IAM Architect

Indotronix Avani Group
Charlotte, NC, United States
2 days ago
Apply on candidateportal.ceipal.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Microsoft Windows User Authentication Identity and Access Management OAuth OpenID Windows PowerShell Zero Trust Network Access Security Assertion Markup Language (SAML) Microsoft Power Automate Graphql SailPoint Terraform

Job description

Join a leading enterprise as an IAM Architect and play a pivotal role in designing and deploying next-generation identity and access management solutions. Based onsite in Charlotte, NC or Atlanta, GA, you will collaborate with top-tier technology teams to advance security through modern authentication technologies. This is an opportunity to work at scale, influence cyber security architecture, and grow your expertise in a dynamic, high-impact environment.

Responsibilities

  • Develop and implement robust IAM architecture and engineering designs in collaboration with Cyber and Enterprise Architecture teams.
  • Design, configure, and optimize Microsoft Entra ID, including tenant management, trust settings, and application integrations.
  • Lead implementation of Zero Trust and Conditional Access models with risk-based, adaptive security controls.
  • Deploy strong authentication technologies, including FIDO2, passkeys, and Windows Hello for Business (WHfB).
  • Oversee migration and validation of federated applications, ensuring secure authentication flows (SAML/OIDC/OAuth).
  • Drive secure privileged access management and enforce least-privilege principles.
  • Enable step-up authentication for sensitive operations and secure privileged access paths.
  • Collaborate with project management and cross-functional engineering teams to deliver IAM program objectives on schedule.
  • Develop and support processes for managing FIDO2 keys, passkeys, and Windows Hello for Business deployments.

Requirements

Expert in Identity & Access Management (IAM) Architecture for enterprise environments.

  • Hands-on experience with Microsoft Entra ID administration and engineering.
  • Proven ability in Zero Trust and Conditional Access design and deployment.
  • Advanced knowledge of strong authentication technologies: FIDO2, Passkeys, Windows Hello for Business (WHfB).
  • Solid experience in identity federation, application migration, and authentication validation (SAML, OIDC, OAuth).
  • Demonstrated capability in Privileged Access Management (PAM) and secure administration.
  • Strong cross-functional collaboration and IAM program delivery skills.
  • Must be able to work fully onsite (5x/week) in Charlotte, NC or Atlanta, GA.
  • No degree required.

Preferred Skills

  • Experience with IGA tools (SailPoint, Saviynt, Entra ID Governance).
  • Familiarity with identity threat detection and incident response (Microsoft Defender XDR, Entra Identity Protection, Sentinel).
  • Automation skills using PowerShell, Graph API, Logic Apps, or Terraform., Must be able to work fully onsite (5x week) in Charlotte NC or Atlanta GAMust have experience: Strong Authentication Technologies such as FIDO2 Passkeys and Windows Hello for Business (WHfB)

Benefits & conditions

Opportunity to shape the enterprise IAM strategy and architecture.

  • Work with cutting-edge authentication and security technologies.
  • Collaborative onsite work environment with cross-disciplinary teams.
  • Clear career growth path within a leading organization.
  • Competitive compensation on W2.
  • Comprehensive background check and drug screening for a secure workplace.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on candidateportal.ceipal.com
Prepare application

Good distractions

Loading talks and stories from around this role…