> Markdown version of [/jobs/ext/3070232-cybersecurity-iga-sso-architect](https://www.wearedevelopers.com/jobs/ext/3070232-cybersecurity-iga-sso-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity IGA & SSO Architect - **Company:** Propertyvalue Prudent Technologies And Consulting - **Location:** Jersey City, NJ, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Active Directory, User Authentication, Microsoft Azure, Software as a Service, Cloud Computing, Cyber Security, Software Design Documents, Multi-Factor Authentication, High-Level Architecture, Identity and Access Management, Kerberos (Protocol), Lightweight Directory Access Protocols (LDAP), OAuth, PCI Data Security Standards, Ping (Networking Utility), Windows PowerShell, Role-Based Access Control, Openid Connect, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Security Information and Event Management, Single Sign-On, Systems Integration, Web Services, Enterprise Software Applications, Okta, HR Software, Ws-federation, Enterprise Integration, CIS Benchmarks, SailPoint, Restful APIs, Servicenow - **Published:** September 25, 2026 - **Apply:** https://www.dice.com/job-detail/2275c916-8ca6-4711-9b5e-bd9ce88be792 ## About the Role * 10+ years of experience designing, architecting, implementing, and leading enterprise Identity Governance & Administration (IGA) and Single Sign-On (SSO) solutions. * Proven experience delivering large-scale IAM transformations across cloud, on-premises, and hybrid environments., * Extensive experience designing and deploying Identity Governance solutions using Saviynt, Microsoft Entra ID Governance, or equivalent platforms. * Strong expertise in identity lifecycle management including provisioning, de-provisioning, birthright access, role management, certifications, access requests, and SoD controls. * Experience designing Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), governance groups, and entitlement management frameworks. * Deep understanding of SSO, authentication, authorization, federation, and identity protocols such as SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, Kerberos, LDAP, and WS-Federation. * Hands-on experience with Microsoft Entra ID, Okta, Ping Identity, ForgeRock, or similar IAM platforms. * Design High-Level Design (HLD) and Low-Level Design (LLD) documents for IAM solutions supporting cloud, on-premises, and hybrid architectures. * Lead application onboarding strategies for SaaS, custom, legacy, cloud, and enterprise applications. * Experience integrating IAM platforms with Active Directory, Entra ID, HR systems, ServiceNow, MFA solutions, SIEM tools, and enterprise applications. * Expertise in governance reporting, compliance management, certification campaigns, access reviews, and audit remediation activities. * Strong understanding of Zero Trust Architecture and modern identity-centric security models. * Experience developing integration solutions using REST APIs, web services, SCIM, PowerShell, java, or other automation technologies. * Knowledge of regulatory and compliance frameworks including SOX, GDPR, HIPAA, PCI-DSS, ISO 27001, NIST, and CIS Controls. * Ability to support RFPs, solution proposals, architecture reviews, and customer-facing technical discussions. Soft Skills * Excellent Verbal and written communication skills in English. * Ability to present solutions to clients in person and remotely if needed. * Good documentation skills that will enable creation of design documents for the technical solutions proposed. * Excellent problem-solving skills. * Good collaboration skills in working with virtual and distributed teams. Certifications * Good to have relevant IAM certifications such as: * Saviynt L100, L200 trainings * Microsoft Azure Security Engineer * AZ- 900 Azure Fundamentals * Educational Qualifications * University degree in IT or/and IT Security ## Description * Serve as the Subject Matter Expert (SME) for Identity Governance, Access Management, Authentication, and Federation technologies. * Define enterprise IAM strategy, target architecture, operating models, and governance frameworks aligned with business and security objectives. * Lead customer workshops, architecture assessments, discovery sessions, and solution design engagements. * Collaborate with security, infrastructure, application, cloud, and business teams to deliver scalable identity governance and access management solutions. * Assess existing IAM environments and define modernization roadmaps focusing on automation, compliance, identity lifecycle management, and Zero Trust principles. * Provide architectural governance, solution reviews, technical leadership, and implementation oversight for IGA and SSO initiatives. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Top Must-Visit Developer Conferences in the US in 2026](https://www.wearedevelopers.com/magazine/679-top-must-visit-developer-conferences-in-the-us-in-2026)