IAM Solutions Architect
Quick Summary
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a IAM Solutions Architect based in United States.
This role offers the opportunity to shape enterprise identity programs across both established and emerging identity domains. You will lead architecture initiatives focused on non-human identities, including workloads, machine identities, service accounts, API credentials, bots, and AI agents. You will also contribute to SailPoint IdentityIQ and Identity Security Cloud engagements, bringing breadth across multiple platforms and identity models. The position combines deep technical architecture with client-facing advisory work, design leadership, and strategic problem-solving. You will create detailed architectures, guide implementation teams, and help clients establish sustainable governance and operating models. This is a remote-first opportunity suited to an experienced identity professional who enjoys working across technologies, solving complex problems, and taking ownership of client outcomes.
- Lead non-human identity program architecture covering discovery, inventory, lifecycle management, ownership, credential and secret management, rotation, attestation, and decommissioning.
- Design reference architectures for workforce, customer, and non-human identity environments, including workloads, machine identities, service accounts, API credentials, bots, and AI agents.
- Assess AI agent identity models, lifecycles, and control requirements as organizations adopt increasingly autonomous technologies.
- Develop architecture review and cybersecurity artifacts, including reference architecture diagrams, data and process flows, detailed security diagrams, and technical documentation.
- Lead program assessments, vendor and technology evaluations, future-state architecture, governance model design, platform architecture reviews, and product health checks.
- Own solution architecture and design authority across non-human identity implementations and SailPoint engagements.
- Lead design workshops and proofs of concept, establish technical decisions, and provide clear direction for engineering teams.
- Define integration patterns, data models, access models, and non-functional requirements covering security, scalability, resiliency, and performance.
- Communicate architecture decisions and implementation progress to technical and non-technical client stakeholders, supporting successful adoption of proposed solutions.
- Provide technical guidance to resolve complex identity challenges while remaining engaged enough to understand implementation realities.
- Support roadmap development, certification strategy, configuration and tuning, and program reporting.
- Lead knowledge transfer and operating-model design to enable client teams to independently operate and evolve their identity programs.
- Contribute to proposals, statements of work, and solution scoping when appropriate.
Requirements
~2 min read- 8+ years of experience in identity and access management, including significant experience as a solutions architect, technical lead, principal engineer, or similar senior technical role.
- Strong expertise in at least one identity domain, such as identity governance, privileged access management, or identity provider and authentication platforms.
- Experience with technologies such as SailPoint IdentityIQ or Identity Security Cloud, Saviynt, CyberArk, Delinea, BeyondTrust, Okta, Microsoft Entra ID, or Ping is highly relevant.
- Broad understanding of IAM capabilities, including governance, privileged access, secrets management, certificate management, authentication, MFA, identity providers, and authorization.
- Strong understanding of workforce, customer, and non-human identities, with the ability to identify and assess different NHI types and their lifecycle characteristics.
- Ability to assess enterprise environments and identify non-human identities, ownership models, authentication methods, and lifecycle requirements.
- Working knowledge of AI agent types, lifecycles, and associated identity and security controls; direct experience governing agent fleets is not required.
- Ability to create detailed technical and security artifacts suitable for architecture review boards and cybersecurity reviews.
- Strong client-facing communication skills, with the ability to engage technical architects and clearly explain complex decisions to non-technical stakeholders.
- Ability to challenge client assumptions constructively, explain technical risks, and recommend practical solutions.
- Comfortable working independently on smaller engagements and taking ownership of the client relationship and technical outcome.
- Demonstrated curiosity and continuous learning, including evidence of self-directed technical development such as home labs, side projects, or independently acquired skills.
- U.S.-based and authorized to work in the United States.
- Experience with NHI, machine identity, secrets management, certificate lifecycle management, cloud identity, Zero Trust, or regulated industries is a plus.
- SailPoint, CyberArk, Okta, Microsoft Entra, CISSP, or similar certifications are helpful but are not required.
- Prior experience with a formal architect title is not required when equivalent technical depth and architecture experience can be demonstrated.
What We Offer
~2 min readLocation & Eligibility
Listing Details
- Posted
- September 28, 2026
- First seen
- September 28, 2026
- Last seen
- September 28, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 68%
- Scored at
- September 28, 2026
Signal breakdown
Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.