Identity & Access Management (IAM) Architect
Apogee Global RMS • San Jose, California, United States
Posted: April 14, 2026
Job Description
Apogee Global RMS is seeking for a client a seasoned "Identity & Access Management (IAM) Architect" to design, implement, and optimize enterprise‑wide IAM strategies across a complex, multi‑cloud environment. This role is ideal for a security leader who thrives at the intersection of architecture, governance, and hands‑on engineering — and who can drive scalable, secure identity frameworks that support business growth.
Key Responsibilities:
- Architect and implement IAM solutions across cloud and on‑prem environments (Azure AD, Okta, AWS IAM, etc.)
- Lead the design of identity lifecycle management, authentication, authorization, and privileged access frameworks
- Develop and enforce IAM governance, policies, and standards
- Partner with Security, Infrastructure, DevOps, and Application teams to integrate IAM into enterprise systems
- Evaluate and implement modern identity technologies (SSO, MFA, PAM, Zero Trust)
- Conduct risk assessments, gap analyses, and remediation planning
- Oversee IAM roadmap, scalability planning, and continuous improvement initiatives
- Provide technical leadership, mentoring, and best‑practice guidance to engineering teams
- 7+ years of experience in IAM architecture, engineering, or security architecture
- Deep expertise with Azure AD / Entra, Okta, AWS IAM, or similar identity platforms
- Strong understanding of Zero Trust, RBAC/ABAC, SAML/OAuth/OIDC, and modern authentication protocols
- Experience implementing PAM solutions (CyberArk, BeyondTrust, Delinea, etc.)
- Proven ability to design scalable IAM architectures in enterprise environments
- Strong knowledge of regulatory and compliance frameworks (SOX, NIST, ISO, HIPAA, etc.)
- Excellent communication skills with the ability to influence technical and executive stakeholders
Preferred Skills:
- Experience with CI/CD integration for identity automation
- Background in cloud security architecture
- Scripting or automation experience (PowerShell, Python, Terraform)
- Certifications such as CISSP, CCSP, Azure Security Engineer, Okta Certified Professional, or similar
Additional Content
Apogee Global RMS is seeking for a client a seasoned "Identity & Access Management (IAM) Architect" to design, implement, and optimize enterprise‑wide IAM strategies across a complex, multi‑cloud environment. This role is ideal for a security leader who thrives at the intersection of architecture, governance, and hands‑on engineering — and who can drive scalable, secure identity frameworks that support business growth.
Key Responsibilities:
- Architect and implement IAM solutions across cloud and on‑prem environments (Azure AD, Okta, AWS IAM, etc.)
- Lead the design of identity lifecycle management, authentication, authorization, and privileged access frameworks
- Develop and enforce IAM governance, policies, and standards
- Partner with Security, Infrastructure, DevOps, and Application teams to integrate IAM into enterprise systems
- Evaluate and implement modern identity technologies (SSO, MFA, PAM, Zero Trust)
- Conduct risk assessments, gap analyses, and remediation planning
- Oversee IAM roadmap, scalability planning, and continuous improvement initiatives
- Provide technical leadership, mentoring, and best‑practice guidance to engineering teams
- 7+ years of experience in IAM architecture, engineering, or security architecture
- Deep expertise with Azure AD / Entra, Okta, AWS IAM, or similar identity platforms
- Strong understanding of Zero Trust, RBAC/ABAC, SAML/OAuth/OIDC, and modern authentication protocols
- Experience implementing PAM solutions (CyberArk, BeyondTrust, Delinea, etc.)
- Proven ability to design scalable IAM architectures in enterprise environments
- Strong knowledge of regulatory and compliance frameworks (SOX, NIST, ISO, HIPAA, etc.)
- Excellent communication skills with the ability to influence technical and executive stakeholders
Preferred Skills:
- Experience with CI/CD integration for identity automation
- Background in cloud security architecture
- Scripting or automation experience (PowerShell, Python, Terraform)
- Certifications such as CISSP, CCSP, Azure Security Engineer, Okta Certified Professional, or similar