Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

IAM Architect - Remote Contract

Arctiq, Inc.

Company Overview:
Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries.

This is a remote, contract opportunity for one of Arctiq's clients.

We are seeking a highly experienced Lead IAM Specialist to architect, lead, and operationalize our client's enterprise identity and access management program across a multi-cloud environment (AWS, Azure, and GCP). This senior role combines deep technical expertise in cloud-native IAM, zero trust security architecture, and policy-as-code with the strategic leadership needed to define team structure, drive secure-by-default platform engineering, and embed identity governance into every layer of our cloud operations and CI/CD pipelines.

The ideal candidate brings hands-on mastery of AWS multi-account governance, zero trust frameworks, CIEM, secure microservices development, and CSPM tooling (Wiz), and has a proven track record of leading large-scale IAM cloud programs from strategy through execution.

Key Responsibilities

Enterprise IAM Architecture & Multi-Cloud Governance
  • Design and enforce IAM least-privilege models across AWS Organizations, Landing Zones, and Service Control Policies (SCPs), with parity controls extended to Azure and GCP.
  • Lead zero trust initiatives end-to-end: verify-explicitly policies, Just-in-Time (JIT) / Just-Enough-Access (JEA) provisioning, CIEM integration, and identity platform governance.
  • Define and maintain approved access patterns for services and users, aligned to predefined roles (Reader, Contributor, Administrator) and documented as policy-as-code.
  • Implement and govern OAuth/OIDC flows, service mesh identity controls, and federated identity across cloud and on-prem environments.
Inventory & Cloud Security Posture Management
  • Maintain a comprehensive inventory of all approved AWS and Azure services, cataloging IAM resources and differentiating between control plane (roles, policies) and data plane (user/key/role/policy/group) resources.
  • Manage credentials for local data plane resources in vaults; ensure resource policies are applied consistently across services.
  • Utilize Wiz (CSPM) for cloud asset inventory, compliance reporting, evidence collection, and correlation to AWS/Azure/GCP documentation.
  • Identify and govern external dependencies including secrets, keys, and cross-account policies.
Metadata Strategy & Module Development
  • Develop a comprehensive metadata tagging strategy mapped to application service lines (ASL), environments, and repository associations.
  • Design and build reusable IAM modules for each service access pattern, published to the service registry with consistent enforcement of naming conventions, metadata, and parameters.
  • Customize module policies to accommodate unique use cases while maintaining governance guardrails.
  • Establish methods to correlate modules with service resource policies and user roles/policies.
Policy-as-Code & Secure IaC/CI-CD Integration
  • Embed IAM guardrails and policy-as-code controls natively into IaC templates (Terraform, CloudFormation) and CI/CD pipelines for secure-by-default provisioning.
  • Develop methodologies and criteria for pre-approved service registry modules deployable via pipelines vs. those requiring manual review.
  • Define and enforce controls pertinent to IAM and cloud security standards across all services; implement a shift-left strategy to proactively address IAM cloud operations.
Secure Microservices & Application Security
  • Guide and contribute to secure microservices development in Python and Go on AWS, Azure, and GCP, including async and event-driven architectures.
  • Establish secure coding standards and review processes for service identity, inter-service authentication, and least-privilege service accounts.
  • Oversee network and data security controls: segmentation, KMS/encryption strategies, and cloud-native logging and detection pipelines.
Documentation, Procedures & SDLC
  • Document IAM configurations for pipelines, repositories, and all cloud services; develop and maintain IAM SDLC documentation.
  • Formulate request and approval processes for new IAM modules, including pre-approval pipeline design and approval authority definition.
  • Document manual review procedures and escalation paths for non-standard access patterns.
Strategy, Leadership & Team Development
  • Develop a comprehensive IAM Cloud program strategy, defining its functions, roadmap, and maturity model.
  • Provide recommendations on team structure, roles, skillsets, and resourcing needs across Service Desk, Global Command Center, Cloud Operations, and Cloud Engineering.
  • Mentor and guide junior IAM engineers; act as the subject matter expert and escalation point for complex identity and access challenges.
Required Qualifications
  • 10+ years of experience in IAM, cloud security, or identity engineering roles with demonstrated progression.
  • Proficiency with CSPM tooling, specifically Wiz, for inventory, reporting, and compliance evidence collection.
  • Deep expertise in AWS multi-account governance: Organizations, Landing Zones, SCPs, and IAM least-privilege design patterns.
  • Proven experience leading zero trust initiatives including JIT/JEA provisioning, CIEM platforms, OAuth/OIDC, and service mesh identity.
  • Hands-on experience with policy-as-code tooling and embedding IAM guardrails into IaC (Terraform / CloudFormation) and CI/CD pipelines.
  • Experience securing microservices architectures (Python, Go) in async and event-driven environments across AWS, Azure, and GCP.
  • Strong command of network and data security controls: segmentation, KMS/encryption, cloud-native logging, and detection.
  • Proficiency in metadata tagging strategies, service access pattern development, and credential vault management.
  • Strong documentation, process development, and communication skills with the ability to influence cross-functional teams.
Preferred Qualifications
  • Relevant cloud security certifications: AWS Security Specialty, CCSP, CISSP, or equivalent Azure/GCP security certifications.
  • Experience implementing and managing enterprise-scale cloud infrastructure security programs.
  • Familiarity with identity governance and administration (IGA) platforms and PAM solutions.
  • Experience with service mesh technologies (Istio, Envoy) for service-to-service authentication.
  • Strong project management skills with experience leading cross-functional security initiatives.

Why Join Us

This is a high-impact, senior individual contributor and leadership role at the intersection of cloud security architecture, identity engineering, and platform governance. You will have the opportunity to shape our enterprise IAM strategy from the ground up, influence how identity is embedded into every cloud workload, and build a best-in-class program that scales with our growth.

Arctiq is an equal opportunity employer. If you need any accommodations or adjustments throughout the interview process and beyond, please let us know. We celebrate our inclusive work environment and welcome members of all backgrounds and perspectives to apply.

We thank you for your interest in joining the Arctiq team! While we welcome all applicants, only those who are selected for an interview will be contacted.
Vacancy posted 20 hours ago
Similar jobs that could be interesting for youBased on the IAM Architect - Remote Contract in United States vacancy
  • Job Title IAM Architect - Okta - Contractor Location Remote/Dallas, Chicago or Florida. First week in-person with the team: Dallas, Chicago or Florida. Duration 6 months+Contract Work Model Mostly remote Travel Required Occasional Role Summary We are seeking an experienced... 
    Contract work
    Remote work
    For contractors

    Charter Global

    Dallas, TX
    4 days ago
  • $75.19 - $120.3 per hour

     ...Title : Senior IAM Architect Location : Remote (CST Work hours) Job Type : Contract (5 Months) Compensation : $75.19 - $120.30/hr Industry: Retail --- About the Role We are partnering with a leading global retailer known for its large-scale digital... 
    Contract work
    Remote work

    Dahl Consulting

    Minnesota
    29 days ago
  •  ...AWS Platform Architect - (Contract 1099) At DI, we provide Data & Analytics expertise to drive measurable...  ...: Lead AWS platform design (VPC, IAM, networking) and define S3 storage...  ...Terraform modules with state management and remote backends; implement multi-tenant... 
    Contract work
    Remote work
    Work at office
    Work from home
    Monday to Friday

    Data Ideology, LLC

    United States
    2 days ago
  •  ...Apply now: Kubernetes Architect, location is Hybrid/Remote. The start date is July 2026 for this 12-month contract position. Job Title: Kubernetes Architect Location-Type:...  ...Strong understanding of cloud networking, IAM, security, storage, and compute services... 
    Contract work
    Remote work
    Full time

    Mondo Staffing

    Herndon, VA
    2 days ago
  •  ...Sr. Identity Architect (Salesforce) Location: Fully Remote for those located in India Duration: 6-Month Contract (Strong Potential for Extensions) Interview Process: Video Interview...  ...designing and implementing enterprise IAM solutions that integrate Salesforce with... 
    Contract work
    Remote work
    Hourly pay

    PlacingIT

    United States
    1 day ago
  • $58 - $73 per hour

     ...Platform Architect Audi Red is a groundbreaking partnership between...  ...seeking a Platform Architect on contract until December 24th, 2026 to...  ...training models. We are open to remote candidates across Canada. You...  ...-by-default architectures (IAM, networking, secrets... 
    Contract work
    Remote work
    Hourly pay
    Work at office
    Local area

    Audi RED

    United States
    2 days ago
  •  ...Senior Cybersecurity Architect ARC Group has an immediate opportunity...  ...! This position is 100% remote working eastern time zone business...  ...hours. This is starting out as a contract position running through March...  ...and Access Management IAM concepts and principles such as... 
    Contract work
    Remote work
    Permanent employment
    Work experience placement
    Immediate start

    American Recruiting & Consulting Group

    United States
    2 days ago
  • Job Title: Google Cloud Platform (GCP) Architect - Contract (Fully Remote - US) Job Type: Contract Location: Fully Remote (US-based) Duration: 12 month...  ...security best practices, identity and access management (IAM), and compliance frameworks. Proficiency in... 
    Contract work
    Remote work

    Coltech

    New York, NY
    3 days ago
  •  ...ROLE: - IAM Engineer/Architect LOCATION: - Remote DURATION: - Long term contract MUST SKILLS: - OIDC, SAML 2.0, and AD, development and/or IAM implementation experience, IAM-related technologies, protocols, and standards Job Description... 
    Remote work
    Long term contract

    Maintec Technologies

    United States
    2 days ago
  •  ...We are seeking a Ping Federated Architect to join our team. This role will involve...  ..., Identity and Access Management (IAM), Single Sign-On (SSO), federated authentication...  ...Location: Charlotte, NC 28202 (Remote) Duration: Contract Job Description... 
    Contract work
    Remote work

    Trilyon, Inc.

    Jacksonville, FL
    20 hours ago
  •  ...highly experienced Cybersecurity Architect with 6+ years of expertise to...  ...(e.g., SIEM, EDR, firewalls, IAM, DLP, DSPM, Zero Trust) Ensure...  ...Impact: Understand and review contract scope, corresponding cost and...  ...position is eligible for a hybrid‑remote work schedule (4 days/week in‑... 
    Contract work
    Remote work
    Work at office
    Immediate start
    Flexible hours
    1 day per week

    Panasonic Avionics Corporation

    Bridgeton, MO
    4 days ago
  • CYBERSECURITY ARCHITECT MILITARY FRIENDLY AND PREFERRED - HOH SPONSOR...  ...technical design authority for the contract, leading cybersecurity...  ...certifications aligned with DoD 8570/8140 IAM Level III or IAT Level III...  ...a Public Trust . Location Remote with occasional travel. Hours... 
    Contract work
    Remote work

    Zermount, Inc.

    Arlington, VA
    20 hours ago
  •  ...seeking a Senior Cloud Platform Architect to lead the vision, design,...  ...areas. This is a remote position. Essential...  ...compute, storage, networking, IAM, and data services. - Set standards...  ...ranges may differ based on contract value but will be commensurate... 
    Contract work
    Remote work
    Minimum wage
    Temporary work
    Work experience placement
    Shift work

    MAXIMUS

    United States
    4 days ago
  •  ...NTT DATA North America is seeking a Senior Identity & Access Management (IAM) Architect to join our team remotely from Phoenix, Arizona. The ideal candidate will design, implement, and govern the IAM infrastructure, focusing on the Ping Identity platform to ensure secure... 
    Remote work

    NTT DATA North America

    Phoenix, AZ
    1 day ago
  • $80 - $93 per hour

     ...IAM Solutions Architect Pay Range: $80/hour to $93/hour Location: Seattle, Burbank or Orlando (Onsite Monday - Thursday, remote on Fridays) Overview A leading enterprise organization is seeking an experienced IAM Solutions Architect to support the evolution... 
    Remote work
    Monday to Friday

    Prosum

    Seattle, WA
    2 days ago
  •  ...IAM Architect IAM Architect Location: Remote (US or Canada) Role Overview We are seeking an experienced IAM Architect to lead the design and implementation of enterprise identity and access management solutions. This role will own architecture across Identity... 
    Remote work
    Worldwide

    Simeio

    United States
    2 days ago
  • W2 contract to Fulltime positionGC and USC Only Job Title Full Stack Architect - AWS Connect Node.js Banking - New Account Opening Location Remote Job Description We are seeking a highly skilled Fullstack...  ...DynamoDB, Kinesis, CloudWatch, and IAM. Experience with banking new... 
    Contract work
    Remote work
    Full time
    Work at office

    Synergy Technologies

    Providence, RI
    2 days ago
  • Charter Global is seeking an experienced IAM Architect - Okta contractor to join their team. The position primarily involves remote work with some in-person meetings in Dallas, Chicago, or Florida. The ideal candidate will have hands-on experience with Okta and a solid... 
    Remote job
    For contractors

    Charter Global

    Dallas, TX
    4 days ago
  •  ...This is a 100% Remote Position in USA. AWS Services - atleast 8 to 10 services exposure/experience IAM design skills - atleast 2+ years experience AWS IAM - atleast 2+ years experience AWS resource provisioning through Cloud Formation AWS resource... 
    Remote work
    Full time

    The Dignify Solutions LLC

    United States
    20 hours ago
  •  ...Tech Recruitment Certified Title: GCP Architect Location: Remote Role Duration: 12+ Months Job Description...  ...Identity and Access Management (IAM), encryption, firewall configuration,...  ...Executive Employment type Employment type Contract Job function Job function Information... 
    Contract work
    Remote work

    Net2Source (N2S)

    New York, NY
    3 days ago
  •  ...IAM Architect - Saviynt Location: Remote (US or Canada) Role Overview We are seeking a hands-on Saviynt Architect with proven experience delivering multiple full lifecycle Saviynt IGA implementations. This role requires ownership of solution design, configuration... 
    Remote work
    Worldwide

    Simeio

    United States
    7 days ago
  •  ...initiatives in OCI for our customers. Our architects work directly alongside Centroid’...  ...experience Location 100% Remote. Job Type: Full Time employee, CTH, or Contract. Responsibilities Architect end‑...  ...replication, versioning), Local NVMe IAM: compartment hierarchy, policies,... 
    Contract work
    Remote work
    Full time
    Local area
    Flexible hours
    Shift work

    Centroid Systems

    New York, NY
    1 day ago
  •  ...architecture: OAuth2/OIDC, RBAC, mTLS, IAM policy design, and key...  ...rather than bolting them on Architect for integration: event-driven...  ...position may be hybrid or fully remote. Occasional evening or weekend...  ...submitted without a valid contract will be considered the sole property... 
    Contract work
    Remote work
    Full time
    Temporary work
    For contractors
    Afternoon shift

    Axiom Bank

    Florida, NY
    3 days ago
  •  ...IAM Architect Voleon is a technology company that applies state-of-the-art AI and machine learning techniques to real-world problems in...  ...accounts Extend zero-trust capabilities beyond current SASE remote access to broader infrastructure Partner cross-functionally... 
    Remote work
    Work at office
    Local area

    The Voleon Group

    United States
    2 days ago
  • $137k - $180k

     ...Senior IAM Architect USA - Remote At Ping Identity, we believe in making digital experiences both secure and seamless for all users, without compromise. We call this digital freedom. And it's not just something we provide our customers. It's something that inspires... 
    Remote work
    Local area
    Worldwide
    Flexible hours

    ForgeRock (Acquired By Ping Identity)

    United States
    20 hours ago
  • $105k - $120k

    Vitalant is seeking a Sr. IAM Automation Engineer for a remote position based in Phoenix, AZ. This role will lead the design and integration of advanced Identity and Access Management (IAM) automation solutions across the organization, driving innovation in cybersecurity... 
    Remote job

    Vitalant

    Phoenix, AZ
    3 days ago
  • $134.6k - $230.8k

     ...Optum is seeking a visionary Digital AI architect for our Contract Center Transformation. The successful...  ...You’ll enjoy the flexibility to work remotely * from anywhere within the U.S. as you...  ...compromising quality Solid AWS fundamentals (IAM, Lambda, CloudWatch, API patterns) and... 
    Contract work
    Remote job
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area

    Optum

    Eden Prairie, MN
    3 days ago
  •  ...unique insight into security and risk management best practice. In joining our team, you can expect to be working on challenging IAM projects across a wide range of global clients (e.g. FTSE 100) and industries. The nature of projects will be diverse and will vary across... 
    Remote work
    Work experience placement

    Turnkey Consulting

    United States
    2 days ago
  •  ...Enterprise Identity And Access Management (IAM) Specialist We are requesting candidates with deep, hands‐on experience in Enterprise Identity and Access Management (IAM), ideally within regulated industries such as healthcare, financial services, or insurance. The ideal... 
    Remote work
    Work at office

    Conexess

    United States
    3 days ago
  • $90 - $95 per hour

     ...forward-thinking organization, apply now. NTT DATA's Client is currently seeking a Senior Identity & Access Management (IAM) Architect- Remote to join our team in Phoenix, Arizona (US-AZ), United States (US). REMOTE Job Description: Job Summary NTT Data... 
    Remote work
    Hourly pay
    Temporary work
    Flexible hours

    NTT Data Americas, Inc.

    United States
    10 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to IAM Architect - Remote Contract. Be the first to apply!