Now hiring

Senior IT Architect Identity and Access Management (Houston, TX, US, 77002) @ CenterPoint Energy Service Co., LLC

Houston, TX, US, 77002OnsiteFull-time
Apply with ResuMinder

Opens on the employer's site

About this role

<p><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong>CenterPoint Energy and its predecessor companies have been in business for more than 150 years. </strong></span></span></p> <p> </p> <p><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong>Our Vision:</strong> Our vision is to become the most admired utility in the United States through the execution of our long-term growth strategy. We have an unwavering commitment to safely and reliably deliver electricity and natural gas to millions of people. </span></span></p> <p> </p> <p><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong>Our Commitment: </strong>CenterPoint Energy is committed to creating an inclusive work environment where business results are achieved through the skills, abilities and talents of our diverse workforce.</span></span></p> <p><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">At CenterPoint Energy, individuals are respected for their contributions toward our company objectives. We strive for an inclusive work environment across all levels that is reflective of the available workforce in the communities we serve.</span></span> </p> <p> </p><div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Job Summary</b></H2> </div><div><p style="margin:0.0in;font-family:Arial;font-size:12.0pt">We are seeking an experienced IAM Architect to lead the strategy, design, governance, and evolution of our enterprise identity ecosystem. This role serves as the technical authority for identity architecture, ensuring secure, scalable, and compliant access across on-premises, cloud, and SaaS environments.</p> <p style="margin:0.0in;font-family:Arial;font-size:12.0pt"> </p> <p style="margin:0.0in;font-family:Arial;font-size:12.0pt">The IAM Architect partners closely with security leadership, engineering teams, application owners, and compliance stakeholders to deliver identity solutions that balance strong security controls, user experience, and business agility. This role is pivotal in building a secure digital front door that protects enterprise assets while enabling employees, partners, and customers. The architect bridges high-level business requirements with deep technical execution, ensuring the IAM framework supports cloud transformation, Zero Trust principles, and regulatory obligations.</p></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Essential Functions</b></H2> </div><div><ul style="margin-top:0.0in;margin-bottom:0.0in" type="disc"> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Lead the architecture, design, and implementation of enterprise IAM capabilities, including Identity Governance and Administration (IGA), Privileged Access Management (PAM), and Customer IAM (CIAM)</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Develop and implement IAM policies, standards, and reference architectures for hybrid and multi-cloud environments, including SSO, identity federation (SAML, OIDC, OAuth 2.0), API security, SCIM provisioning, and directory services</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Drive adoption of modern authentication controls, including passwordless, passkeys, and phishing-resistant authentication</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Design and implement controls for non-human and machine identities, including service principals, secrets management, and PKI-based authentication</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Develop automated identity lifecycle management workflows, including joiner-mover-leaver (JML) processes, to reduce manual effort and improve security posture</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Onboard new applications by defining identity, authentication, authorization, and access requirements including Secure SaaS integrations and design Conditional Access policies</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Architect IAM controls to support SOX, NIST, and other regulatory frameworks, including segregation of duties (SoD), RBAC models, access certifications, privileged access controls, and audit logging</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Ensure IAM architectures are audit-defensible and capable of producing required evidence for internal and external audits</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Continuously monitor and improve identity security posture, detection capabilities, and response readiness</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Lead identity architecture reviews and provide mentorship and technical guidance to junior IAM engineers and analysts</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Produce high-quality documentation, including architecture diagrams, design decision records, standards, and implementation guidance</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Communicate complex identity and security concepts effectively to engineering teams, business stakeholders, and senior leadership</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Identify and implement automation to improve Identity Operations and Services</span></li> </ul></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Education Description</b></H2> </div><div><p style="margin:0.0in;font-family:Arial;font-size:12.0pt">Bachelor’s degree in Computer science, Information Security, or Engineering PREFERRED</p></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Experience</b></H2> </div><div><ul style="margin-top:0.0in;margin-bottom:0.0in" type="disc"> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">10+ years in Cybersecurity, with at least 5 years specifically focused on IAM architecture, design and implementation</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Experience with major IAM platforms and hands-on experience with enterprise IAM technologies such IGA, SSO, PAM, Phish-resistant MFA, CIAM</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Strong knowledge of identity protocols such as SAML, OAuth2, OIDC, LDAP, Kerberos</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Hands on experience in cloud identity and hybrid environments</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Experience implementing Zero Trust or similar modern security models</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Strong written and verbal communication and excellent problem-solving and analytical skills</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Self-motivated and capable of working independently in a fast-paced operational environment</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">CISSP or other relevant security certifications PREFERRED</span></li> <li style="margin-top:0.0;margin-bottom:0.0;vertical-align:middle"><span style="font-family:Arial;font-size:12.0pt">Microsoft Identity or IAM Vendor Security certifications PREFERRED</span></li> </ul></div></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Physical Requirements</b></H2> </div><ul style="margin-top:0.0;margin-bottom:0.0"></ul></div><div style="padding:10.0px 0.0px;border:1.0px solid transparent"><div style="font-size:16.0px;word-wrap:break-word"><H2 style="font-size:1.0em;margin:0.0px"><b>Working Conditions</b></H2> </div><ul style="margin-top:0.0;margin-bottom:0.0"></ul></div></div><p style="margin-bottom:12.0px;text-align:start"> </p> <p style="margin-bottom:12.0px;text-align:start"><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><span style="color:#000000"><span style="font-style:normal"><span style="white-space:normal"><span style="background-color:#ffffff"><strong style="font-weight:bold">We want you to know</strong></span></span></span></span><br><span style="color:#000000"><span style="font-style:normal"><span style="white-space:normal"><span style="background-color:#ffffff">Being a part of the CenterPoint Energy team is more than a career alone. It&apos;s an opportunity to make a positive impact. You will be an integral part of enabling everyday life and the pursuit of possibilities for the customers we serve and the communities we share. The vital services we provide are at the core of making our world work, and by sharing your energy with us, we&apos;ll create a better tomorrow together. </span></span></span></span></span></span><br> </p> <p style="margin-bottom:12.0px;text-align:start"><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong>What we bring to you</strong></span></span></p> <ul> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Competitive pay</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Paid training</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Benefits eligibility begins on your first day</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Transit subsidies</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Flexible work schedule, paid holidays and paid time off</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Access to discounts at fitness clubs and an on-site wellness center at our headquarters in Houston</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">Professional growth and development programs including tuition reimbursement</span></span></li> <li><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">401(k) Savings Plan featuring a company match dollar-for-dollar up to 6% and a company contribution of 3% regardless of your contribution</span></span></li> </ul> <p> </p> <p><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif"><strong>Job Type:</strong> Full Time <br><strong>Posting Start Date:</strong> 04/23/2026​<br><strong>Posting End Date:</strong> 05/08/2026</span></span></p> <p><br><span style="font-size:16.0px"><span style="font-family:Arial, Helvetica, sans-serif">This contractor and subcontractor shall abide by the requirements of 41 CFR §§ 60-1.4(a), 60-300.5(a), and 60-741.5(a). These regulations prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on their race, color, religion, sex, sexual orientation, gender identity, or national origin. Moreover, these regulations require that covered prime contractors and subcontractors take affirmative action to employ and advance in employment individuals without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status or disability.</span></span></p> <p><span style="font-size:8.0px"><span style="font-family:Arial, Helvetica, sans-serif">#LI-CNP</span></span></p>

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores