Job DescriptionACCOUNTABILITIES & ESSENTIAL FUNCTIONS
- Design, build, and maintain enterprise IAM architecture and strategy
- Develop and implement IAM policies, procedures, and standards aligned with security and compliance requirements
- Lead the implementation and ongoing administration of IAM platforms (e.g., identity governance, directory services, privileged access management)
- Define and implement identity lifecycle processes, including Joiner/Mover/Leaver (JML), provisioning, deprovisioning, and access certifications
- Establish scalable Role-Based and Attribute-Based Access Control (RBAC/ABAC) models
- Assess current IAM capabilities, identify gaps, and implement remediation strategies to mitigate risk
- Drive enterprise-wide adoption of least privilege and segregation of duties (SoD) principles
- Eliminate high-risk access practices, including excessive privileges, direct entitlement assignments, and orphaned accounts
- Collaborate with cross-functional teams to integrate IAM solutions across cloud, SaaS, and on-premises systems
- Conduct IAM-related risk assessments, audits, and compliance activities
- Develop automation and workflows to improve IAM service delivery and operational efficiency
- Provide technical guidance and oversight to IAM engineers and administrators
- Review IAM-related designs and implementations to ensure alignment with security standards and best practices
- Develop and maintain documentation, metrics, and reporting related to IAM program performance
- Stay current on IAM technologies, trends, and emerging threats, recommending improvements as needed
- Maintain strict confidentiality of all sensitive or confidential information
SKILLS & CERTIFICATIONS
- Skill evaluation: Behavioral (80%)
- Strong knowledge of Identity and Access Management concepts and technologies
- Expertise in Identity Governance, Active Directory / Entra ID, and Privileged Access Management
- Deep understanding of authentication and federation protocols (SAML, OAuth, OIDC)
- Experience implementing RBAC/ABAC models and access control frameworks
- Knowledge of security frameworks and compliance requirements (NIST, SOX, ISO, PCI, etc.)
- Strong analytical, problem-solving, and risk assessment skills
- Experience with automation, scripting, and API integrations
- Ability to communicate effectively with both technical and non-technical stakeholders
- Proven ability to work collaboratively across cross-functional teams
- Self-starter with strong initiative and the ability to identify and solve complex security challenges
- Preferred Certifications:CISSP, CISM, CISA, or IAM-specific certifications (e.g., SailPoint, Microsoft Identity)
EDUCATION & EXPERIENCE
- Bachelor's or Master's degree in Computer Science, Information Technology, or a related field
- Minimum of 7+ years of experience in Identity and Access Management, security architecture, or related disciplines
- Proven experience designing and implementing enterprise-level IAM solutions
- Experience leading or contributing to large-scale IAM transformation or remediation initiatives