Define and evolve cloud IAM architecture across authentication, authorization, federation, and identity governance.
Own and drive the enterprise cloud IAM strategy, including modern authentication, non‑human identities, and emerging AI use cases.
Lead cloud security architecture reviews and influence engineering roadmaps toward secure, scalable outcomes.
Design and implement cloud-native IAM patterns, including least privilege, policy‑as‑code, workload identity, conditional access, and service‑to‑service authentication.
Establish and enforce IAM guardrails for Infrastructure as Code (IaC) using automated policy controls.
Streamline secure access workflows through standardized roles, self‑service access, and efficient onboarding.
Monitor and reduce identity-related risk (excessive permissions, misconfigurations, toxic access paths) and translate insights into architectural improvements.
Define and align policy-driven privileged access controls across cloud platforms, applications, and CI/CD pipelines.
Partner with cloud engineering, DevSecOps, security, and risk/compliance teams to ensure alignment with enterprise security and regulatory standards.
Requirements
8+ years of experience in IAM, Cloud Security, Security Architecture, or related enterprise IT roles
3+ years as a technology/security architect
Bachelor’s degree or equivalent combination of education and experience
Experience leading technical initiatives (people or matrix leadership)
Multi‑cloud IAM expertise (AWS, Azure, GCP, OCI)
Background in regulated environments (financial services preferred) with exposure to SOX, SOC, GDPR, DORA