Overview
Remote
On Site
160k - 180k
Full Time
Skills
Security Engineering
Authorization
IT Management
Cloud Computing
Microsoft Azure
SSO
Multi-factor Authentication
RBAC
Terraform
Identity Management
CyberArk
Authentication
SAML
OAuth
OIDC
Scripting
Python
Windows PowerShell
Bash
Application Development
Regulatory Compliance
PCI DSS
ISO/IEC 27001:2005
System On A Chip
CISSP
SIEM
Computer Networking
Firewall
API
SailPoint
Amazon Web Services
Cloud Security
Continuous Integration
Continuous Delivery
Collaboration
Insurance
SAP BASIS
Job Details
We're partnering with a global enterprise organization seeking a Cloud IAM Security Architect to join their security engineering team full-time. This is a remote position focused on AWS-first cloud identity and access architecture, with additional exposure to Azure. This role will lead the design and implementation of scalable IAM and PAM solutions in modern enterprise cloud environments.
This is a great opportunity for a hands-on cloud IAM architect who wants to drive secure identity design across multi-cloud ecosystems, improve policy governance, and influence how modern authentication and authorization are handled across large-scale applications and infrastructure. The role blends technical leadership, project ownership, and deep hands-on engineering with technologies like Terraform, SSO/MFA, and AWS IAM. APPLY NOW
Required Skills & Experience
Tech Breakdown
The Offer
Applicants must be currently authorized to work in the US on a full-time basis now and in the future.
This is a great opportunity for a hands-on cloud IAM architect who wants to drive secure identity design across multi-cloud ecosystems, improve policy governance, and influence how modern authentication and authorization are handled across large-scale applications and infrastructure. The role blends technical leadership, project ownership, and deep hands-on engineering with technologies like Terraform, SSO/MFA, and AWS IAM. APPLY NOW
Required Skills & Experience
- 5+ years in a Cloud IAM architect or senior security engineer role
- Deep hands-on experience with AWS IAM; Azure experience preferred
- Expertise in SSO, MFA, RBAC, ABAC, and Identity Federation services
- Strong skills in Terraform, CloudFormation, or other IaC tools
- Experience with privileged access management (CyberArk, BeyondTrust, etc.)
- Familiar with authentication protocols: SAML, OAuth, OIDC, FIDO2
- Scripting experience (e.g., Python, PowerShell, Bash)
- Experience integrating IAM with CI/CD pipelines and application development teams
- Familiarity with security and compliance frameworks (NIST, PCI DSS, ISO 27001, SOC2)
- Professional certifications like AWS Security Specialty or CISSP
- Experience with cloud security tools and SIEM (Wiz, CrowdStrike, Veza, etc.)
- Knowledge of networking, firewalls, API gateways, and delegated administration
- Experience with IGA tools such as SailPoint, Okta, Saviynt, or Ping
Tech Breakdown
- 70% AWS IAM & Cloud Security Architecture
- 20% IAM Automation, CI/CD, IaC
- 10% Identity Governance, Federation, PAM
- 85% Hands-On Engineering & IAM Architecture
- 15% Team Collaboration & Cross-Functional Strategy
The Offer
- Bonus OR Commission eligible
- Medical, Dental, and Vision Insurance
- Vacation Time
- Stock Options
Applicants must be currently authorized to work in the US on a full-time basis now and in the future.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.