HamburgerMenu
hirist

Job Description

Description :

Experience : 10+ Years

Locations : Delhi NCR, Pune, and Bangalore

Role Type : Full-Time / Lead Position

Role Summary :

The IAM / PAM Lead Architect is a strategic leadership position responsible for the end-to-end vision, design, and governance of enterprise-scale Identity and Access Management solutions. With over a decade of experience, you will architect secure identity frameworks across hybrid and multi-cloud environments, ensuring seamless Identity Lifecycle Management, Access Governance, and Privileged Access Management (PAM). This role requires a hands-on architect who can bridge the gap between complex business requirements and technical execution, utilizing industry-leading tools like CyberArk, BeyondTrust, Azure AD (Entra ID), and Okta. You will be the primary authority for IAM reference architectures, ensuring all integrations align with global security policies while providing technical mentorship to delivery teams and supporting high-level pre-sales initiatives.

Responsibilities :

- Enterprise Architecture Design : Define and maintain the overarching IAM reference architecture, standards, and integration blueprints for hybrid and multi-cloud infrastructures.

- PAM/PIM Implementation : Design and deploy robust Privileged Access Management (PAM) and Privileged Identity Management (PIM) solutions using CyberArk, BeyondTrust, Delinea, or ManageEngine.

- Identity Governance & Administration (IGA) : Architect end-to-end identity lifecycle management and access governance frameworks to ensure automated and secure user provisioning.

- Federation & Access Management : Build and manage enterprise federation services and authentication protocols (SAML, OIDC, OAuth) using Azure AD (Entra ID), Okta, or PingIdentity.

- CIAM Strategy : Design and implement Customer Identity & Access Management (CIAM) solutions to provide secure, scalable, and frictionless experiences for external users.

- Maturity Assessments : Conduct comprehensive IAM maturity assessments and pre-assessment studies to define Target Operating Models (TOM) and strategic roadmaps.

- Custom Integration & Development : Lead the development of custom connectors and complex API integrations between IAM platforms and enterprise cloud applications.

- Technical Governance : Provide architectural oversight and leadership to delivery teams, ensuring all implementations adhere to security policies and compliance requirements.

- Stakeholder & Pre-sales Engagement : Partner with business leaders to translate requirements into technical solutions and support business development through expert-level solutioning.

- Security & Compliance Alignment : Ensure all identity solutions meet global security standards (e.g., NIST, ISO 27001) and regulatory compliance (GDPR, SOC2, etc.).

Technical Requirements :

- Core Experience : 10+ years in Identity & Access Management with a proven track record of designing large-scale, decentralized identity ecosystems.

- PAM Expertise : Deep hands-on experience with CyberArk, BeyondTrust, or Delinea for managing privileged credentials and session monitoring.

- Access Management Proficiency : Expert knowledge of Azure AD (Entra ID), Okta, and PingIdentity, including B2B and B2C configurations.

- Protocol Mastery : Advanced understanding of SAML 2.0, OAuth 2.0, OpenID Connect (OIDC), and SCIM protocols.

- Cloud Security : Strong experience with identity services across AWS, Azure, and GCP, including cross-cloud identity federation.

- Automation & Integration : Proficiency in developing custom integrations using Python, Java, or PowerShell and RESTful APIs.

- Governance Tools : Experience with IGA platforms such as SailPoint, Saviynt, or IBM Security Verify.

Preferred Skills :

- Mentorship & Leadership : Demonstrated ability to lead junior consultants and manage technical delivery in a fast-paced environment.

- Zero Trust Architecture : Strong understanding of implementing Zero Trust principles within an identity-centric security model.

- Infrastructure as Code (IaC) : Familiarity with automating IAM deployments using Terraform or CloudFormation.

- Consultative Approach : Exceptional communication skills with the ability to lead "Pre-assessment" workshops and define target operating models for C-suite stakeholders.

- Certifications : Professional certifications such as CISSP, CISM, CyberArk CDE, or Okta Certified Professional/Consultant.


info-icon

Did you find something suspicious?

Similar jobs that you might be interested in