The IAM Architect is responsible for designing and leading enterprise Identity & Access Management strategies across Identity Governance, Privileged Access Management, Workforce Identity, and Cloud Identity platforms. This role provides architectural leadership, establishes IAM standards, and drives large-scale IAM transformation initiatives aligned with enterprise security strategies.
Day to day responsibilities
IAM Architecture
- Define enterprise IAM architecture and technology roadmaps
- Design end-to-end identity solutions across workforce and privileged identities
- Develop IAM reference architectures, standards, and design patterns
- Lead solution design workshops with business and technical stakeholders
Identity Governance
- Architect Saviynt and SailPoint solutions
- Design identity lifecycle governance
- Define RBAC and ABAC strategies
- Design access certification and governance frameworks
Privileged Access Management
- Architect CyberArk, Delinea, and BeyondTrust solutions
- Define privileged access strategies
- Design privileged identity governance and operational models
Identity Platforms
- Architect Microsoft Entra ID solutions
- Design Okta Workforce Identity architectures
- Integrate cloud identity providers with enterprise applications
- Define federation, SSO, MFA, Conditional Access, Identity Protection, and Passwordless strategies
Program Leadership
- Lead multiple IAM implementation workstreams
- Provide architectural governance
- Mentor consultants and engineers
- Participate in solution estimation, proposal development, and customer presentations
- Collaborate with executive stakeholders on IAM strategy
Essential traits
Core Technical Skills
- 9–12 years of IAM experience
- Strong enterprise architecture experience across IAM domains
- Deep expertise in Saviynt and/or SailPoint
- Strong experience with CyberArk, Delinea, or BeyondTrust
- Extensive experience with Microsoft Entra ID
- Strong experience with Okta Workforce Identity
- Experience designing federation, SSO, MFA, Conditional Access, Identity Governance, and PAM solutions
- Experience developing enterprise IAM roadmaps
Technical Foundations
- Identity governance and administration
- Privileged Access Management
- Authentication and federation (SAML, OAuth2, OIDC, SCIM)
- Active Directory and LDAP
- Cloud identity architecture
- API integrations
- Zero Trust security architecture
Prerequisites
Bachelor's degree in Computer Science, Information Technology, Cyber Security, or equivalent practical experience.
- Experience leading enterprise IAM transformation programs
- Experience in consulting or professional services organizations
- Experience with cloud platforms (Azure, AWS, GCP)
- Strong understanding of security frameworks such as NIST and CIS
- Microsoft, Okta, Saviynt, SailPoint, CyberArk Certifications
#LI-Hybrid
#LI-SP1