IAM Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+24 more
Job description
An IAM Architect is responsible for designing, implementing, and governing identity and access management solutions that ensure secure access to enterprise systems, applications, and data. This role bridges business requirements, cybersecurity, and IT architecture to enforce robust identity governance and compliance.
Key Responsibilities
- Architecture & Design
Design and develop enterprise IAM architecture aligned with security and business goals Define identity lifecycle management (joiner, mover, leaver processes) Architect solutions for: Authentication (SSO, MFA, passwordless) Authorization (RBAC, ABAC) Federation (SAML, OAuth, OIDC) Develop zero trust security models for identity
- Implementation & Integration
Lead implementation of IAM platforms such as: Azure AD / Entra ID Okta SailPoint CyberArk Ping Identity Integrate IAM systems with: Cloud platforms (AWS, Azure, Google Cloud Platform) On-prem systems (Active Directory, LDAP) Enterprise applications (SAP, Salesforce, Workday) Enable API security and identity federation
- Governance, Risk & Compliance
Establish Identity Governance & Administration (IGA) frameworks Design role models and access certification campaigns Ensure compliance with standards: SOX, GDPR, HIPAA, ISO 27001 Implement audit logging, monitoring, and reporting
- Security & Risk Management
Enforce least privilege & segregation of duties (SoD) Design solutions to mitigate identity-based threats Integrate IAM with: SIEM (e.g., Splunk, Sentinel) PAM (Privileged Access Management) Conduct risk assessments and threat modeling
- Strategy & Roadmap
Define IAM strategy and technology roadmap Evaluate and recommend IAM tools and platforms Drive cloud identity transformation initiatives Promote adoption of passwordless and Zero Trust frameworks
- Stakeholder Collaboration
Work with: Security teams IT operations Application owners Compliance and audit teams Provide technical leadership and mentorship to IAM engineers Communicate complex IAM concepts to non-technical stakeholders
Requirements
SSO, MFA, Federation protocols (SAML, OAuth 2.0, OpenID Connect) Identity lifecycle management Hands-on experience with IAM tools: Azure AD / Entra ID, Okta, SailPoint, Ping, CyberArk Strong understanding of: Active Directory / LDAP Cloud security (AWS IAM, Azure RBAC) API security Scripting/programming: PowerShell, Python, Java, or similar
Skills: Cyber Security - IAM ProfessionaServices~l Cyber Ark Experience Required: 10 & Above
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Highest Paying Tech Companies for Developers
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities
Dev Digest 120 - Apple and peers