> Markdown version of [/jobs/ext/3588453-iam-architect](https://www.wearedevelopers.com/jobs/ext/3588453-iam-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Architect - **Company:** Indotronix Avani Group - **Location:** Charlotte, NC, United States - **Contract:** Permanent contract - **Skills:** Microsoft Windows, User Authentication, Identity and Access Management, OAuth, OpenID, Windows PowerShell, Zero Trust Network Access, Security Assertion Markup Language (SAML), Microsoft Power Automate, Graphql, SailPoint, Terraform - **Published:** October 5, 2026 - **Apply:** https://candidateportal.ceipal.com/job-details/Ueetl3NU6-t53G-GAaJ58dNwRO3onWvzXFVi7dvdB2U ## About the Role Expert in Identity & Access Management (IAM) Architecture for enterprise environments. - Hands-on experience with Microsoft Entra ID administration and engineering. - Proven ability in Zero Trust and Conditional Access design and deployment. - Advanced knowledge of strong authentication technologies: FIDO2, Passkeys, Windows Hello for Business (WHfB). - Solid experience in identity federation, application migration, and authentication validation (SAML, OIDC, OAuth). - Demonstrated capability in Privileged Access Management (PAM) and secure administration. - Strong cross-functional collaboration and IAM program delivery skills. - Must be able to work fully onsite (5x/week) in Charlotte, NC or Atlanta, GA. - No degree required. Preferred Skills - Experience with IGA tools (SailPoint, Saviynt, Entra ID Governance). - Familiarity with identity threat detection and incident response (Microsoft Defender XDR, Entra Identity Protection, Sentinel). - Automation skills using PowerShell, Graph API, Logic Apps, or Terraform., Must be able to work fully onsite (5x week) in Charlotte NC or Atlanta GAMust have experience: Strong Authentication Technologies such as FIDO2 Passkeys and Windows Hello for Business (WHfB) ## Description Join a leading enterprise as an IAM Architect and play a pivotal role in designing and deploying next-generation identity and access management solutions. Based onsite in Charlotte, NC or Atlanta, GA, you will collaborate with top-tier technology teams to advance security through modern authentication technologies. This is an opportunity to work at scale, influence cyber security architecture, and grow your expertise in a dynamic, high-impact environment. Responsibilities - Develop and implement robust IAM architecture and engineering designs in collaboration with Cyber and Enterprise Architecture teams. - Design, configure, and optimize Microsoft Entra ID, including tenant management, trust settings, and application integrations. - Lead implementation of Zero Trust and Conditional Access models with risk-based, adaptive security controls. - Deploy strong authentication technologies, including FIDO2, passkeys, and Windows Hello for Business (WHfB). - Oversee migration and validation of federated applications, ensuring secure authentication flows (SAML/OIDC/OAuth). - Drive secure privileged access management and enforce least-privilege principles. - Enable step-up authentication for sensitive operations and secure privileged access paths. - Collaborate with project management and cross-functional engineering teams to deliver IAM program objectives on schedule. - Develop and support processes for managing FIDO2 keys, passkeys, and Windows Hello for Business deployments.