IAM Architect
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Join a leading enterprise as an IAM Architect and play a pivotal role in designing and deploying next-generation identity and access management solutions. Based onsite in Charlotte, NC or Atlanta, GA, you will collaborate with top-tier technology teams to advance security through modern authentication technologies. This is an opportunity to work at scale, influence cyber security architecture, and grow your expertise in a dynamic, high-impact environment.
Responsibilities
- Develop and implement robust IAM architecture and engineering designs in collaboration with Cyber and Enterprise Architecture teams.
- Design, configure, and optimize Microsoft Entra ID, including tenant management, trust settings, and application integrations.
- Lead implementation of Zero Trust and Conditional Access models with risk-based, adaptive security controls.
- Deploy strong authentication technologies, including FIDO2, passkeys, and Windows Hello for Business (WHfB).
- Oversee migration and validation of federated applications, ensuring secure authentication flows (SAML/OIDC/OAuth).
- Drive secure privileged access management and enforce least-privilege principles.
- Enable step-up authentication for sensitive operations and secure privileged access paths.
- Collaborate with project management and cross-functional engineering teams to deliver IAM program objectives on schedule.
- Develop and support processes for managing FIDO2 keys, passkeys, and Windows Hello for Business deployments.
Requirements
Expert in Identity & Access Management (IAM) Architecture for enterprise environments.
- Hands-on experience with Microsoft Entra ID administration and engineering.
- Proven ability in Zero Trust and Conditional Access design and deployment.
- Advanced knowledge of strong authentication technologies: FIDO2, Passkeys, Windows Hello for Business (WHfB).
- Solid experience in identity federation, application migration, and authentication validation (SAML, OIDC, OAuth).
- Demonstrated capability in Privileged Access Management (PAM) and secure administration.
- Strong cross-functional collaboration and IAM program delivery skills.
- Must be able to work fully onsite (5x/week) in Charlotte, NC or Atlanta, GA.
- No degree required.
Preferred Skills
- Experience with IGA tools (SailPoint, Saviynt, Entra ID Governance).
- Familiarity with identity threat detection and incident response (Microsoft Defender XDR, Entra Identity Protection, Sentinel).
- Automation skills using PowerShell, Graph API, Logic Apps, or Terraform., Must be able to work fully onsite (5x week) in Charlotte NC or Atlanta GAMust have experience: Strong Authentication Technologies such as FIDO2 Passkeys and Windows Hello for Business (WHfB)
Benefits & conditions
Opportunity to shape the enterprise IAM strategy and architecture.
- Work with cutting-edge authentication and security technologies.
- Collaborative onsite work environment with cross-disciplinary teams.
- Clear career growth path within a leading organization.
- Competitive compensation on W2.
- Comprehensive background check and drug screening for a secure workplace.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Loading talks and stories from around this role…