Cloud IAM Solutions Architect
Listed on 2026-01-03
-
IT/Tech
Cybersecurity, Systems Engineer
Duties & Responsibilities
Architect Next-Gen IAM Solutions: Design secure, scalable architecture across the IAM landscape, including CIAM, IGA, PAM, MFA, SSO, federation
, and identity lifecycle governance
.Implement Cutting-Edge Tech: Leverage tools like Azure AD, Beyond Trust, Okta, Ping Identity, Forge Rock
, and AWS IAM to deliver best-in-class access experiences.Shape Governance & Policy: Define and implement RBAC, ABAC
, and authentication protocols like SAML, OAuth, OpenID Connect
, aligned with NIST and ISO 27001 frameworks.Optimize Identity Infrastructure: Manage and fine-tune Azure AD
, Active Directory
, DNS
, Kerberos
, NTLM
, PKI
, GPOs
, Certificate Authorities
, and more.Drive Seamless Integration: Ensure smooth, secure integration of IAM solutions across enterprise apps
, cloud platforms
, and third-party services
.Lead with Security First: Proactively identify and mitigate identity-related risks, focusing on privileged access management and identity lifecycle controls.
Own the Full Lifecycle: From initial discovery through execution and post-deployment, you’ll lead IAM architecture on complex, high-impact client programs.
Be a Strategic Partner: Work with stakeholders to turn complex identity requirements into clear, compliant, scalable solutions that align with business goals.
Ensure Delivery Excellence: Oversee solution quality and architectural governance, lead troubleshooting and incident resolution, and ensure delivery meets or exceeds client expectations.
Support Business Growth: Play a key role in proposals, solution design, level-of-effort estimation, and executive presentations.
Team Player: all other duties assigned.
The above is intended to describe the general contents and requirements of work being performed by people assigned to this classification. It is not intended to be construed as an exhaustive statement of all duties, responsibilities or skills of personnel so classified.
Compensation:
Compensation for roles at Public Consulting Group varies depending on a wide array of factors including, but not limited to, the specific office location, role, skill set, and level of experience. As required by applicable law, PCG provides a reasonable range of compensation for this role. In addition, PCG provides a range of benefits for this role, including medical and dental care benefits, 401k, PTO, parental leave, bereavement leave.
Required Skills
Deep expertise in Microsoft identity platforms
: Active Directory
, Azure AD
, Conditional Access
, Office 365 Roles
, Intune
, and Service Principals
.Strong grasp of modern identity protocols and federation standards
: OAuth2
, OIDC
, SAML
, ADFS
, Okta
, Ping Identity
.Skilled in directory integrations
, cloud federation
, and enterprise-scale identity management
.A solid understanding of certificate services, such as PKI
, CA
, and AD CS
, and how they underpin secure authentication.Knowledgeable in compliance frameworks
: HIPAA
, SOC1/2,
HITRUST
, NIST
.Strong foundation in systems automation
, change management
, capacity planning
, and documentation best practices
.Natural leader who can motivate teams
, manage multiple priorities
, and drive results across complex environments.Extensive experience in designing, managing, and migrating secure, multi-domain on-premises Windows Active Directory environments—including Forest, Schema, Global Catalog, GPO, OU, Security Groups, and Service Account administration—with hybrid cloud integration and advanced identity governance.
Qualifications
Education :
- Bachelor’s degree in computer science
, Information Systems
, Software Engineering
, or a related technical field. An advanced degree is a plus.
Experience :
10+ years of hands-on experience in systems administration (Windows/Linux), networking, and cybersecurity within complex enterprise environments.
5+ years in client-facing roles delivering enterprise IAM solutions —including architecture, implementation, and integration across hybrid or multi-cloud ecosystems.
Certification :
Preferred:
CIAM, CAMS, CIMP, CIGE
, Microsoft Azure
, and AWS certifications.Bonus:
Industry-recognized certifications such as CISSP
, CISA
, and CIGA
.ITIL certification is a plus, especially for candidates with a…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).