Full Job Description
JD - IAM Architect - Solution oversight, governance, design reviews, escalation support, roadmap alignment of the Savyint platform
Position: Identity and Access Management (IAM) Architect
Position Summary
We are looking for a strategic and technical IAM Architect to lead the design, development, and execution of our enterprise Identity and Access Management strategy. In this role, you will bridge the gap between business objectives and security engineering, defining robust frameworks for user authentication, authorization, Identity Governance and Administration (IGA), and Privileged Access Management (PAM) across hybrid and multi-cloud environments.
Key Responsibilities
Strategy & Architecture: Partner with senior security leadership to define and own the enterprise IAM architecture roadmap, ensuring seamless scaling across on-premises, cloud, and hybrid infrastructures.
Identity Governance & Lifecycle (IGA): Design and govern identity lifecycle processes (onboarding, role changes, offboarding), automated provisioning, and compliance attestation workflows.
Authentication & Access Control: Architect modern authentication frameworks, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), adaptive/risk-based authentication, and passwordless modalities.
Governance & Compliance: Align IAM architectures with frameworks such as ISO 27001, SOC 2, NIST, and GDPR, supporting internal/external audits and risk assessments.
Technical Leadership: Provide mentorship to engineering teams, create architecture reference patterns, and conduct technical design reviews.
Required Qualifications & Skills
Experience: 7 to 10+ years of progressive experience in IT infrastructure, information security, and specialized IAM architecture.
Protocol Expertise: Deep technical understanding of core identity protocols and standards
Cloud & Hybrid Environments: Demonstrated experience designing IAM frameworks within cloud ecosystems (AWS, Azure, GCP).
Analytical & Communication Skills: Proven ability to translate complex business requirements into technical blueprints and present architecture strategies to executive leadership.
Preferred Qualifications
Certifications: Industry certifications such as CISSP, CISM, TOGAF, SABSA, or vendor-specific IAM accreditations.
DevSecOps Familiarity: Experience integrating identity controls into CI/CD pipelines and infrastructure-as-code workflows.