GCP IAM Architect
$150k - $195kPublicis Sapient
North Courthouse Road - 1515 North Courthouse Road Arlington, Virginia 22201 United States Design and implement comprehensive IAM strategies and solutions on GCP, including Google Cloud Identity, IAM roles and policies, organization policies, deny policies, and Workload Identity Federation Configure and manage federated identity solutions using PingFederate to enable seamless SSO between on-premises Active Directory and GCP services Implement and manage OIDC Federation, SAML-based authentication, and OAuth 2.0 flows for enterprise applications Design and deploy role-based access control (RBAC) frameworks, custom IAM roles, and least-privilege access models across GCP organizations and projects Configure and manage Google Cloud Directory Sync (GCDS) for automated user and group provisioning from Active Directory to Google Cloud Identity Implement service account management strategies, including key rotation, impersonation policies, and workload identity configurations Security & Compliance: Establish and enforce security best practices for IAM, including conditional access policies, context-aware access controls, and security key enforcement Design and implement encryption strategies using GCP Cloud KMS and Hashicorp Vault for secrets management Implement network security controls including VPC Service Controls, private Google access, and secure connectivity patterns Ensure compliance with security frameworks and regulatory requirements through proper IAM configurations and audit logging Design, implement, and manage scalable cloud infrastructure solutions on GCP platform aligned with IAM requirements Automate IAM provisioning, configuration, and lifecycle management using Infrastructure as Code (IaC) tools such as Terraform Collaborate with software engineering teams to integrate IAM requirements into application architectures and CI/CD pipelines Develop automated workflows for user onboarding/offboarding, access reviews, and privilege management Monitoring & Optimization: Implement monitoring and alerting for IAM-related events using Cloud Logging, Cloud Monitoring, and Security Command Center Conduct regular access reviews, privilege audits, and IAM policy optimizations Troubleshoot and resolve complex issues related to authentication, authorization, federation, and access management Monitor and optimize cloud infrastructure resources to ensure performance, availability, and cost-efficiency Documentation & Governance: Develop and maintain comprehensive documentation for IAM architectures, federation configurations, and operational procedures Establish IAM standards, policies, and governance frameworks aligned with organizational security requirements Stay current with GCP IAM capabilities, authentication protocols, and industry best practices Provide technical leadership and guidance to development and operations teams on IAM best practices Required Skills & Experience: Extensive hands‑on experience with GCP IAM technologies, including Google Cloud Identity, IAM policies, organization policies, Workload Identity Federation, and service account management Proven experience configuring and managing PingFederate for enterprise SSO and federated identity integration with Active Directory Deep understanding of authentication and authorization protocols: SAML 2.0, OAuth 2.0, OIDC, and JWT Strong experience with Google Cloud Directory Sync (GCDS) for AD integration and user provisioning Hands‑on experience with Hashicorp Vault and GCP Cloud KMS for secrets and key management Proficiency with Infrastructure as Code using Terraform for IAM resource provisioning Experience with GCP security services: VPC Service Controls, Security Command Center, Policy Intelligence, and Cloud Asset Inventory Strong understanding of identity lifecycle management, access governance, and privileged access management concepts Additional Information Benefits of Working Here Flexible vacation policy; time is not limited, allocated, or accrued 16 paid holidays throughout the year Generous parental leave and new parent transition program Corporate gift matching program Pay Range: $150,000 - $195,000 The range shown represents a grouping of relevant ranges currently in use at Publicis Sapient. Actual range for this position may differ, depending on location and specific skillset required for the work itself. As part of our dedication to an inclusive and diverse workforce, Publicis Sapient is committed to Equal Employment Opportunity without regard for race, color, national origin, ethnicity, gender, protected veteran status, disability, sexual orientation, gender identity, or religion. We are also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at View email address on click.appcast.io or you may call us at View phone number on click.appcast.io. Your information will be kept confidential according to EEO guidelines. Company Description Publicis Sapient is a digital transformation partner helping established organizations get to their future, digitally-enabled state, both in the way they work and the way they serve their customers. We help unlock value through a start-up mindset and modern methods, fusing strategy, consulting and customer experience with agile engineering and problem-solving creativity. United by our core values and our purpose of helping people thrive in the brave pursuit of next, our 20,000+ people in 53 offices around the world combine experience across technology, data sciences, consulting and customer obsession to accelerate our clients’ businesses through designing the products and services their customers truly value. #J-18808-Ljbffr Publicis Sapient
$150k - $195k
A digital transformation partner is seeking an experienced IAM Consultant to design and implement IAM strategies on GCP, focusing on security best practices, automation, and optimization. The ideal candidate should have extensive experience with GCP IAM technologies and...Suggested- ...Senior Lead Cybersecurity Architect Play a vital role in shaping the future of an iconic company and make a direct impact in a dynamic... ...architecture, and governance of Identity and Access Management (IAM) solutions across multi-cloud environments for the CTC. This role...Suggested
$80 - $93 per hour
...IAM Solutions Architect Pay Range: $80/hour to $93/hour Location: Seattle, Burbank or Orlando (Onsite Monday - Thursday, remote on Fridays) Overview A leading enterprise organization is seeking an experienced IAM Solutions Architect to support the evolution...SuggestedRemote workMonday to Friday- ...Cloud Architect Looking to introduce a West Coast region in Azure. Select a tool to manage EKS, AKS, etc. They will act as a cloud advisory... .... This person could be siloed in one of the cloud platforms – GCP, Azure (GCP or Azure is highly preferred, but will consider AWS)...Suggested
- ...Position: IAM Architect Location: Washington DC Position Type: Fulltime Role Overview We are seeking a highly experienced Security Architect to assess and provide expert recommendations for Access Management and Data Privacy programmes, ensuring...SuggestedFull time
- ...IAM Architect New IAM Architect- the world bank is implementing PlainID, which is a very niche tool. Reporting to the IFC CITAT Access Management project manager, the primary responsibilities of the selected candidate will include, but not be limited to, the following...
- A management consulting firm is seeking an IAM Architect to design and implement complex Identity and Access Management solutions. Candidates should have 7-10 years of experience, strong knowledge of LDAP and SailPoint Identity IQ, as well as excellent communication skills...
- ...services firm is seeking a Senior Consultant to join their Identity and Access Management team. This role involves developing and managing IAM tools, ensuring alignment with business goals, and leveraging expertise in SailPoint to provide solutions for clients. Candidates...
- A strategic IT services provider is seeking a Senior IAM Expert with over 10 years of experience to enhance security and automate processes using Okta. This remote position requires local availability for occasional meetings in Washington, DC. Key tasks include configuring...Local areaRemote work
- ...identity management systems aligned with Zero Trust principles for federal clients. Ideal candidates will have a rich background in ICAM/IAM practices and hands-on experience with leading technologies such as Okta and CrowdStrike. Join a dynamic team committed to enhancing...
- ...cybersecurity firm in Washington is seeking an experienced Okta Architect to lead the design and implementation of a robust identity management... ...systems. Ideal candidates will have extensive experience in IAM and a deep understanding of Okta's capabilities. The role offers...
- Job Description Insight Global is looking for a highly skilled Delinea / SailPoint / Ping Federate / Radiant Logic / CyberArk ICAM SME to support the Defense Information Systems Agency (DISA) Thunderdome program. Must be Top Secret Cleared. Monday - Friday on-site and...Monday to Friday
- Insight Global is looking for a highly skilled Delinea / SailPoint / Ping Federate / Radiant Logic / CyberArk ICAM SME to support the Defense Information Systems Agency (DISA) Thunderdome program. Must be Top Secret Cleared. Monday - Friday on-site and must sit out of1...Monday to Friday
$106.3k - $221.1k
...and the government forward! As an Okta Architect , you will play a key role in designing,... ...subject matter expert (SME) for Okta and IAM best practices. Provide technical guidance... ...authentication. (AWS and/or Azure, GCP, OCI) ~ Familiarity with IGA tools (e.g.,...Live inWork at officeLocal area- ...GCP Cloud Engineer Location: Washington, DC (Hybrid - 4 days/week; 1 day telework)... ...Washington, DC. In this hands-on role, you'll help architect, deploy, and manage secure, scalable, and... ...Compute Engine, Cloud Functions, VPC, IAM, GKE, and BigQuery . ~ Experience...Full timeRemote work
- A technology services firm is seeking an Identity and Access Management Systems Engineer. The role involves maintaining a comprehensive Identity as a Service (IDaaS) solution based on Okta, requiring strong technical and communication skills. Applicants should have a BS...
$117.1k - $152.2k
...an exciting opportunity to build the future evolution of Identity and Access Management (IAM) for our global educational technology company! As the Principal IAM Solutions Architect, you will: Define and evolve enterprise IAM architecture that aligns with...Live inLocal areaWorldwide- ...Sr Solution Architect - Identity and Access Management (IAM) Denver, Colorado;Washington, District of Columbia; Chicago, Illinois To proceed with your application, you must be at least 18 years of age. Acknowledge ( Bank of America employees are required to meet...Work at officeShift workDay shift
$160k - $180k
A cybersecurity solutions company is seeking an experienced IAM/Federation Subject Matter Expert in McLean, Virginia. The successful candidate will lead governance initiatives, oversee identity lifecycle processes, and partner with different teams to ensure compliance and...- ...Level III Architect – Cloud and Agentic AI Position Summary: Architect Standard III - Cloud... ...cloud architectures across AWS, Azure, GCP, and/or OCI, including hybrid and on prem... ...standardized integration patterns across IAM, networking, SIEM, DevSecOps, CI/CD, and observability...Work at officeFlexible hours
- ...CYBERSECURITY ARCHITECT MILITARY FRIENDLY AND PREFERRED - HOH SPONSOR We are seeking... ...including AWS and hybrid/multi-cloud; Azure or GCP is a plus Education: Bachelor's... ...aligned with DoD 8570/8140 IAM Level III or IAT Level III preferred. Preferred...Contract workRemote work
- ...Principal Cybersecurity Architect Take your engineering expertise to new heights by joining a team of exceptionally talented professionals... ...methodologies for potential adoption. Implement and manage IAM protocols and standards such as RBAC, OAuth2.0, SCIM,...
- ...GCP Engineer We are looking for a highly skilled GCP Engineer with expertise in BigQuery and other GCP services to design, implement... .... Ensure data security, governance, and compliance using IAM, encryption, and audit logging. Collaborate with Data Scientists...
- ...Senior GCP Cloud Engineer LightFeather is seeking a Senior GCP Cloud Engineer who will... ...as Compute Engine, Cloud Functions, VPC, IAM, GKE, and BigQuery. ~ Experience with infrastructure... ...Skills GCP Professional Cloud Architect or DevOps Engineer certification....Full timeContract workLocal area
$104.8k - $192.2k
EY is seeking a Digital Identity SME to enhance user experience and operational efficiency by designing robust identity solutions using Microsoft Entra and Saviynt. Located in Arlington, Virginia, this role entails conducting assessments, implementing identity governance...Flexible hours$144.9k - $265.8k
...assessments, and managing access controls. Requirements include a bachelor’s degree, 6-8 years of relevant experience, and familiarity with IAM technologies. This hybrid role offers a compensation range of $144,900 to $265,800 depending on experience and location. #J-18808-...$135k - $180k
...Expert Product Architect AI/MLRemote - United StatesJR013700 At Ensono, our Purpose is to... ...Platforms Azure (required), AWS (required), GCP (nice to have) AI/ML Platforms Azure OpenAI... ...Weaviate, pgvector Security Azure AD, IAM, Key Vault, network security, Zero Trust...Full timeTemporary workWork at officeRemote workWork from homeFlexible hours$48k - $168k
...experience working with Google Cloud Platform (GCP) services such as Compute Engine, Cloud... ...with GCP networking, security (IAM, VPC, Firewall rules), and monitoring tools... ...certifications such as Google Professional Cloud Architect or Associate Cloud Engineer are a plus....Full time$106.3k - $221.1k
A technology firm serving the US government seeks an experienced Okta Architect to design and implement identity solutions for Workforce Identity and Customer Identity environments. This role involves developing scalable workflows, ensuring federal compliance, and integrating...- ...and Access Management specialist in College Park, Maryland. The selected candidate will play a vital role in designing and deploying IAM solutions using Ping technology to protect sensitive data for clients within the Department of Defense and Intelligence Community. Ideal...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GCP IAM Architect. Be the first to apply!


