StratgInc is Looking for IAM Architect for Remote position for direct Client Please share resumes asap
Key Responsibilities
· Strategy & Architecture: Develop and maintain the enterprise IAM reference architecture, roadmap, and policies.
· Design & Implementation: Design end-to-end solutions for SSO, MFA, Federation (SAML, OIDC), and RBAC/ABAC.
· Identity Lifecycle Management: Architect processes for user onboarding, offboarding, and role changes (Joiner/Mover/Leaver).
· Privileged Access Management (PAM): Secure privileged accounts, service accounts, andsecrets, often using tools like CyberArk or similar technologies.
· Governance & Compliance: Ensure compliance with regulations (e.g., SOX, HIPAA) through access reviews, certifications, and auditing tools.
· Integration & Support: Lead integration of IAM solutions with enterprise applications (e.g., SAP, AWS, Azure/Entra ID) and provide troubleshooting support.
· Leadership: Partner with security, IT, and business teams to align IAM strategy with business objectives and mentor junior engineers.
Core Competencies & Skills
· Technical Expertise: Deep knowledge of IAM products (e.g., SailPoint, CyberArk, Ping Identity, Microsoft Entra ID).
· Security Frameworks: Strong understanding of Zero Trust architecture, NIST, and risk management.
· Protocols & Standards: Proficiency in OAuth, OIDC, SAML, SCIM, and LDAP.
· Communication: Ability to explain complex technical concepts to executive stakeholders and write clear documentation
· Analytical Skills: Strong troubleshooting, root-cause analysis, and threat modeling capabilities.
Typical Requirements
· Experience: 7–10+ years of experience in IAM, cybersecurity, or IT infrastructure.
· Education: Bachelor’s degree in Computer Science, Cybersecurity, or related field (or equivalent experience).
· Certifications: Preferred certifications often include CISSP, CISM, or vendor-specific certifications (e.g., SailPoint, Microsoft Azure).
Common Tools
· IGA/IAM Platforms: SailPoint IdentityIQ, Okta, Ping Identity.
· PAM Platforms: CyberArk, BeyondTrust.
· Cloud & Directory: Microsoft Entra ID (Azure AD), AWS IAM, Active