JOBSEARCHER

IAM Architect

Job Description - IAM ArchitectLocation: Alpharetta, GARole OverviewAn IAM Architect is responsible for designing, implementing, and governing identity and access management solutions that ensure secure access to enterprise systems, applications, and data. This role bridges business requirements, cybersecurity, and IT architecture to enforce robust identity governance and compliance.Key Responsibilities1. Architecture & DesignDesign and develop enterprise IAM architecture aligned with security and business goals Define identity lifecycle management (joiner, mover, leaver processes) Architect solutions for:Authentication (SSO, MFA, passwordless)Authorization (RBAC, ABAC)Federation (SAML, OAuth, OIDC)Develop zero trust security models for identity 2. Implementation & IntegrationLead implementation of IAM platforms such as:Azure AD / Entra IDOktaSailPointCyberArkPing IdentityIntegrate IAM systems with:Cloud platforms (AWS, Azure, GCP)On-prem systems (Active Directory, LDAP) Enterprise applications (SAP, Salesforce, Workday) Enable API security and identity federation 3. Governance, Risk & ComplianceEstablish Identity Governance & Administration (IGA) frameworks Design role models and access certification campaigns Ensure compliance with standards:SOX, GDPR, HIPAA, ISO 27001Implement audit logging, monitoring, and reporting 4. Security & Risk ManagementEnforce least privilege & segregation of duties (SoD) Design solutions to mitigate identity-based threats Integrate IAM with:SIEM (e.g., Splunk, Sentinel)PAM (Privileged Access Management)Conduct risk assessments and threat modeling 5. Strategy & RoadmapDefine IAM strategy and technology roadmap Evaluate and recommend IAM tools and platforms Drive cloud identity transformation initiatives Promote adoption of passwordless and Zero Trust frameworks 6. Stakeholder CollaborationWork with:Security teamsIT operationsApplication ownersCompliance and audit teamsProvide technical leadership and mentorship to IAM engineers Communicate complex IAM concepts to non-technical stakeholders Required Skills & QualificationsTechnical SkillsDeep knowledge of:SSO, MFA, Federation protocols (SAML, OAuth 2.0, OpenID Connect) Identity lifecycle management Hands-on experience with IAM tools:Azure AD / Entra ID, Okta, SailPoint, Ping, CyberArk Strong understanding of:Active Directory / LDAPCloud security (AWS IAM, Azure RBAC)API securityScripting/programming:PowerShell, Python, Java, or similarSkills: Cyber Security - IAM ProfessionaServices~l Cyber Ark Experience Required: 10 & Above