> Markdown version of [/jobs/ext/70741-lead-identity-access-management-iam-engineer-architect](https://www.wearedevelopers.com/jobs/ext/70741-lead-identity-access-management-iam-engineer-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Lead Identity Access Management (IAM) Engineer/Architect - **Company:** Financial Industry Regulatory Authority, Inc. - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $111,400.0 - $242,600.0 - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Active Directory, Amazon Web Services, Business Logic, Microsoft Azure, Communications Protocols, Cyber Security, Information Systems, DevOps, Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Windows PowerShell, Scrum Methodology, Azure Active Directory, Web Application Security, Software Engineering, Systems Architecture, User Provisioning Software, Network Access Control, Power Platform Integration, Information Technology, SailPoint - **Published:** May 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b44a349bfd67bb39 ## About the Role Do you have experience in Training & development?, Do you have a Master's degree?, * Bachelor's degree in Computer Science, Information Systems or related discipline with at least seven (7) years of related experience, or equivalent training and/or work experience; * Master's degree and past Financial Services industry experience preferred. * Experience must include direct experience in leading key areas such as: securing networks and systems architecture, design and implementation, secure software assurance, intrusion detection, defense and incident response, security configuration management, access controls design and implementation and security policy and standards development. * In-depth knowledge of more than one communications protocol. * Experience managing several Cyber Security tools, including: Configuration Assessment, Log Aggregation, Integrity Verification, Web Application Security Testing, Network Access Control System, Network Intrusion prevention systems, and Endpoint Security Solutions. * Strong written and verbal technical communication skills. * Demonstrated ability to develop effective working relationships that improved the quality of work products. * Should be well organized, thorough, and able to handle competing priorities. * Ability to maintain focus and develop proficiency in new skills rapidly. * Ability to work in a fast paced environment. * Excellent planning skills. * Willingness to accept new challenges and grasp new or changing concepts, technologies and procedures. * In-depth knowledge across all areas of Information Security. ## Description The Lead IAM Engineer/Architect leads enterprise IAM initiatives from planning through implementation, develops custom Java-based solutions within SailPoint IdentityIQ, and builds cloud access automation using Python/PowerShell. This role manages complex access provisioning and deprovisioning workflows and partners with security and compliance teams on governance frameworks. This position reports directly to a Director or Senior Director., Architectural Leadership & Design * Lead enterprise IAM initiatives from planning through implementation * Design and develop custom Java-based solutions within SailPoint IdentityIQ * Lead the architecture of robust, scalable IAM solutions across hybrid environments * Collaborate on system architecture decisions and integration patterns * Design role modeling and certification campaigns Engineering Excellence & Quality * Write and modify Java code within SailPoint for custom business logic (not just scripting - actual application development) * Develop custom connectors and perform connector customization * Configure and optimize workflow configuration * Lead implementation of comprehensive testing strategies for IAM solutions * Troubleshoot complex identity issues across hybrid environments * Strong SailPoint IdentityIQ administration/development and hands-on Java programming experience DevOps & Infrastructure * Build and maintain AWS/Azure cloud access automation using Python/PowerShell * Implement AWS IAM with hands-on policy creation and automation * Manage complex access provisioning/deprovisioning workflows * Integrate Active Directory/Azure AD administration and integration * Create and maintain technical documentation for audit purposes Mentorship & Cultural Leadership * Mentor junior engineers on SailPoint development, IAM architecture, and security best practices * Coach and train colleagues in best practices for IAM development * Lead cross-functional teams on IAM transformation projects * Champion collaborative resolution of complex identity issues * Provide feedback on processes and recommend improvements Product & Stakeholder Collaboration * Partner with security and compliance teams on governance frameworks * Communicate complex IAM concepts to non-technical stakeholders * Openly share progress and priorities with key stakeholders * Lead projects using Agile/Scrum methodologies * Work under pressure and coordinate across multiple teams simultaneously Security & Compliance * Ensure all work products meet enterprise security standards * Lead secure coding practices for IAM components * Create and maintain technical documentation for audit purposes * Design solutions supporting governance and compliance requirements, FINRA's Code of Conduct imposes restrictions on employees' investments and requires financial disclosures that are uniquely related to our role as a securities regulator. FINRA employees are required to disclose to FINRA all brokerage accounts that they maintain, and those in which they control trading or have a financial interest (including any trust account of which they are a trustee or beneficiary and all accounts of a spouse, domestic partner or minor child who lives with the employee) and to authorize their broker-dealers to provide FINRA with duplicate statements for all of those accounts. All of those accounts are subject to the Code's investment and securities account restrictions, and new employees must comply with those investment restrictions-including disposing of any security issued by a company on FINRA's Prohibited Company List or obtaining a written waiver from their Executive Vice President-by the date they begin employment with FINRA. Employees may only maintain securities accounts that must be disclosed to FINRA at one or more securities firms that provide an electronic feed (e-feed) of data to FINRA, and must move securities accounts from other securities firms to a firm that provides an e-feed within three months of beginning employment. You can read more about these restrictions here. As standard practice, employees must also execute FINRA's Employee Confidentiality and Invention Assignment Agreement without qualification or modification and comply with the company's policy on nepotism. Search Firm Representatives ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Algorithm That Nearly Killed Me: When Testing Isn't Enough](https://www.wearedevelopers.com/videos/2110-the-algorithm-that-nearly-killed-me-when-testing-isn-t-enough) - [From DevOps to Scaled DevOps: How We’re Rebuilding Continuous Delivery as a Platform](https://www.wearedevelopers.com/videos/100018-from-devops-to-scaled-devops-how-we-re-rebuilding-continuous-delivery-as-a-platform) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Where we're going we don't need JavaScript - Programming with Type Annotations](https://www.wearedevelopers.com/videos/455-where-we-re-going-we-don-t-need-javascript-programming-with-type-annotations) - [DevOps Maturity Check – a way to balance autonomy and alignment](https://www.wearedevelopers.com/videos/58-devops-maturity-check-a-way-to-balance-autonomy-and-alignment) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [Top-Paying Tech Jobs (with Salaries)](https://www.wearedevelopers.com/magazine/372-top-paying-tech-jobs-with-salaries) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers)