IAM Architect

Tata Consultancy Services Ltd

  • Alpharetta, GA
  • 12 days ago
  • $120,000–$130,000 Per Year

Highlights

An IAM Architect is responsible for designing, implementing, and governing identity and access management solutions that ensure secure access to enterprise systems, applications, and data. This role bridges business requirements, cybersecurity, and IT architecture to enforce robust identity governance and compliance.

Numbers & Facts

LocationAlpharetta, GA
Salary$120,000–$130,000 Per Year

Description

Must Have Technical/Functional Skills

An IAM Architect is responsible for designing, implementing, and governing identity and access management solutions that ensure secure access to enterprise systems, applications, and data. This role bridges business requirements, cybersecurity, and IT architecture to enforce robust identity governance and compliance.

  1. Architecture & Design
  • Design and develop enterprise IAM architecture aligned with security and business goals
  • Define identity lifecycle management (joiner, mover, leaver processes)
  • Architect solutions for:

o Authentication (SSO, MFA, passwordless)

o Authorization (RBAC, ABAC)

o Federation (SAML, OAuth, OIDC)

  • Develop zero trust security models for identity
  1. Implementation & Integration
  • Lead implementation of IAM platforms such as:

o Azure AD / Entra ID

o Okta

o SailPoint o CyberArk o Ping Identity

  • Integrate IAM systems with:

o Cloud platforms (AWS, Azure, GCP)

o On-prem systems (Active Directory, LDAP)

o Enterprise applications (SAP, Salesforce, Workday)

  • Enable API security and identity federation
  1. Governance, Risk & Compliance
  • Establish Identity Governance & Administration (IGA) frameworks
  • Design role models and access certification campaigns
  • Ensure compliance with standards:

o SOX, GDPR, HIPAA, ISO 27001

  • Implement audit logging, monitoring, and reporting
  1. Security & Risk Management
  • Enforce least privilege & segregation of duties (SoD)
  • Design solutions to mitigate identity-based threats
  • Integrate IAM with:

o SIEM (e.g., Splunk, Sentinel) o PAM (Privileged Access Management)

  • Conduct risk assessments and threat modeling
  1. Strategy & Roadmap
  • Define IAM strategy and technology roadmap
  • Evaluate and recommend IAM tools and platforms
  • Drive cloud identity transformation initiatives
  • Promote adoption of passwordless and Zero Trust frameworks
  1. Stakeholder Collaboration
  • Work with:

o Security teams

o IT operations

o Application owners

o Compliance and audit teams

  • Provide technical leadership and mentorship to IAM engineers
  • Communicate complex IAM concepts to non-technical stakeholders

Required Skills & Qualifications Technical Skills

  • Deep knowledge of:

o SSO, MFA, Federation protocols (SAML, OAuth 2.0, OpenID Connect)

o Identity lifecycle management

  • Hands-on experience with IAM tools:

o Azure AD / Entra ID, Okta, SailPoint, Ping, CyberArk

  • Strong understanding of:

o Active Directory / LDAP

o Cloud security (AWS IAM, Azure RBAC)

o API security

  • Scripting/programming:

o PowerShell, Python, Java, or similar

TCS Employee Benefits Summary:

Discretionary Annual Incentive.

Comprehensive Medical Coverage: Medical & Health, Dental & Vision, Disability Planning & Insurance, Pet Insurance Plans.

Family Support: Maternal & Parental Leaves.

Insurance Options: Auto & Home Insurance, Identity Theft Protection.

Convenience & Professional Growth: Commuter Benefits & Certification & Training Reimbursement.

Time Off: Vacation, Time Off, Sick Leave & Holidays.

Legal & Financial Assistance: Legal Assistance, 401K Plan, Performance Bonus, College Fund, Student Loan Refinancing.

Salary Range: $120,000 - $130,000 a year

Similar Jobs

See more jobs