IAM Security Architect

ACCOUNTABILITIES & ESSENTIAL FUNCTIONS

  • Design, build, and maintain enterprise IAM architecture and strategy
  • Develop and implement IAM policies, procedures, and standards aligned with security and compliance requirements
  • Lead the implementation and ongoing administration of IAM platforms (e.g., identity governance, directory services, privileged access management)
  • Define and implement identity lifecycle processes, including Joiner/Mover/Leaver (JML), provisioning, deprovisioning, and access certifications
  • Establish scalable Role-Based and Attribute-Based Access Control (RBAC/ABAC) models
  • Assess current IAM capabilities, identify gaps, and implement remediation strategies to mitigate risk
  • Drive enterprise-wide adoption of least privilege and segregation of duties (SoD) principles
  • Eliminate high-risk access practices, including excessive privileges, direct entitlement assignments, and orphaned accounts
  • Collaborate with cross-functional teams to integrate IAM solutions across cloud, SaaS, and on-premises systems
  • Conduct IAM-related risk assessments, audits, and compliance activities
  • Develop automation and workflows to improve IAM service delivery and operational efficiency
  • Provide technical guidance and oversight to IAM engineers and administrators
  • Review IAM-related designs and implementations to ensure alignment with security standards and best practices
  • Develop and maintain documentation, metrics, and reporting related to IAM program performance
  • Stay current on IAM technologies, trends, and emerging threats, recommending improvements as needed
  • Maintain strict confidentiality of all sensitive or confidential information


SKILLS & CERTIFICATIONS

  • Skill evaluation: Behavioral (80%)
  • Strong knowledge of Identity and Access Management concepts and technologies
  • Expertise in Identity Governance, Active Directory / Entra ID, and Privileged Access Management
  • Deep understanding of authentication and federation protocols (SAML, OAuth, OIDC)
  • Experience implementing RBAC/ABAC models and access control frameworks
  • Knowledge of security frameworks and compliance requirements (NIST, SOX, ISO, PCI, etc.)
  • Strong analytical, problem-solving, and risk assessment skills
  • Experience with automation, scripting, and API integrations
  • Ability to communicate effectively with both technical and non-technical stakeholders
  • Proven ability to work collaboratively across cross-functional teams
  • Self-starter with strong initiative and the ability to identify and solve complex security challenges
  • Preferred Certifications: CISSP, CISM, CISA, or IAM-specific certifications (e.g., SailPoint, Microsoft Identity)


EDUCATION & EXPERIENCE

  • Bachelor’s or Master’s degree in Computer Science, Information Technology, or a related field
  • Minimum of 7+ years of experience in Identity and Access Management, security architecture, or related disciplines
  • Proven experience designing and implementing enterprise-level IAM solutions
  • Experience leading or contributing to large-scale IAM transformation or remediation initiatives

See also

Security jobs by country — openings, pay and top skills →

Tailor your CV for this role?

We couldn't check your fit for this role — add a CV to your profile to see it next time.

A new version of freehire is available