> Markdown version of [/jobs/ext/2715652-cybersecurity-identity-and-access-management-architect](https://www.wearedevelopers.com/jobs/ext/2715652-cybersecurity-identity-and-access-management-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Identity and Access Management Architect - **Company:** Boston, Inc. - **Location:** Arden Hills, MN, United States - **Experience:** Expert - **Salary:** $85,000.0 - $161,500.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Active Directory, Amazon Web Services, Microsoft Azure, Cloud Computing, Cloud Computing Security, Cyber Security, Multi-Factor Authentication, Identity and Access Management, Information Systems Security Architecture Professional, Key Management, OAuth, Ping (Networking Utility), Public Key Infrastructure, Role-Based Access Control, Openid Connect, Azure Active Directory, Zero Trust Network Access, Sherwood Applied Business Security Architecture, Single Sign-On, Okta, Cyberark, Software Security, Togaf, Information Technology, Hashicorp, SailPoint - **Published:** September 4, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88244655/1 ## About the Role * Bachelor's degree in cybersecurity, computer science, information technology, engineering or a related field, or equivalent practical experience. * Minimum of 7 years' experience in cybersecurity, identity, engineering or security architecture. * Minimum of seven years' experience designing, implementing or governing enterprise IAM capabilities. * Experience leading architecture workstreams, advising cross-functional teams and translating complex security requirements into practical, scalable solutions. * Experience working in a highly regulated industry, such as medical devices, health care, life sciences, pharmaceuticals or manufacturing. * Deep knowledge of identity governance, identity lifecycle management, access certification, role-based access control (RBAC), attribute-based access control (ABAC), segregation of duties and privileged access controls. * Expertise in Security Assertion Markup Language (SAML), OAuth 2.0, OpenID Connect, SSO, MFA, adaptive access, Zero Trust, and secure cloud and hybrid identity architecture patterns. * Experience with secrets management, service and machine identities, PKI, certificate lifecycle management, cryptographic key management, Active Directory and Microsoft Entra ID. * Demonstrated skills in architecture documentation, threat modeling, risk assessment, security control design, metrics and remediation prioritization., * Proven hands-on experience with enterprise identity and security platforms such as Saviynt or SailPoint; CyberArk, BeyondTrust or Delinea; Microsoft Entra ID, Active Directory, Okta or Ping Identity; HashiCorp Vault; and Microsoft Azure or Amazon Web Services (AWS). * Relevant professional certifications, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Cloud Security Professional (CCSP), TOGAF, SABSA or ISO/IEC 27001 credentials, or vendor-specific identity and cloud certifications. * Demonstrated ability to influence senior stakeholders, navigate complex global organizations and translate cybersecurity risk into clear business recommendations. * Proven experience developing enterprise IAM roadmaps and advancing identity security capabilities within large, complex or global environments. ## Description Boston Scientific was recognized as a Glassdoor Best Place to Work in 2026, ranking No. 15 on the Top 100 list, reflecting the culture our employees experience every day. At Boston Scientific, cybersecurity is more than protecting systems. It is about enabling trust, safeguarding patient data, supporting regulatory compliance and protecting the technologies that help improve and save lives. We are seeking a Cybersecurity Identity & Access Management Architect (IAM), to lead the strategy, architecture and evolution of enterprise identity security capabilities across our global medical device organization. In this architecture role, you will define and mature enterprise identity security capabilities across identity governance and administration (IGA), privileged access management (PAM), authentication, federation, secrets management, public key infrastructure (PKI), directory services and non-human identities. You will combine deep technical expertise with strong business judgment, regulatory knowledge and the ability to influence enterprise strategy. Identity is a critical security perimeter. In this role, you will help drive Zero Trust adoption, strengthen privileged access and identity governance, reduce cybersecurity risk, and enable compliant and resilient business growth. You will collaborate across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business teams., * Define and drive the enterprise IAM strategy, architecture, standards, governance and multiyear roadmap. * Design and guide scalable enterprise capabilities for IGA, PAM, single sign-on (SSO), multifactor authentication (MFA), federation, secrets management, PKI, directory services, cloud identity and non-human identities. * Lead architecture reviews, modernization initiatives, design workshops and complex cross-functional workstreams. * Lead identity threat modeling, risk assessments, maturity reviews and gap analyses, and develop prioritized remediation roadmaps. * Align identity controls with applicable cybersecurity, privacy and regulatory frameworks and requirements, including NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-63, NIST SP 800-207, ISO/IEC 27001, GDPR, FDA guidance, SOX and internal requirements. * Partner with Audit, Privacy, Regulatory Affairs, Quality, Governance, Risk and Compliance (GRC), and technology teams on control design, audit readiness and remediation. * Define meaningful IAM risk metrics, key performance indicators (KPIs) and objectives and key results (OKRs), and communicate recommendations, investment needs, risks and outcomes to leadership. * Evaluate emerging identity and cybersecurity technologies and recommend solutions that advance enterprise security capabilities and business objectives. * Mentor architects, engineers, analysts and product teams on secure-by-design practices and identity security architecture. * Partner across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business functions to embed identity security into enterprise technology strategies and solutions. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Everything a Developer Needs to Know About MCP with Neo4j](https://www.wearedevelopers.com/magazine/604-everything-a-developer-needs-to-know-about-mcp-with-neo4j) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026)