Cybersecurity Architect (IAM/ PAM/ AD)
Location: Irving, TX/ Charlotte, NC/ Pheonix, AZ Hybrid Role
Long Term Project
Key Responsibilities:
Design and implement RBAC models, access policies, and least-privilege frameworks
Define and enforce security baseline standards aligned to enterprise and regulatory requirements
Architect governance workflows for access control, approvals, and auditability
Integrate security controls across data, APIs, applications, and enterprise systems
Collaborate with engineering teams to embed secure-by-design principles
Support design of lifecycle controls including provisioning, reviews, and decommissioning
Ensure alignment with compliance, audit, and risk management requirement
Skills:
Strong expertise in RBAC design, IAM, and access governance
Knowledge of security baseline frameworks and hardening standards
Experience designing security controls for enterprise platforms
Understanding of auditability, compliance, and risk-driven security design
Familiarity with IAM/IGA systems and SSO integration
Understanding of API security, authentication, and authorization patterns
Knowledge of application security and secure coding practices
Experience working with cloud and/or hybrid enterprise environments
Experience with role lifecycle management, segregation of duties (SoD), and approval workflows
Understanding of regulatory and compliance expectations (e.g., BFSI, enterprise security standards)
Ability to design audit-ready systems with traceability and logging
Strong experience working in Agile environments
Ability to work closely with architects, developers, and business stakeholders
Strong communication and stakeholder engagement skills
Experience
10+ years of experience in cybersecurity or security architecture roles
Hands-on experience designing RBAC and IAM controls for enterprise systems
Experience defining and implementing security baselines or configuration standards
Experience working on platforms requiring governance, auditability, and compliance
Prior experience in regulated industries (e.g., Banking, Financial Services) preferred
Experience with security benchmarks (e.g., CIS, STIG)
Familiarity with policy-as-code or automated compliance frameworks
Exposure to workflow-driven platforms and lifecycle governance models
Experience supporting large-scale transformation or platform modernization initiatives