> Markdown version of [/jobs/ext/2415162-lead-iam-technical-architect](https://www.wearedevelopers.com/jobs/ext/2415162-lead-iam-technical-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead IAM Technical Architect - **Company:** ETeam Inc - **Location:** Swindon, UK (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Amazon Web Services, User Authentication, Identity and Access Management, Zero Trust Network Access, Customer Identity Access Management, Enterprise Integration - **Published:** August 13, 2026 - **Apply:** https://www.careerboard.com/pt/en/find-jobs-in-United-Kingdom/-C6C194D942DBC5CD76/ ## About the Role Strong experience in Zero Trust architecture and identity-driven access control Design of identity life cycle governance models and audit controls Integration and migration architecture across Legacy and modern platforms Experience with platforms such as: Entra ID AWS Cognito IGA and PAM tooling Security and Risk Capability Strong understanding of modern authentication and assurance models Experience embedding risk-based access controls and policy-driven identity Ability to translate risk into pragmatic architectural controls Delivery and Leadership 1. Proven delivery of large-scale IAM transformations 2. Stakeholder engagement across business, security, and technical domains 3. Ability to lead multi-team and supplier delivery environments 4. Experience delivering phased roadmaps with measurable outcomes Desirable 1. Experience with UK Government identity services (eg GOV.UK One Login) 2. Knowledge of ISO/IEC 24760, NIST SP 800-63, and NCSC guidance 3. Experience in public sector or federated research environments ## Description Lead IAM Technical Architect responsible for defining and delivering the enterprise identity architecture for client, establishing identity as the primary security control plane across services. The role combines cross-programme IAM design authority with secure-by-design, risk-led decision making, providing leadership across multiple IAM project workstreams and stakeholder groups. Key Responsibilities Define and govern the target-state IAM architecture, covering: o Identity verification and assurance o Identity governance & life cycle (IGA/JML) o Authentication and access management (AM) o Privileged access (PAM) o Customer and citizen identity (CIAM) o Non-human/machine identity (NHI/MIM) o Federation and identity trust models Lead end-to-end IAM solution design across programmes, ensuring alignment with enterprise architecture and UK Government standards Provide design authority and architectural assurance, ensuring solutions are secure, scalable, and aligned to organisational strategy Embed secure-by-design principles, integrating identity into risk-based access control and Zero Trust models Define identity life cycle and governance controls, including provisioning, access review, and deprovisioning Design integration and federation patterns, enabling secure identity exchange across UKRI, partners, and suppliers Develop transition architectures and migration strategies from Legacy identity services Deliver a phased IAM roadmap aligned to Discovery, Alpha, and enterprise rollout Engage senior stakeholders and provide technical leadership and advisory support across business and technology teams Deliverables Enterprise IAM target architecture and design blueprint Current-state IAM assessment and risk analysis Identity governance and life cycle (IGA) operating model Authentication and access management design (including MFA/passwordless) Privileged access management control model Identity integration and federation architecture Transition and migration architecture Phased delivery roadmap with defined outcomes and milestones IAM Project Background Strategic multi-year programme to establish identity as a core control plane aligned to Zero Trust principles Transformation of IAM services into a policy-driven, standards-aligned, enterprise capability Year 1 focus on: Identity life cycle governance Strong authentication and credential management Identity data quality and audit capability Year 2 expansion into: Privileged access management CIAM and external identities Full enterprise integration and federation Delivery of audit-ready identity controls, supporting compliance, assurance levels, and regulatory requirements. Outcomes Delivery of Zero Trust capabilities Identity governance and compliance improvements Risk reduction across access control and identity life cycle Reduce the risk of increased exposure to: o Identity-related security risks o No compliance audit and regulatory findings ## Related Videos - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Seriously gaming your cloud expertise: from cloud tourist to cloud native](https://www.wearedevelopers.com/videos/373-seriously-gaming-your-cloud-expertise-from-cloud-tourist-to-cloud-native) - [Containers in the cloud - State of the Art in 2022](https://www.wearedevelopers.com/videos/410-containers-in-the-cloud-state-of-the-art-in-2022) - [Enterprise Integration Is Dead! Long Live AI-Driven Integration with Apache Camel](https://www.wearedevelopers.com/videos/1606-enterprise-integration-is-dead-long-live-ai-driven-integration-with-apache-camel) - [Remote Driving on Plant Grounds with State-of-the-Art Cloud Technologies](https://www.wearedevelopers.com/videos/251-remote-driving-on-plant-grounds-with-state-of-the-art-cloud-technologies) - [No More Post-its: Boost your login security with APIs](https://www.wearedevelopers.com/videos/1043-no-more-post-its-boost-your-login-security-with-apis) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 196: AI Killed DevOps, LLM Political Bias & AI Security](https://www.wearedevelopers.com/magazine/659-dev-digest-196-ai-killed-devops-llm-political-bias-ai-security) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship) - [IT Salaries in UK](https://www.wearedevelopers.com/magazine/288-it-salaries-in-uk)