Job Title: IAM Team Lead - Identity & Access Management
Location: Chicago, IL (ONSITE )
Job Overview
We are seeking an experienced IAM Team Lead to lead the design, implementation, administration, and support of enterprise Identity and Access Management solutions. The ideal candidate will have strong hands-on experience with IAM, Identity Governance, SSO, MFA, Active Directory, cloud identity, privileged access, and access lifecycle management, along with proven experience leading technical teams and enterprise IAM initiatives.
The IAM Team Lead will work closely with Security, Infrastructure, Application, Compliance, and Business teams to ensure secure, compliant, and efficient identity services across the organization.
Key Responsibilities
- Lead and mentor a team of IAM engineers/administrators responsible for enterprise identity services.
- Design, implement, and maintain scalable Identity and Access Management (IAM) solutions.
- Manage the complete identity lifecycle including Joiner, Mover, Leaver (JML) processes.
- Lead implementation and administration of Single Sign-On (SSO), Multi-Factor Authentication (MFA), Federation, and Adaptive Authentication.
- Manage enterprise identity directories including Active Directory and Azure AD / Microsoft Entra ID.
- Implement and manage Role-Based Access Control (RBAC) and least-privilege access models.
- Lead identity governance initiatives including access requests, approvals, certifications, reviews, and segregation of duties.
- Design and manage integrations between IAM platforms and enterprise applications using SAML, OAuth 2.0, OpenID Connect, LDAP, SCIM, and REST APIs.
- Work with application teams to onboard applications into enterprise IAM platforms.
- Lead IAM integrations with SaaS, cloud, on-premises, and custom applications.
- Support Privileged Access Management (PAM) initiatives and privileged account controls.
- Establish IAM security standards, policies, procedures, and technical controls.
- Monitor IAM environments and troubleshoot authentication, authorization, provisioning, and federation issues.
- Lead root-cause analysis for complex IAM production incidents.
- Ensure IAM solutions meet enterprise security, regulatory, audit, and compliance requirements.
- Participate in security architecture reviews and IAM solution design discussions.
- Develop technical documentation, architecture diagrams, operational procedures, and runbooks.
- Coordinate IAM releases, upgrades, migrations, and production deployments.
- Work with internal and external stakeholders to gather requirements and deliver IAM solutions.
- Provide technical leadership during IAM projects and enterprise security initiatives.
Required Technical Skills
IAM / Identity Platforms
Strong hands-on experience with one or more of the following:
- Microsoft Entra ID / Azure AD
- Active Directory
- Okta
- SailPoint IdentityIQ / IdentityNow
- CyberArk
- Ping Identity
- ForgeRock
- Saviynt
- Other enterprise IAM / IGA platforms
Authentication & Federation
- SSO
- MFA
- SAML 2.0
- OAuth 2.0
- OpenID Connect / OIDC
- WS-Federation
- LDAP
- SCIM
- Certificate-based authentication
- Federation and identity-provider integrations