Google Cloud Platform IAM Architect

e-IT Professionals Corp.
Charlotte, NC, United States
21 days ago
Apply on www.dice.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Job source

Tech stack

Active Directory Audit Trail Cloud Computing Cloud Computing Security Cloud Engineering Cyber Security Continuous Integration Identity and Access Management Lightweight Directory Access Protocols (LDAP) Metadata OAuth OpenID
+8 more
Role-Based Access Control Recommender Systems Runbook Security Assertion Markup Language (SAML) Policy as Code Google Cloud Infrastructure as Code (IaC) Terraform

Job description

  • Own and drive the enterprise Google Cloud Platform IAM architecture strategy and roadmap.
  • Design persona-based access models for both human and non-human identities across Sandbox, Non-Prod, and Production environments.
  • Define role hierarchy, entitlement catalogs, access governance standards, naming conventions, and metadata frameworks.
  • Establish least privilege and Segregation of Duties (SoD) controls across Google Cloud Platform environments.
  • Design and oversee integration between Google Cloud Platform, Active Directory, ART, AIMS, ACT and enterprise IAM platforms.
  • Define access request, approval, provisioning, certification, and lifecycle management processes.
  • Architect audit logging, monitoring, compliance reporting, and continuous access governance solutions.
  • Lead architecture workshops with Security, IAM, Cloud Engineering, Governance, and Application teams.
  • Create architecture blueprints, implementation roadmaps, reference patterns, runbooks, and governance documentation.
  • Provide technical leadership during implementation, testing, rollout, and knowledge transfer activities.
  • Drive cloud security best practices and support regulatory and audit requirements.
  • Mentor architects, engineers, and technical leads across the program.

Core Technical Expertise

IAM & Security Architecture

  • Enterprise Identity & Access Management
  • Google Cloud Platform IAM
  • Role-Based Access Control (RBAC)
  • Attribute-Based Access Control (ABAC)
  • Segregation of Duties (SoD)
  • Privileged Access Governance
  • Access Certification & Reviews
  • Entitlement Management

Cloud Security & Platform Engineering

  • Google Cloud Platform (Google Cloud Platform)
  • Cloud Identity
  • Service Accounts & Workload Identities
  • Cloud Audit Logs
  • Security Command Center
  • Organization Policies
  • IAM Recommender

Identity Integration

  • Active Directory
  • LDAP
  • SAML / OAuth / OIDC
  • Identity Federation
  • Enterprise IAM Platforms

Automation & Policy Management

  • Terraform
  • Infrastructure as Code (IaC)
  • Policy-as-Code
  • Open Policy Agent (OPA)
  • CI/CD Integration

Governance, Risk & Compliance

  • Least Privilege Models
  • Audit & Compliance Controls
  • Risk Management
  • Financial Services Security Standards
  • Regulatory Compliance Frameworks

Leadership & Stakeholder Management

  • Enterprise Architecture Governance
  • Executive Stakeholder Management
  • Cloud Security Strategy
  • Cross-Functional Team Leadership
  • Architecture Review Boards
  • Client Engagement & Consulting, * Establishes a scalable and secure enterprise-wide Google Cloud Platform IAM model.
  • Improves security posture through least privilege and SoD enforcement.
  • Enables audit readiness and regulatory compliance.
  • Enhances operational efficiency through automated access governance.
  • Accelerates cloud adoption while maintaining security and governance standards.
  • Creates reusable IAM frameworks and onboarding assets for future platform expansion.

Requirements

Seasoned Google Cloud Platform IAM Architect with 15+ years of experience in Identity & Access Management, Cloud Security, and Enterprise Architecture. Proven expertise in designing and implementing large-scale access governance solutions, persona-based access models, entitlement frameworks, and cloud security architectures within highly regulated environments.

Strong experience in Google Cloud Platform (Google Cloud Platform), enterprise IAM ecosystems, Active Directory integration, access governance, audit compliance, and security architecture. Adept at driving strategic architecture initiatives, stakeholder engagement, governance forums, and enterprise cloud transformation programs. Aligned with Wells Fargo’s Google Cloud Platform Entitlement & Access Control Design, Implementation & Enablement initiative, * Google Professional Cloud Architect Certification.

  • Google Professional Cloud Security Engineer Certification.
  • Experience implementing enterprise-scale IAM solutions on Google Cloud Platform.
  • Experience in Banking, Financial Services, or other highly regulated industries.
  • Strong understanding of access governance, compliance controls, auditability, and cloud security frameworks.
  • Experience working with global onsite-offshore delivery teams.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:06 min

High-paying roles driven by Google Cloud certifications

Asrar Asrar · World Congress 2024

2:50 min

Introduction and the value of runbooks

Hila Fish · World Congress 2023

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all