World Wide Technology

Principal Cybersecurity Architect - Identity, IAM & Zero Trust

World Wide Technology$159K — $199K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years in information security, including 4+ years specifically in architectural or senior engineering roles.
  • Established track record in consulting and building trust with both technical and business stakeholders.
  • Ability to influence decisions and navigate differing priorities across teams without formal authority.
  • Experience in facilitating workshops and architecture reviews for diverse audiences, both technical and non-technical.
  • Strong written and verbal communication skills, capable of simplifying complex architecture concepts for varied stakeholders.
  • Extensive knowledge of Zero Trust frameworks and identity-centric security practices.
  • Hands-on experience with enterprise IAM platforms, identity lifecycle processes, and PAM solutions.

Responsibilities

  • Act as a trusted advisor, shaping security architectures to align with IT and business goals.
  • Build relationships with stakeholders to advocate for Zero Trust and IAM initiatives, especially when they require behavioral change.
  • Lead workshops and architecture reviews, customizing communication for varied audiences.
  • Translate technical risks into business recommendations for executives and decision-makers.
  • Mentor security engineers on architecture standards and persuasive communication techniques.
  • Design and mature a Zero Trust architecture, defining security patterns and ensuring they are adopted by teams.
  • Own and govern enterprise IAM architecture, ensuring compliance with least privilege access principles.

Benefits

  • Health (Medical, Prescription, Dental, Vision Care) coverage, including access to onsite health centers.
  • Competitive pay structure with profit-sharing and a 401k plan featuring company matching.
  • Comprehensive paid time off including holidays, parental leave, and various types of leave.
  • Additional perks such as family planning options, pet insurance, and discounts for employees.
  • Wellness programs and an Employee Assistance Program to support mental and physical health.
Full Job Description
Qualifications
  • 8+ years in information security, with 4+ years in an architecture or senior engineering role
  • Proven track record, building trusted relationships with business and technical stakeholders - including direct experience acting as a consultant or advisor, whether internally or with clients
  • Demonstrated ability to influence outcomes and gain buy-in without formal authority, navigating competing priorities across engineering, business, and leadership
  • Experience facilitating workshops, requirements-gathering sessions, or architecture reviews with mixed technical and non-technical audiences
  • Excellent written and verbal communication skills - able to translate complex architecture into clear guidance for engineers, business stakeholders, and executives alike
  • Deep expertise in Zero Trust frameworks (NIST SP 800-207, BeyondCorp) and identity-centric security
  • Strong understanding of threat modeling methodologies (STRIDE, PASTA, ATT&CK) and their application to identity attack surfaces
  • Hands-on experience with enterprise IAM platforms - Microsoft Entra ID, Okta, Ping Identity, or equivalent
  • Strong grasp of federation protocols: SAML 2.0, OIDC, OAuth 2.0, SCIM
  • Experience with PAM platforms (CyberArk, BeyondTrust, Delinea) and secrets management (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault)
  • Familiarity with CIEM tooling and cloud IAM governance across at least two major cloud platforms
  • Experience designing and governing identity lifecycle and IGA processes (SailPoint, Saviynt, or equivalent a plus)
  • Certifications (preferred): CISSP, SABSA, TOGAF, Microsoft SC-100, Okta Certified Architect, or equivalent

Certain states and localities require employers to post a reasonable estimate of the salary range. A reasonable estimate of the current base pay range for this position is $159,600 to $199,500 annually. Actual salary will be based on a variety of factors, including shift, location, experience, skill set, performance, licensure and certification, and business needs. The range for this position in other geographic locations may differ. Certain positions may also be eligible for variable incentive compensation, such as bonuses or commissions, that are not included in the base pay.

The well-being of WWT employees is essential. When it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
  • Health and Wellbeing: Health (Medical & Prescription), Dental, and Vision Care, Onsite Health Centers (MO & IL), Employee Assistance Program, Wellness program
  • Financial Benefits: Competitive Pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Flexible Spending Accounts, Tuition Reimbursement
  • Paid Time Off: PTO & Holidays, Parental Leave, Medical Leave, Military Leave, Bereavement, Day of Caring
  • Additional Perks: Family Planning Benefits, Nursing Mothers Benefits, Voluntary Legal, Voluntary Supplemental Accident/Illness/Hospital, Voluntary ID Theft, Pet Insurance, Employee Discount Program

Note: This is not an all-encompassing list and should not be used as a complete description of the plan's benefits. For more information, see our US Benefits Website

WWT Information Security is looking for a Principal Cybersecurity Architect to own the enterprise security architecture across identity, access management, and Zero Trust. This is a senior individual contributor role with significant influence over how people, machines, and workloads authenticate, authorize, and access resources across our environment.

This role requires strong people skills as well as architectural expertise. We seek someone with deep technical knowledge and a consultative mindset-someone who builds trust, listens before offering solutions, and guides IT, business, and executive stakeholders toward shared decisions on identity and Zero Trust strategy. Strong candidates will have a proven record as trusted advisors, not merely implementers.

Stakeholder Engagement & Consulting
  • Act as a trusted advisor to IT, infrastructure, and business stakeholders - understanding their goals and constraints, then shaping security architecture decisions around them rather than dictating from a purely technical standpoint
  • Build and maintain relationships across engineering, business units, and executive leadership to earn buy-in for Zero Trust and IAM initiatives, particularly where they require behavior change or short-term friction
  • Lead discovery sessions, workshops, and architecture reviews that bring together technical and non-technical stakeholders, and know how to adapt the conversation for each audience
  • Translate complex, technical risk into business language and actionable recommendations for executives and nontechnical decision-makers
  • Mentor and guide security engineers on both architecture standards and how to communicate design decisions persuasively to stakeholders
  • Navigate competing priorities and organizational politics to build consensus on security architecture decisions, relying on influence and credibility rather than authority

Zero Trust Architecture
  • Design and mature a Zero Trust architecture (ZTNA, MFA, PAM) spanning identity, device trust, network access, and application security - grounded in NIST SP 800-207 and BeyondCorp principles
  • Define reference architectures, security patterns, and guardrails consumed across engineering and infrastructure teams
  • Lead threat modeling and security architecture reviews for major platform changes and initiatives
  • Evaluate and select security tooling (SASE, SSE, ZTNA, NDR, EDR) aligned to the overall architecture strategy
  • Drive continuous improvement of Zero Trust posture through gap assessments and maturity modelling

Identity & Access Management (IAM)
  • Own the enterprise IAM architecture - covering workforce identity, B2B federation, machine identities, and cloud entitlements
  • Design and govern identity lifecycle management: provisioning, role assignment, access reviews, and deprovisioning - ensuring least privilege is enforced by default and not by exception
  • Architect federation and SSO standards across the enterprise: SAML 2.0, OIDC, OAuth 2.0 - including integrations with third-party SaaS, partner tenants, and customer-facing portals
  • Define authentication assurance levels by resource sensitivity, aligning MFA requirements to NIST AAL2/AAL3 - with a clear roadmap toward phishing-resistant MFA (FIDO2/WebAuthn) for privileged and high-risk access
  • Lead the PAM architecture - credential vaulting, just-in-time privilege, session recording, and endpoint privilege management - in partnership with the security operations team
  • Govern cloud entitlements across AWS, Azure, and GCP through a CIEM framework: identify over-permissioned roles, enforce least privilege for service principals and IAM roles, and manage cross-account trust relationships
  • Establish and maintain a non-human identity strategy: service accounts, API keys, application credentials, and pipeline secrets - eliminating hardcoded credentials and enforcing dynamic secrets via a secrets management platform
  • Drive identity governance processes: access certification campaigns, segregation of duties (SoD) controls, and role-based access control (RBAC) model design
  • Partner with HR, IT, and business application owners to ensure joiner/mover/leaver processes are automated and auditable

Governance & Architecture Standards
  • Define security architecture standards, policies, and exception management processes
  • Serve as the escalation point for complex identity and access design decisions
  • Produce architecture artefacts - threat models, data flow diagrams, trust zone maps - suitable for both technical and executive audiences
  • Contribute to the security roadmap and annual planning, translating risk priorities into architectural investments

About World Wide Technology

World Wide Technology (WWT) is a technology solution provider that offers a wide range of services to businesses and organizations. The company was founded in 1990 and is headquartered in Maryland Heights, Missouri. WWT provides a variety of services, including consulting, design, integration, and managed services. The company has a strong focus on innovation and has been recognized for its efforts in this area. WWT has partnerships with many leading technology companies, including Cisco, Dell, and Microsoft. The company has a global presence, with offices in the United States, Europe, and Asia.
Learn more about World Wide Technology
Size
7,000 employees
Industry
Founded
1990

Similar Jobs

More Jobs at World Wide Technology

More Information Technology Jobs

Find similar Principal Cybersecurity Architect - Identity, IAM & Zero Trust jobs: