IAM Architect

Talent International
Swindon, UK
22 days ago
Apply on www.careerboard.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
£182,000.0 - £195,000.0
Working hours
Regular working hours

Tech stack

Amazon Web Services User Authentication Data Auditing Identity and Access Management OpenID Azure Active Directory Migration Manager Phishing Zero Trust Network Access Security Assertion Markup Language (SAML) Session Management Customer Identity Access Management
+1 more
Legacy Systems

Job description

Are you an expert Enterprise Identity Architect with deep Zero Trust expertise? Looking for a high-impact role where identity isn’t just an IT function, but the primary security control plane?, We have partnered with a major, high-profile organization to spearhead a landmark, two-year identity transformation programme. We are seeking a visionary Principal Enterprise IAM Architect to design, establish, and oversee the rollout of a future-fit, Zero Trust-aligned identity architecture. The Project Brief

This strategic transformation will elevate Identity and Access Management (IAM) across the entire enterprise ecosystem, establishing identity as the core security control for networks, devices, applications, and data.

You will lead the end-to-end designfrom current-state gap and risk analysis through to a multi-year transition architecture and phased delivery roadmap. Key Deliverables and Responsibilities:

  • Target Architecture Design: Define a coherent enterprise identity architecture aligned to ISO 24760 standards, ensuring strict separation of Identity Authority, Relying Parties, and Verification Services.
  • Current-State Risk Assessment: Evaluate existing service integrations (Entra ID, ideiio, AWS Cognito) across Zero Trust frameworks, least-privilege principles, and security assurance requirements.
  • Core IAM Pillar Blueprinting: Design modern, scalable architectures covering:
  • IGA and JML: End-to-end automated identity life cycle (Joiner-Mover-Leaver), policy-driven access, SCIM integration, and data quality assurance.
  • Authentication and AM: Adaptive, risk-based access controls (Conditional Access), phishing-resistant MFA, passwordless patterns, and session management.
  • PAM: Just-in-time (JIT) access, segregation of duties, and least-privilege administrative controls.
  • Verification and CIAM: Customer/citizen identity management aligned with HMG verification platforms (eg, Gov.UK OneLogin) and GPG45 assurance standards.
  • Machine and Non-Human Identities (NHI/MIM): Life cycle governance for service accounts, keys, and certificates.
  • Integration Fabric and Federation: Design secure, standards-based identity integration patterns enabling seamless federation with associate bodies, suppliers, and third parties.
  • Transition and Implementation Roadmap: Map out the phased migration strategy from Legacy services (including ideiio replacement), driving a Year 1 focus on core IGA/AM controls and a Year 2 expansion to PAM, CIAM, and full automation.

Requirements

We are looking for a senior technical leader with demonstrable success delivering large-scale IAM transformations across complex, federated environments. Key Technical Skills and Experience:

  • ISO 24760 and Zero Trust Architecture (ZTA): Deep understanding of ZTA principles and standard reference architectures, translating them into policy-driven, risk-based access decisions.
  • Multi-Pillar IAM Architecture: Proven design experience across IGA, AM, PAM, CIAM, and Non-Human Identity frameworks.
  • Enterprise Identity Platforms: Hands-on architecture experience with technologies such as Microsoft Entra ID, AWS Cognito, specialized IGA/PAM engines, and HMG Gov.UK OneLogin (highly desirable).
  • Identity Assurance and Standards: Familiarity with modern auth protocols (OIDC, SAML, FIDO2, WebAuthn, SCIM) and identity assurance levels (IALs/AALs).
  • Migration and Coexistence Design: Track record in designing low-disruption transition architectures to sunset Legacy systems while maintaining security and business continuity.
  • Senior Leadership and Governance: Exceptional stakeholder management skillsable to bridges the gap between technical teams, security leads, and senior business executives., If you have the architectural vision and technical gravitas to lead this capability, we’d love to speak with you.

About the company

Talent International UK and it’s subsidiaries, Digital Gurus, Infinite Talent and Rethink act as an employment agency for permanent recruitment and employment business for the supply of temporary workers. By applying for this opportunity, you accept the TandC’s, Privacy Policy and Disclaimers which can be found on our website

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerboard.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:16 min

Advantages of reproducible configurations and instantaneous rollbacks

Álvaro Martín Lozano · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

1:30 min

Operating developer-friendly identity infrastructure using Affinity Elements

Adam Larter Adam Larter · World Congress 2024

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

3:08 min

Conducting data audits and adversarial testing on models

Toju Duke · World Congress 2022

Videos

See all

Related articles

See all