The IAM Architect will work closely with security, infrastructure, application, compliance, and business teams to define scalable and secure IAM solutions and drive the evolution of the organization's identity platform.
-
Define the IAM architecture and technical strategy for Phase 2 Saviynt implementation and transformation.
-
Design scalable, secure, and enterprise-ready Saviynt EIC solutions.
-
Assess the existing IAM environment and develop the target-state architecture.
-
Define IAM architecture standards, patterns, integration approaches, and best practices.
-
Architect identity lifecycle management covering Joiner, Mover, and Leaver (JML) processes.
-
Design solutions for:
-
Identity Governance and Administration (IGA)
-
Role-Based Access Control (RBAC)
-
Attribute-Based Access Control (ABAC)
-
Access Requests and Approvals
-
Access Certifications
-
Segregation of Duties (SoD)
-
Automated Provisioning and Deprovisioning
-
Architect Saviynt integrations with Active Directory, Entra ID/Azure AD, HR systems, ServiceNow, databases, SaaS applications, and enterprise platforms.
-
Define integration architecture using REST APIs, connectors, web services, and custom integrations.
-
Lead application onboarding architecture and establish reusable integration patterns.
-
Design identity data flows, authoritative sources, account correlation, and identity reconciliation strategies.
-
Architect workflows, policies, access models, and governance processes within Saviynt.
-
Evaluate existing IAM processes and recommend opportunities for automation, simplification, and modernization.
-
Provide technical leadership for Saviynt configuration, development, integration, testing, and deployment teams.
-
Establish security architecture and controls aligned with enterprise security and compliance requirements.
-
Collaborate with security and application teams to define appropriate access models and authorization strategies.
-
Support IAM transformation roadmaps, technical design decisions, and architectural reviews.
-
Identify technical risks, dependencies, and gaps and provide remediation recommendations.
-
Support solution design, proof of concepts, technical documentation, and architecture diagrams.
-
Provide guidance during SIT, UAT, deployment, production implementation, and post-production support.
-
Ensure IAM solutions are scalable, highly available, maintainable, and aligned with enterprise architecture standards.
-
Strong hands-on experience with Saviynt Enterprise Identity Cloud (EIC).
-
Extensive experience in IAM / IGA architecture and implementation.
-
Proven experience designing and delivering Saviynt implementation or transformation programs.
-
Strong understanding of identity lifecycle management and enterprise IAM architecture.
-
Expertise in RBAC, ABAC, SoD, access certifications, access governance, and provisioning.
-
Strong experience with Saviynt workflows, policies, roles, configurations, and application onboarding.
-
Experience designing Saviynt integrations and custom connectors.
-
Strong knowledge of REST APIs, JSON, web services, and integration patterns.
-
Experience with Active Directory, LDAP, Entra ID/Azure AD, and enterprise directories.
-
Experience integrating IAM platforms with HR, ITSM, SaaS, databases, and enterprise applications.
-
Strong understanding of identity data architecture, account correlation, reconciliation, and authoritative identity sources.
-
Ability to translate business and security requirements into scalable IAM architecture.
-
Strong communication and stakeholder management skills.
-
Saviynt certification.
-
Experience with ServiceNow integration.
-
Experience with CyberArk/PAM, SSO, MFA, and federation.
-
Knowledge of SAML, OAuth 2.0, and OpenID Connect.
-
Experience with AWS and Azure IAM.
-
Experience with Python, PowerShell, JavaScript, or other scripting languages.
-
Experience with IAM modernization and enterprise transformation programs.
-
Knowledge of security, audit, and regulatory compliance requirements.