryptograpgy, cloud native services, cloud security etc.
  • Deeper understanding on Cloud Security areas such as Policies, RBAC, activities, identities, privileged access management etc
  • Ability to support operations in troubleshooting complex identity scenarios with hands-on experience on Sentinel/KQL/Audit logs etc.
  • Good understanding of concepts related to docker Security, container orchestartions /Kubernetes, * Deep knowledge of application or infrastructure systems architecture, usually having experience with multiple system technologies.
  • Good understanding of agentic application architecture and impact of them on IAM domain
  • Excellent consultative and communication skills, and the ability to work effectively with client, partner, and IT management and staff.
  • 10 years of experience in the Information Security role. 5+ Years of experience as an Tech lead
  • CISSP, CSSP, or Cloud security certification preferred
  • Strong collaboration skills and a analytical ability
  • Certifications on Azure, AWS security will be preferred

Education: At least a bachelor s degree (or equivalent experience) in Computer Science, Software Engineering, Electronics Engineering, Information Systems, or a closely related field is required for the project

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:07 min

Inspecting default bridge architectures and custom Docker networks

Oliver Seitz Oliver Seitz · WWC 2025

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:34 min

Docker sandbox architecture and microVM environment integration

Manuel de la Peña Manuel de la Peña · WWC Europe 2026

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

Videos

See all

Related articles

See all