Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
CI
Compunnel, Inc.
IAM Architecture Strategy Consultant
Career Insights for Cyber Security Architect
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Ohio data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Cyber Security Architect builds and develops systems that protect the security of large databases, including databases with customer information and patient files. Includes understanding of client computer systems, potential weak points in security, and monitoring and response to security issues.
$122,114 / year median in Ohio
-2% projected decline
Job Description
Job Summary:
The IAM Architecture Strategy Consultant is responsible for defining enterprise IAM architecture and roadmaps, designing scalable and secure identity solutions across cloud, on-premises, and hybrid environments, and establishing IAM standards, policies, and reference architectures. This role provides architecture governance, leads Zero Trust and Identity Security initiatives, and drives Identity Governance, Administration, authentication, privileged access, and identity lifecycle automation strategies.Key Responsibilities:
- Define enterprise IAM architecture, strategy, roadmaps, standards, policies, and reference architectures.
- Design scalable and secure IAM solutions for cloud, on-premises, and hybrid environments.
- Review and approve IAM-related solution designs and technical standards.
- Lead Zero Trust and Identity Security initiatives.
- Design and govern Joiner-Mover-Leaver (JML) processes and identity lifecycle automation.
- Define Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC) models.
- Design segregation-of-duty controls and lead access certification and governance initiatives.
- Architect enterprise SSO solutions using SAML 2.0, OAuth 2.0, OpenID Connect, and WS-Federation.
- Design MFA and passwordless authentication solutions.
- Define Conditional Access policies and Identity Protection controls.
- Architect privileged access security frameworks.
- Provide L3 ownership and engineering support across
IBM ISIM, IBM ISAM, IBM
IGI, Microsoft Entra ID, SailPoint IdentityIQ/ISC, Saviynt, Okta, CyberArk, and Active Directory.- Govern role assignments and IAM governance workflows.
- Integrate IAM controls into CI/CD pipelines.
- Create solution architecture, high-level design, and low-level design documents.
- Maintain IAM reference architectures and knowledge repositories.
- Review technical standards and operational runbooks.
- Lead L3 engineering and architecture teams and support large-scale IAM environments.
Required Qualifications:
- 10+ years of experience in IAM and cybersecurity.
- 5+ years of experience designing enterprise IAM solutions.
- Experience supporting large-scale IAM environments.
- Experience leading L3 engineering and architecture teams.
- Strong expertise in IAM, PAM, Identity Governance, RBAC, ABAC, Conditional Access, and Identity Threat Detection.
- Development experience with PowerShell and Python.
- Experience with REST APIs, JSON, SQL, and Terraform.
Preferred Qualifications:
- Experience supporting IAM environments with 100,000+ users.
- Cloud-native IAM architecture experience.
- Experience working on enterprise transformation programs.
- Experience with IAM integration activities related to mergers and acquisitions.
Certifications:
- Microsoft SC-300.
- Microsoft AZ-500.
- CISSP.
- CCSP.
- SailPoint IdentityIQ Engineer.
- Saviynt Certified Professional.
- CyberArk Defender/Sentry.
- TOGAF.
- ITIL Foundation.