Cybersecurity Identity and Access Management Architect
Listed on 2026-09-06
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Cybersecurity Identity & Access Management Architect (IAM)
At Boston Scientific, we'll give you the opportunity to harness all that's within you by working in teams of diverse and high-performing employees, tackling some of the most important health industry challenges. With access to the latest tools, information and training, we'll help you in advancing your skills and career. Here, you'll be supported in progressing – whatever your ambitions.
Boston Scientific was recognized as a Glassdoor Best Place to Work in 2026, ranking No. 15 on the Top 100 list, reflecting the culture our employees experience every day.
Boston Scientific's cybersecurity is more than protecting systems. It is about enabling trust, safeguarding patient data, supporting regulatory compliance and protecting the technologies that help improve and save lives.
We are seeking a Cybersecurity Identity & Access Management Architect (IAM), to lead the strategy, architecture and evolution of enterprise identity security capabilities across our global medical device organization.
In this architecture role, you will define and mature enterprise identity security capabilities across identity governance and administration (IGA), privileged access management (PAM), authentication, federation, secrets management, public key infrastructure (PKI), directory services and non-human identities. You will combine deep technical expertise with strong business judgment, regulatory knowledge and the ability to influence enterprise strategy.
Identity is a critical security perimeter. In this role, you will help drive Zero Trust adoption, strengthen privileged access and identity governance, reduce cybersecurity risk, and enable compliant and resilient business growth. You will collaborate across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business teams.
This role follows a hybrid work model requiring employees to be in our local office at least three days per week. This position is based in Arden Hills, Minnesota. Boston Scientific will not offer sponsorship or take over sponsorship of an employment visa for this position at this time. Relocation assistance is not available for this position at this time.
Your responsibilities will include:
- Define and drive the enterprise IAM strategy, architecture, standards, governance and multiyear roadmap.
- Design and guide scalable enterprise capabilities for IGA, PAM, single sign-on (SSO), multifactor authentication (MFA), federation, secrets management, PKI, directory services, cloud identity and non-human identities.
- Lead architecture reviews, modernization initiatives, design workshops and complex cross-functional work streams.
- Lead identity threat modeling, risk assessments, maturity reviews and gap analyses, and develop prioritized remediation roadmaps.
- Align identity controls with applicable cybersecurity, privacy and regulatory frameworks and requirements, including NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-63, NIST SP 800-207, ISO/IEC 27001, GDPR, FDA guidance, SOX and internal requirements.
- Partner with Audit, Privacy, Regulatory Affairs, Quality, Governance, Risk and Compliance (GRC), and technology teams on control design, audit readiness and remediation.
- Define meaningful IAM risk metrics, key performance indicators (KPIs) and objectives and key results (OKRs), and communicate recommendations, investment needs, risks and outcomes to leadership.
- Evaluate emerging identity and cybersecurity technologies and recommend solutions that advance enterprise security capabilities and business objectives.
- Mentor architects, engineers, analysts and product teams on secure-by-design practices and identity security architecture.
- Partner across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business functions to embed identity security into enterprise technology strategies and solutions.
Required qualifications:
- Bachelor's degree in cybersecurity, computer science, information technology, engineering or a related…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).