Qualifications
Responsibilities
Benefits
Seeking an experienced Identity and Access Management (IAM) Architect to lead the design, implementation, and evolution of enterprise identity security solutions. This role is responsible for developing scalable IAM architectures, strengthening authentication and authorization controls, and ensuring secure access to enterprise systems, applications, and cloud environments. The ideal candidate will possess expertise in identity governance, access management, privileged access controls, Zero Trust principles, and cloud identity platforms. The IAM Architect will be responsible for designing and implementing IAM solutions to include account provisioning, single sign-on, multi-factor authentication, role-based access, and privileged account management. The architect will partner closely with the other cybersecurity, infrastructure, compliance, and technology teams; business stakeholders, and the engineering teams to evaluate, design, and deliver secure and compliant identity solutions across the organization. They will provide technical guidance, write related policy and standards, drive continuous improvement, create and maintain the technology roadmap, and interact with industry experts to apply best practices. The role also involves implementing complex IAM components, documenting solutions, and training operational teams.
Essential Job Duties and Responsibilities
Engage with IT leaders and SMEs, translate business goals into IAM requirements, coordinate with IAM product owners on technical feasibility to ensure solutions scale and interoperate across on-premises, cloud, and hybrid environments.
Provide technical design and implementation for authentication (e.g. MFA, SSO, etc.), authorization models (e.g. RBAC, etc.), identity provisioning, lifecycle management, and privileged access controls.
Champion innovation with Identity and Access Management tools, evaluate and provide recommendations to product owners for consideration and integration with the existing platform, while balancing security, privacy, and usability.
Drive adoption: create technical guidance and documentation, architecture diagrams, executive-level briefings, operational procedures, and mentor IT architects and senior engineers on IAM best practices.
Ensure compliance with relevant regulations and internal policies and support audit readiness activities by ensuring appropriate access governance, logging, monitoring, and reporting controls are in place.
Evaluate emerging IAM technologies and recommend improvements to enhance security, scalability, and operational efficiency.
Education and Experience Requirements
Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field or equivalent working experience.
8+ years Cybersecurity and Identity and Access Management experience
3+ years of experience in building IAM programs
Proven track record designing, delivering, and operating enterprise-scale IAM solutions across cloud and on-prem environments.
Strong knowledge of Identity Governance & Administration (IGA) and Cloud identity security.
Deep technical knowledge of authentication/authorization protocols and standards (OAuth2/OIDC, SAML, SCIM, LDAP) and modern IAM architectures.
Hands-on experience with at least two major IAM technologies (e.g., Entra ID/Azure AD, Microsoft AD, CyberArk, SailPoint, Ping Identity).
Strong stakeholder management and communication skills, able to present technical concepts to executive audiences and translate business needs into technical requirements.
Experience leading vendors, technical teams, and cross-functional workstreams to successful outcomes.
Experience with zero-trust identity models, identity governance, privileged access management, and modern authentication modalities (passwordless, biometrics, adaptive MFA).
Balance strategic thinking with the ability to roll up sleeves and deliver technically where needed.
Strong analytical, conceptual, and problem-solving abilities
Strong written and oral communication skills
Preferred Skills and Abilities
Relevant certifications such as GIAC Security Essentials (GSEC), Certified Identity and Access Manager (CIAM), or CISSP
Experience supporting large-scale enterprise environments
Experience implementing Zero Trust security frameworks
Familiarity with DevSecOps and API security
Working Conditions and Physical Demands
To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed above are representative of the knowledge, skill, and/or ability required. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.
The employee is regularly required to sit; use hands to finger, handle, or feel; and talk or hear. The employee is occasionally required to stand, walk, and reach with hands and arms; requires close vision ability. Noise level is usually moderate.
About Nordson
Similar Jobs



More Jobs at Nordson





More Information Technology Jobs


