Summary
Designs and architects enterprise Identity & Access Management solutions across cloud and on-prem environments, leading cross-functional teams to implement authentication, authorization, and governance systems using Azure Entra ID, Okta, SailPoint, and similar platforms.
Overview We are seeking an experienced IAM Architect to lead the design, architecture, and implementation of enterprise Identity & Access Management solutions across workforce, customer, cloud, application, and non-human identities. The role is responsible for defining IAM strategy, developing architecture standards, conducting technology evaluations and proof-of-concepts (POCs), and leading cross-functional IAM initiatives, M&A programs from inception through deployment. The ideal candidate combines deep IAM technical expertise with strong architecture, cloud security, stakeholder management, and project leadership skills to drive secure, scalable, and business-aligned identity solutions. Responsibilities Lead solution design sessions and produce high-quality architecture deliverables including HLDs, LLDs, sequence diagrams, and integration specifications. Translate business requirements into scalable IAM solutions. Review and approve IAM designs produced by engineering teams and vendors. Provide technical oversight throughout the lifecycle of IAM implementations. Lead Proof-of-Concept (POC) initiatives and pilot programs for emerging IAM technologies. Present recommendations and business cases to leadership and architecture governance boards. Design IAM solutions for Azure, AWS, and GCP environments. Develop standards for cloud-native identity services and privileged access controls. Implement modern authentication mechanisms including OAuth, OIDC, SAML, FIDO2, Passkeys, and mTLS. Define cloud access governance and least-privilege models. Collaborate with cloud platform teams to enable secure cloud adoption and migration initiatives. Lead and manage IAM cross functional projects from initiation to completion, including: Planning, Scope Management, Risk Management, Design Reviews, Execution Oversight, Deployment Support, Change Management, Project Closure Coordinate activities across security, infrastructure, network, cloud, application, and business teams. Manage vendors, integrators, and implementation partners. Track project milestones, dependencies, risks, and deliverables. Qualifications 10- 12 years of Identity & Access Management experience. 5+ years in IAM Architecture or Technical Lead roles. Proven experience delivering enterprise-scale IAM transformation programs. Demonstrated experience leading cross-functional initiatives and large technology projects. Strong hands-on and architecture experience in: Authentication & Authorization, SSO & Federation, IGA, PAM, Directory Services, Access Certification & Governance, NHI Security. Experience designing IAM solutions across: Microsoft Entra ID / Azure, AWS IAM, Google Cloud IAM. Knowledge of OAuth, 2.0 / OIDC, SAML, SCIM, FIDO2 / Passkeys, Conditional Access, PIM / JIT Access, Zero Trust Architecture. Experience managing multiple concurrent IAM projects. Strong program planning and execution capabilities. Experience working within Agile and Waterfall methodologies. Experience with one or more of Okta, Entra ID, SailPoint, Saviynt, CyberArk, Ping Identity, ForgeRock, HashiCorp Vault. Preferred certifications include CISSP, CISM, CCSP, Azure Security Engineer, AWS Security Specialty, Okta Certified Professional/Administrator, CyberArk Defender/Sentry.