Senior Identity & Access Management (IAM) Architect

IAM Inc.
United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Compensation
$150,000.0 - $215,000.0
Working hours
Regular working hours
Job source

Tech stack

Artificial Intelligence Amazon Web Services Microsoft Azure Cloud Computing Cloud Computing Security DevOps Identity and Access Management Lightweight Directory Access Protocols (LDAP) OAuth OpenID Ping (Networking Utility) Openid Connect
+9 more
Azure Active Directory Zero Trust Network Access Security Assertion Markup Language (SAML) Google Cloud Okta Cyberark Customer Identity Access Management Virtual Agents SailPoint

Job description

TEC 360 is seeking a Senior IAM Architect to lead the design and delivery of enterprise-grade identity solutions for U.S. clients. This is a senior, client-facing individual contributor role requiring deep technical expertise in the Okta ecosystem, strong architectural judgment, and the ability to engage executive stakeholders with clarity and credibility. The ideal candidate has led IAM modernization programs, understands hybrid and cloud-native environments, and is passionate about solving complex identity challenges at scale., * Serve as the primary IAM architect and trusted advisor for enterprise customers across the U.S., engaging security leadership, application teams, architects, and executive stakeholders

  • Lead architecture discovery sessions, design workshops, and technical reviews aligned to customer business and regulatory requirements
  • Design and deliver enterprise IAM solutions with primary focus on the Okta platform, including:
  • Okta Workforce Identity Cloud (SSO, MFA, Lifecycle Management, Device Trust)
  • Auth0 / Okta Customer Identity Cloud (CIAM) for digital-facing applications
  • Okta Identity Governance (IGA) and Privileged Access Management (PAM)
  • Okta AI and Agent Identity for non-human identity governance
  • Architect large-scale Workforce and Customer Identity platforms, including hybrid and multi-directory environments
  • Lead IAM modernization initiatives including on-premises to cloud migrations and phased coexistence strategies
  • Design secure integration patterns using OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, and modern API standards
  • Collaborate with engineering, cloud, and DevOps teams to ensure secure, scalable, and reliable implementations
  • Contribute to internal standards, reference architectures, and reusable delivery frameworks
  • Provide technical leadership and mentorship across delivery teams

Requirements

Do you have experience in Workshop facilitation?, * 8+ years of experience in Identity & Access Management, with at least 3 years in a senior architect or technical lead role

  • Deep hands-on expertise with Okta Workforce Identity Cloud and/or Auth0 - design, configuration, and production delivery
  • Strong command of identity protocols: OAuth 2.0, OIDC, SAML 2.0, SCIM, LDAP
  • Experience architecting CIAM and Workforce IAM solutions at enterprise scale
  • Demonstrated ability to lead discovery and design workshops with cross-functional client teams
  • Excellent communication skills - able to translate complex technical concepts for executive audiences
  • Experience delivering in regulated environments (financial services, healthcare, or equivalent), * Okta Certified Professional, Okta Certified Administrator, or Okta Certified Developer
  • Experience with IGA platforms (SailPoint, Saviynt) and PAM tools (CyberArk, Delinea)
  • Prior background with other IdPs (Ping Identity, ForgeRock, Microsoft Entra) - especially in migration scenarios
  • Experience with Zero Trust Architecture frameworks and cloud security (AWS, Azure, GCP)
  • Knowledge of AI agent identity governance and non-human identity (NHI) patterns

Benefits & conditions

Pulled from the full job description

  • Travel reimbursement
  • Paid time off
  • Vision insurance
  • Dental insurance, Base salary reflects U.S. market benchmarks for senior IAM architects at the principal/staff level in the cybersecurity and identity space (Sources: Glassdoor, Levels.fyi, PayScale - 2025/2026 data).
  • Base Salary: USD $150,000 - $200,000 per year
  • Performance bonus: up to 10-15% of base, tied to delivery and customer outcomes
  • Benefits eligibility per U.S. plan terms (health, dental, vision, PTO)
  • 20 days PTO + 4 personal days + applicable U.S. federal holidays
  • Travel reimbursement per company policy, * Competitive compensation benchmarked to the U.S. IAM architect market
  • Remote-first, flexible work environment with travel for client engagements
  • Work with TEC 360 - Okta’s AMER Partner of the Year - on high-impact identity programs
  • Collaborative, technically deep team with access to TEC 360’s full partner ecosystem
  • Clear growth path into principal architect, practice lead, or regional technical leadership roles

Pay: $150,000.00 - $215,000.00 per year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

2:17 min

Mapping the maturity roadmap for scaled devops adoption

Dominik Krichbaum Dominik Krichbaum · WWC Europe 2026

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · WWC Europe 2026

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · WWC 2023

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

Videos

See all

Related articles

See all