> Markdown version of [/jobs/ext/2049235-iam-architect](https://www.wearedevelopers.com/jobs/ext/2049235-iam-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Architect - **Company:** Everforth Apex - **Location:** Charlotte, NC, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, User Authentication, Cyber Security, Federated Identity Management, Identity and Access Management, Network Service, OAuth, OpenID, Windows PowerShell, Azure Active Directory, Phishing, Zero Trust Network Access, Security Assertion Markup Language (SAML), Microsoft Power Automate, Graphql, SailPoint, Terraform - **Published:** August 14, 2026 - **Apply:** https://www.dice.com/job-detail/0ab6aaa3-c5d0-474f-9441-ca907c608f12 ## About the Role Education: A Bachelor's Degree is not required for this position., * Identity & Access Management (IAM) Architecture, including designing and implementing enterprise identity patterns and authentication models. * Microsoft Entra ID Administration & Engineering, including configuration of tenants, trust relationships, and application integrations. * Zero Trust & Conditional Access Design, with experience in implementing risk-based access controls and adaptive security measures. * Strong Authentication Technologies such as FIDO2, Passkeys, and Windows Hello for Business (WHfB). * Identity Federation & Application Migration, including the ability to migrate federated applications and validate SAML/OIDC/OAuth flows. * Privileged Access Management (PAM) & Secure Administration to secure privileged accounts and implement least-privilege models. * IAM Program Delivery & Cross-Functional Engineering to collaborate with various teams to deploy IAM solutions at an enterprise scale., * Experience with Identity Governance & Administration (IGA) tools such as SailPoint, Saviynt, or Entra ID Governance. * Knowledge of Identity Threat Detection & Incident Response using solutions like Microsoft Defender XDR, Entra Identity Protection, or Sentinel. * Experience with Identity Governance Automation using PowerShell, Graph API, Logic Apps, or Terraform. ## Description We are seeking a Cyber Security Architect to contribute to the design and implementation of our identity and access management (IAM) solutions. This role involves collaborating with various technology teams to develop and deploy secure, scalable IAM patterns. The position focuses on enhancing security through modern authentication methods and ensuring robust access controls across the enterprise., * Collaborate with Cyber and Enterprise architecture teams to select and develop appropriate IAM patterns and translate them into engineering designs. * Partner with subject matter experts across technology teams, including End User tech and Network services, on IAM design, configuration, and implementation. * Work with the Project Management team to identify and estimate technical tasks for program deliverables. * Configure Entra ID identity, trust settings, and entitlement management. * Implement Conditional Access with phishing-resistant MFA (FIDO2) and risk-based controls. * Migrate federated applications and validate authentication flows. * Develop and support processes for procuring and managing FIDO2 keys and passkeys, and support Windows Hello for Business rollouts. * Enable step-up authentication for sensitive operations and secure privileged access paths. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Putting the Graph In GraphQL With The Neo4j GraphQL Library](https://www.wearedevelopers.com/videos/257-putting-the-graph-in-graphql-with-the-neo4j-graphql-library) - [Develop enterprise-ready applications for Microsoft Teams with Azure resources on modern web technologies](https://www.wearedevelopers.com/videos/187-develop-enterprise-ready-applications-for-microsoft-teams-with-azure-resources-on-modern-web-technologies) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity)