We are seeking an experienced Identity and Access Management (IAM) Enterprise Architect for our banking client, to lead the design and delivery of a next-generation IAM ecosystem. This is a senior leadership role focused on implementing zero trust architecture and passwordless authentication using FIDO2 standards, while leveraging modern IGA and PAM platforms.
You will develop and execute a comprehensive IAM roadmap, consolidate multiple security tools into a unified strategy, and collaborate with business and technical teams to enhance security, reduce risk, and improve user experience across the enterprise.
Key Responsibilities
- Design and deliver a zero trust IAM architecture with passwordless authentication across a primarily Microsoft ecosystem (Entra ID, Intune, MS Authenticator) complemented by Saviynt and CyberArk/Conjur.
- Serve as the technical lead for IAM, ensuring architecture aligns with the roadmap and integrates with HR systems, ITSM, and other enterprise platforms.
- Oversee FIDO2 implementation and ensure best practices for secure authentication.
- Conduct security assessments and recommend enhancements aligned with zero trust principles.
- Collaborate with IT, security, and business units to define identity governance policies.
- Advocate for user-friendly authentication solutions, including biometrics and hardware-based methods.
- Establish monitoring, reporting, and metrics to track implementation and effectiveness.
- Develop technical documentation, training materials, and awareness programs.
Requirements
- Bachelor’s degree in Computer Science, IT, Cybersecurity, or related field (Master’s preferred).
- 8+ years’ experience in IAM, with significant experience as an Architect.
- Strong expertise in FIDO2, IGA, PAM, and authentication technologies in complex environments.
- Familiarity with security standards and frameworks such as NIST, ISO 27001.
- Excellent analytical, problem-solving, and communication skills.
- Relevant certifications such as CISSP, CISM, or CISA are highly desirable.
This is a high-impact, senior role for an innovative IAM professional looking to shape the future of enterprise identity security.