Now hiring

IAM Architect / Manager – Identity & Access Management @ Kroll

INOnsiteFull-timeJob reference 21014572
Apply with ResuMinder

Opens on the employer's site

About this role

The IAM Architect is responsible for designing and leading enterprise Identity & Access Management strategies across Identity Governance, Privileged Access Management, Workforce Identity, and Cloud Identity platforms. This role provides architectural leadership, establishes IAM standards, and drives large-scale IAM transformation initiatives aligned with enterprise security strategies. Day to day responsibilities IAM Architecture

• Define enterprise IAM architecture and technology roadmaps • Design end-to-end identity solutions across workforce and privileged identities • Develop IAM reference architectures, standards, and design patterns • Lead solution design workshops with business and technical stakeholders Identity Governance

• Architect Saviynt and SailPoint solutions • Design identity lifecycle governance • Define RBAC and ABAC strategies • Design access certification and governance frameworks Privileged Access Management

• Architect CyberArk, Delinea, and BeyondTrust solutions • Define privileged access strategies • Design privileged identity governance and operational models Identity Platforms

• Architect Microsoft Entra ID solutions • Design Okta Workforce Identity architectures • Integrate cloud identity providers with enterprise applications • Define federation, SSO, MFA, Conditional Access, Identity Protection, and Passwordless strategies Program Leadership

• Lead multiple IAM implementation workstreams • Provide architectural governance • Mentor consultants and engineers • Participate in solution estimation, proposal development, and customer presentations • Collaborate with executive stakeholders on IAM strategy Essential traits Core Technical Skills

• 9–12 years of IAM experience • Strong enterprise architecture experience across IAM domains • Deep expertise in Saviynt and/or SailPoint • Strong experience with CyberArk, Delinea, or BeyondTrust • Extensive experience with Microsoft Entra ID • Strong experience with Okta Workforce Identity • Experience designing federation, SSO, MFA, Conditional Access, Identity Governance, and PAM solutions • Experience developing enterprise IAM roadmaps Technical Foundations

• Identity governance and administration • Privileged Access Management • Authentication and federation (SAML, OAuth2, OIDC, SCIM) • Active Directory and LDAP • Cloud identity architecture • API integrations • Zero Trust security architecture Prerequisites

• Bachelor's degree in Computer Science, Information Technology, Cyber Security, or equivalent practical experience.

• Experience leading enterprise IAM transformation programs • Experience in consulting or professional services organizations • Experience with cloud platforms (Azure, AWS, GCP) • Strong understanding of security frameworks such as NIST and CIS • Microsoft, Okta, Saviynt, SailPoint, CyberArk Certifications #LI-Hybrid #LI-SP1

Ready to apply?

Install the ResuMinder extension and we'll auto-fill the application in seconds — no rewriting.

See how your CV scores