IAM Architect
Listed on 2026-09-17
-
IT/Tech
Cybersecurity, Systems Engineer, Information Security & Data Protection
At HUB International, we are a team of entrepreneurs. We believe in protecting and supporting the aspirations of individuals, families, and businesses. We help our clients evaluate their risks and develop solutions tailored to their needs. We believe in empowering our employees to learn, grow, and make a difference. Our structure enables our teams to maintain their own unique, regional culture while leveraging support and resources from our corporate centers of excellence.
HUB is a global insurance and employee benefits broker, providing a boundaryless array of business insurance, employee benefits, risk services, personal insurance, retirement, and private wealth management products and services. With over $5 billion in revenue and almost 20,000 employees in 600 offices throughout North America, HUB has grown substantially, in part due to our industry leading success in mergers and acquisitions
Job DescriptionWe are seeking an experienced IAM Architect to design, build, and evolve our enterprise Identity and Access Management (IAM) program. This role oversees and drives the IAM architectural standards for authentication, authorization, provisioning, and privileged access across cloud, SaaS, and on-premises environments. You will translate business and security requirements into reference architectures, technical standards, and multi-year roadmaps that support workforce, and privileged identities.
The ideal candidate has deep hands-on experience with modern IAM/IGA platforms (e.g., SailPoint Identity Security Cloud/Identity Now, Okta, Azure AD/Entra , or similar), a strong understanding of Zero Trust principles, and a track record of leading identity initiatives that reduce risk, complexity, and operational cost while improving the end-user experience.
Objectives of this Role- Develop and maintain the enterprise IAM framework, including authentication, authorization, provisioning, and privileged access systems.
- Rationalize identity platforms and standardize integration patterns to reduce complexity, cost, and operational risk.
- Ensure high availability, resilience, and audit readiness of identity services.
- Improve onboarding/offboarding (Joiner-Mover-Leaver) efficiency and reduce identity-related security incidents such as credential compromise or orphaned accounts.
- Serve as the technical leader for IAM initiatives, driving scalable identity architecture and governance standards across cloud and on-prem environments.
- Ensure identity operations practices provide a sound foundation that utilizes tools and processes for rapid identification of security events to address and mitigate risks.
- Engage with peers regularly on security operations functions, project status, activities, and achievements.
- Lead "Continuous Improvement" efforts, in respect to HUB’s information security identity tooling and systems.
- Lead/Assist in plan, organize, and execute multiple responsibilities to achieve project goals and provide technical leadership to move operational projects to completion.
- Contribute to security requirements, standards, procedures, and reference architectures to comply with policies and technical standards.
- Lead the architecture, design, implementation and integration of IAM/IGA solutions (e.g., SailPoint ISC) across enterprise environments.
- Define IAM architecture standards, governance models, and best practices.
- Design scalable identity lifecycle processes including Joiner, Mover, and Leaver workflows.
- Architect integrations with Active Directory, Azure AD/Entra , Workday, Service Now, LDAP, SAP, cloud platforms, and REST APIs.
- Maintain all IAM architectural diagrams, as-built documentation, and roadmaps.
- Lead application onboarding, provisioning, deprovisioning, and…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).