Identity and Access Management Architect jobs in United States
cer-icon
Apply on Employer Site
company-logo

Deloitte · 1 month ago

Identity and Access Management Architect

Deloitte Global is the engine of the Deloitte network, and they are seeking a Senior Manager-level IAM Architect to define and drive the technical strategy and architecture for Identity and Access Management across the organization. This role involves strategic leadership, solution design, and stakeholder engagement to secure identities and improve user experience across digital channels.

AccountingConsultingFinancial ServicesLegalProfessional ServicesRisk Management
check
Growth Opportunities
check
H1B Sponsor Likelynote

Responsibilities

Partner with Senior IAM leadership team to define and own the enterprise IAM architecture, strategy, reference patterns, and roadmaps across authentication, authorization, identity lifecycle, privileged access, and account protection
Engage in executive level leadership conversations, translate business goals into IAM requirements, coordinate with IAM product owners on technical feasibility to ensure solutions scale and interoperate across on-premises, cloud, and hybrid environments
Partner with IAM product technical leads to assist with technical design and implementation for authentication (e.g. MFA, SSO, etc), authorization models (e.g. RBAC, ABAC, etc), identity provisioning, lifecycle management, and privileged access controls
Champion innovation with Identity and Access Management tools, evaluate and provide recommendations to product owners for consideration and integration with the existing platform, while balancing security, privacy, and usability
Architect secure integrations between IAM platforms and applications, directories, cloud services, and CI/CD pipelines, set standards and reusable patterns for developers
Partner with IAM Sr. Leadership team and IAM product technical leads to address IAM risk assessments, threat modeling, and remediation strategies, partner with security, risk, and compliance teams to implement controls and measure risk reduction
Partner with IAM product technical leads to oversee incident response activities as they relate to identity compromise, and lead post-incident root-cause analysis and remediation
Drive adoption: create technical guidance, architecture diagrams, and executive-level briefings, mentor architects and senior engineers on IAM best practices
Collaborate with product, engineering, and business leaders to prioritize roadmap items, measure outcomes (security posture, access-related incidents, time-to-provision), and demonstrate business value
Ensure compliance with relevant regulations and internal policies, support audits and attestations related to identity and access controls

Qualification

IAM architectureAuthentication protocolsIAM technologiesStakeholder managementZero-trust identity modelsIdentity governancePrivileged access managementCloud integrationCommunication skillsStrategic thinking

Required

10+ years of IAM experience with progressive technical leadership
Proven track record designing, delivering, and operating enterprise-scale IAM solutions across cloud and on-prem environments
Deep technical knowledge of authentication/authorization protocols and standards (OAuth2/OIDC, SAML, SCIM, LDAP) and modern IAM architectures
Hands-on experience with at least two major IAM technologies (e.g., Entra ID/Azure AD, Microsoft AD, CyberArk, SailPoint, Ping Identity)
Strong stakeholder management and communication skills, able to present technical concepts to executive audiences and translate business needs into technical requirements
Experience leading vendors, technical teams, and cross-functional workstreams to successful outcomes
Experience with zero-trust identity models, identity governance, privileged access management, and modern authentication modalities (passwordless, biometrics, adaptive MFA)
Balance strategic thinking with the ability to roll up sleeves and deliver technically where needed
Identity Providers / Directories: Entra ID/Azure AD, Microsoft AD
Identity Governance and PAM: SailPoint, CyberArk
Authentication & Federation: Ping Identity, OAuth2/OIDC, SAML, SCIM
Cloud & DevOps integration: AWS/Azure/GCP identity services, CI/CD tooling

Preferred

Experience in a consulting or large enterprise environment preferred
Advanced degree (MS) or certifications (e.g., CISSP, CISM, SABSA, TOGAF, vendor-specific IAM certs)
Prior experience building IAM programs or working in high-regulation industries (finance, healthcare, government)

Company

Deloitte

company-logo
Deloitte is a business consulting company that offers audit, consulting, financial advisory, and tax services.

H1B Sponsorship

Deloitte has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (6871)
2024 (4911)
2023 (5604)
2022 (8090)
2021 (5993)
2020 (10388)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Anne Muraya
Chief Executive Officer - East Africa
linkedin
leader-logo
Joe Ucuzoglu
Global Chief Executive Officer
linkedin
Company data provided by crunchbase