IAM Expert Solution Architect

1 week, 5 days ago
Full-time
Senior
DevOps and Infrastructure
Ensono

Ensono

Ensono provides comprehensive hybrid IT solutions and governance, enabling businesses to navigate complexity and modernize their technology infrastructure, from cloud services to mainframe systems, tailored to each client's unique journey.

IT Services
1K-5K
Founded 1969

Description

  • Stand up an IAM team to accelerate application migrations through standard patterns and implementation.
  • Design and govern the technical IAM architecture for migration workloads.
  • Assess the current IAM landscape and define a target-state architecture aligned to enterprise standards.
  • Develop reusable IAM integration patterns across multiple application migrations.
  • Build and deploy common scaffolding services including logging, monitoring, secrets management, integration services, shared storage, middleware components, and platform utilities.
  • Ensure IAM-related services are production ready, secure, and consumable by application teams.
  • Document consumption patterns and onboarding procedures for shared services.
  • Define and approve security baselines and minimum compliance standards for IAM controls.
  • Provide technical guidance and mentorship to IAM engineers.
  • Collaborate with infrastructure and platform BAU teams to maintain alignment with enterprise standards.

Requirements

  • 10+ years of experience in Identity and Access Management.
  • Deep expertise across IAM domains with hands-on experience in CyberArk, HashiCorp Vault, ForgeRock, RSA, SailPoint, and ESF.
  • Strong experience with cloud IAM services such as AWS IAM and Azure AD/Entra ID.
  • Knowledge of security frameworks and compliance requirements such as SOX and GDPR.
  • Experience designing IAM solutions for large-scale enterprise migrations.
  • Strong understanding of Active Directory, LDAP, SAML, OAuth, and OpenID Connect.
  • Excellent communication skills with the ability to translate technical concepts for different audiences.
  • Experience in financial services or highly regulated industries is strongly preferred.
  • Relevant certifications such as CISSP, CISM, AWS, Azure, CyberArk Certified Delivery Engineer, or SailPoint Certified IdentityIQ Engineer are preferred.

Benefits

  • Annual base salary range of $140,000 to $182,000.
  • Annual bonus plan based on company and individual performance, subject to eligibility.
  • Equity grant through the Associate Equity Appreciation Program.
  • Unlimited Paid Days Off.
  • Three health plan options plus dental, vision, disability, life, AD&D, and flexible spending accounts.
  • 401(k) with company match.
  • Family-forming benefits including fertility coverage and adoption/surrogacy reimbursement.
  • Paid childbearing and paternal leave.
  • Education reimbursement, student loan assistance, or 529 college funding.
  • Sabbatical leave, wellness program, and flexible work schedule.
  • Remote work flexibility when not required on a client site.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Lead GenAI Cloud Developer

Elastic 1K-5K Internet Software & Services

Elastic is hiring a Lead GenAI Cloud Developer to evolve ElasticGPT from a chat assistant into an agentic, task-executing platform that improves internal productivity through enterprise-grade AI systems.

AWS Azure Computer Vision Confluence Docker Elasticsearch GCP Generative AI GitHub Hugging Face JIRA Kibana Kubernetes Logstash Microservices NLP OpenTelemetry Python PyTorch TensorFlow TypeScript Vertex AI
1 hour, 14 minutes ago

Ingeniero de Soporte Cloud AWS

NEORIS 5K-10K Internet Software & Services

NEORIS, now part of EPAM, is hiring a Cloud AWS Support Engineer to operate and govern AWS environments, support CI/CD and DevSecOps processes, and help maintain stable, secure cloud infrastructure.

AWS CI/CD DevSecOps Terraform
1 hour, 20 minutes ago

IT Infrastructure Security Operations Engineer

JMA Wireless 251-1K Wireless Telecommunication Services

JMA is hiring an IT Infrastructure Security Operations Engineer in Syracuse, NY to own the day-to-day security posture of its enterprise infrastructure and keep Windows and Linux environments continuously hardened and audit-ready.

Active Directory Ansible Bash Linux PowerShell Puppet Python SIEM
1 hour, 43 minutes ago

Endpoint Engineer - Factory Systems

Anduril Industries 1K-5K Aerospace & Defense

Anduril Industries is hiring an Endpoint Engineer to own and scale device management across enterprise and factory-floor endpoints, supporting secure, reliable operations in a defense technology environment.

Android Ansible Bash Go iOS Linux PowerShell Python Terraform
1 hour, 44 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers