×
Register Here to Apply for Jobs or Post Jobs. X

Sr. Staff IAM Architect

Job in Lowell, Middlesex County, Massachusetts, 01851, USA
Listing for: UKG, Inc.
Full Time position
Listed on 2026-08-06
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Information Security & Data Protection, Cloud Computing: Infrastructure & Operations
Job Description & How to Apply Below

Identity & Access Management (IAM) Architect

At UKG, the work you do matters. The code you ship, the decisions you make, and the care you show a customer all add up to real impact. Today, tens of millions of workers start and end their days with our workforce operating platform. Helping people get paid, grow in their careers, and shape the future of their industries. That's what we do.

We never stop learning. We never stop challenging the norm. We push for better, and we celebrate the wins along the way. Here, you'll get flexibility that's real, benefits you can count on, and a team that succeeds together. Because at UKG, your work matters—and so do you.

UKG is seeking an experienced Identity & Access Management (IAM) Architect to help define, design, and evolve the identity security architecture supporting our global workforce, enterprise platforms, and cloud environments. As a key member of the Global Security Identity & Access Management team, you will serve as the technical authority for identity architecture, partnering closely with Security Engineering, Product Engineering, Infrastructure, Cloud, and Enterprise Technology teams to build scalable and secure identity solutions.

This role combines deep technical expertise, strategic thinking, and strong collaboration skills to help secure one of the world's largest workforce technology platforms.

Key Responsibilities:
  • Define and maintain enterprise IAM reference architectures, standards, and design patterns.
  • Develop scalable identity and access management solutions.
  • Partner with business and technology stakeholders to align identity capabilities with strategic security objectives.
  • Evaluate emerging identity technologies and recommend architectural improvements.
  • Design and optimize identity lifecycle management processes including provisioning, deprovisioning, role management, and access certification.
  • Develop scalable RBAC and ABAC models across enterprise applications and platforms.
  • Ensure identity governance solutions align with security, compliance, and business requirements.
  • Support implementation and enhancement of IGA platforms.
  • Drive modernization of enterprise authentication services and identity providers.
  • Develop secure access patterns for workforce, partner, and third-party access scenarios.
  • Design secure privileged access architectures across cloud, infrastructure, and application environments.
  • Enable just-in-time (JIT) access, credential vaulting, session management, and privileged account governance.
  • Support expansion of PAM capabilities across both human and non-human identities.
  • Partner with platform and engineering teams to reduce standing privilege and enforce least privilege principles.
  • Improve security, scalability, and operational efficiency of core identity services.
  • Perform security architecture reviews and threat modeling for identity-related initiatives.
  • Support audit, compliance, and regulatory requirements including SOC, ISO 27001, PCI, and privacy frameworks.
  • Identify and mitigate identity-related risks across the enterprise.
  • Collaborate with Security Engineering, Platform Engineering, Infrastructure, Cloud Operations, and Enterprise Technology teams.
  • Provide architectural guidance during projects, design reviews, and strategic initiatives.
  • Create and maintain architecture documentation, standards, and implementation guidance.
  • Mentor IAM engineers and contribute to the development of identity security best practices.
Qualifications:

Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or equivalent experience.

8+ years of experience in Identity & Access Management, Security Architecture, or related security engineering roles.

3+ years designing and implementing enterprise IAM architectures.

Deep expertise in:
Identity Governance & Administration (IGA), Privileged Access Management (PAM), Identity Lifecycle Management, Authentication and Authorization frameworks.

Strong understanding of: SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, SCIM, Zero Trust principles, RBAC and ABAC models, Cloud identity architecture, Service accounts and machine identity management.

Experience supporting cloud platforms such as Azure, AWS, or…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary