Senior IAM Architect
$137k - $180kForgeRock (Acquired By Ping Identity)
Senior IAM Architect
USA - Remote
At Ping Identity, we believe in making digital experiences both secure and seamless for all users, without compromise. We call this digital freedom. And it's not just something we provide our customers. It's something that inspires our company. People don't come here to join a culture that's built on digital freedom. They come to cultivate it.
Our intelligent, cloud identity platform lets people shop, work, bank, and interact wherever and however they want. Without friction. Without fear.
While protecting digital identities is at the core of our technology, protecting individual identities is at the core of our culture. We champion every identity. One of our core values, Respect Individuality, reminds us to celebrate differences so you are empowered to bring your authentic self to work.
We're headquartered in Denver, Colorado and we have offices and employees around the globe. We serve the largest, most demanding enterprises worldwide, including more than half of the Fortune 100. At Ping Identity, we're changing the way people and businesses think about cybersecurity, digital experiences, and identity and access management.
As a Senior IAM Architect on Ping's Corporate IT Systems Administration team, you will lead the company's internal IAM practice across both workforce and customer identity environments. This is a senior, hands-on role for someone who can design, implement, operate, troubleshoot, and continuously improve identity capabilities for Ping as the customer.
This person will serve as the internal owner of Ping's IAM architecture, role model, and operational direction, helping ensure the environment is secure, functional, scalable, and maintainable while partnering closely with internal product teams and business stakeholders to evaluate and adopt new Ping capabilities over time.
Responsibilities
- Lead the architecture, roadmap, and day-to-day maturity of Ping's internal IAM practice across WIAM, CIAM, authentication, authorization, federation, lifecycle management, and governance.
- Own the design, implementation, operation, and continuous improvement of Ping's internal identity platforms and supporting processes, with responsibility for keeping the environment secure, functional, and maintainable.
- Act as the internal owner of Ping's role model, access model, and identity architecture, ensuring business requirements are translated into scalable technical controls and usable identity services.
- Partner with internal product teams to evaluate, pilot, and adopt new Ping products and acquired capabilities in Ping's corporate and CIAM environments.
- Work closely with IT, Security, HR, Engineering, Product, and other business stakeholders to define identity requirements, improve processes, and align IAM capabilities to real business needs.
- Lead role engineering efforts by analyzing business requirements, defining roles and permissions in functional business terms, and ensuring system privileges map correctly to approved access models.
- Drive strong operational execution for SSO, MFA, federation, provisioning, deprovisioning, role assignment, access reviews, and exception handling across internal and customer-facing systems.
- Troubleshoot complex authentication, authorization, provisioning, and access issues across applications, directories, workflows, and connected systems.
- Maintain and improve standards, procedures, controls, reporting, and documentation for IAM operations, including actual-state versus desired-state validation, access reviews, and change governance.
- Maintain a lab and test environment to validate new integrations, prototype new capabilities, and safely trial new Ping products and patterns before production rollout.
- Serve as Ping's internal IAM thought leader and provide practical product feedback based on real enterprise use cases from Ping's WIAM and CIAM environments.
Required Skills & Qualifications
- 8+ years of experience in Identity and Access Management, including significant experience designing, implementing, and operating both WIAM and CIAM environments.
- Proven experience owning complex IAM platforms from architecture through operations in enterprise environments.
- Experience building and maintaining DaVinci flows for WIAM and CIAM use cases.
- Strong hands-on experience with Ping Identity products in production environments; including PingOne SSO, PingID, PingOne MFA, PingOne Protect, PingFederate.
- Strong expertise with modern identity standards and protocols such as SAML, OAuth, OpenID Connect, SCIM, LDAP, and REST-based integrations.
- Strong hands-on troubleshooting skills across authentication, federation, access, and provisioning flows, including the ability to diagnose issues across browsers, applications, logs, and connected systems.
- Experience defining and maintaining roles, permissions, and access models in business terms while ensuring accurate implementation in technical systems and application authorization structures.
- Strong understanding of identity lifecycle processes, including joiner/mover/leaver workflows, access requests, approvals, exception handling, access removal, and periodic review.
- Experience implementing IAM controls, reporting, and governance processes that improve auditability, risk management, and operational integrity.
- Working knowledge of identity-related infrastructure and supporting technologies such as directory services, PKI/certificates, networking, system administration, and application integrations.
- Strong written and verbal communication skills with the ability to partner effectively across technical teams, business stakeholders, and leadership.
- Demonstrated ability to operate independently, drive change, and bring structure to a fast-moving and evolving environment.
- Bachelor's degree in Computer Science, Information Systems, Engineering, or a related field, or equivalent practical experience.
Desired Candidate Skills
- Strong hands-on experience with Ping Identity products in production environments.
- Expertise designing, implementing, and maintaining DaVinci Product flows.
- Familiarity with PingOne Architecture and the broader Ping platform ecosystem.
- Experience with PingOne SSO, PingID, PingOne MFA, PingOne Protect, PingOne Authorize, PingFederate, PingAccess, PingDirectory, and related Ping technologies.
- Experience serving as an internal platform owner who can evaluate new capabilities, form a point of view on the right architecture for the business, and drive adoption of new identity capabilities over time.
- Experience maintaining lab environments, testing new integrations, and validating new identity patterns before production deployment.
- Strong understanding of access controls, segregation of duties, least privilege, and policy-driven authorization models.
- Experience with change management, release management, and integrating IAM work into broader IT and security operating processes.
- Experience with DevOps and platform engineering practices such as Terraform, CI/CD, API integration, and cloud-native deployment models.
- Ability to represent Ping internally as the enterprise customer and translate that experience into better architecture, better operational outcomes, and stronger adoption of Ping technology.
Salary Range: $137,000 - $180,000
We believe in and facilitate a flexible, collaborative work environment. We're growing quickly, but remain true to the innovative, can-do startup values that got us here. Most importantly, we keep hiring talented, smart, fun, and genuinely nice people because that's who we want to succeed with every day.
Here are just a few of the things that make Ping special:
- A company culture that empowers you to do your best work.
- Employee Resource Groups that create a sense of belonging for everyone.
- Regular company and team bonding events.
- Competitive benefits and perks.
- Global volunteering and community initiatives
Our Benefits:
- Generous PTO & Holiday Schedule
- Parental Leave
- Progressive Healthcare Options
- Retirement Programs
- Opportunity for Education Reimbursement
- Commuter Offset (Specific locations)
Ping is the collective sum of all our individual experiences, backgrounds and influences and we pride ourselves in growing and learning together. We are committed to building an inclusive and diverse environment where everyone's individuality is respected and everyone has an Identity. In recruiting for new colleagues, we welcome the unique contributions you can bring and encourage you to be your best self.
We are an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex including sexual orientation and gender identity, national origin, disability, protected Veteran Status, or any other characteristic protected by applicable federal, state, or local law.
- A global professional services firm is seeking a Senior Consultant to join their Identity and Access Management team. This role involves developing and managing IAM tools, ensuring alignment with business goals, and leveraging expertise in SailPoint to provide solutions...Senior
$160k - $180k
A cybersecurity solutions company is seeking an experienced IAM/Federation Subject Matter Expert in McLean, Virginia. The successful candidate will lead governance initiatives, oversee identity lifecycle processes, and partner with different teams to ensure compliance and...Senior- A leading fintech company located in Austin, Texas, is seeking a Senior IAM Automation Engineer to enhance their identity and access management. This position combines your development skills with IAM expertise to automate processes, ensuring fast and secure operations...Senior
- ...technology firm in New Jersey seeks a qualified candidate for a senior position in Systems and Information Security. This role requires... ...expertise in managing Okta and Identity and Access Management (IAM) solutions. The ideal candidate should have a strong IT background...Senior
- AmmaluIT Corp is seeking an IAM Architect based in New York. The ideal candidate will have over 12 years of experience in IAM architecture, with deep expertise in Active Directory, Entra ID, and Microsoft PKI. The position demands proficiency in modern authentication protocols...Senior
- InterSources Inc in New York is seeking an IAM /Privileged Access Management Architect for a 12-month hybrid contract. The role includes managing identity provisioning workflows, supporting governance of Azure and Active Directory security groups, and leading onboarding...SeniorContract work
- A management consulting firm is seeking an IAM Architect to design and implement complex Identity and Access Management solutions. Candidates should have 7-10 years of experience, strong knowledge of LDAP and SailPoint Identity IQ, as well as excellent communication skills...Senior
- A leading IT services company is seeking a Senior IAM Solutions Architect to define secure identity lifecycle strategies and lead IAM integration into enterprise infrastructure. The ideal candidate has over 10 years in information security with significant IAM experience...Senior
- The-Voleon-Group in New York, NY, is seeking an IAM Architect to define and execute our identity and access management strategy. You will work directly with the CISO and be responsible for designing modern identity solutions across hybrid infrastructures. Candidates should...Senior
- CenterPoint Energy, Inc. is looking for a Senior IT Architect for Identity and Access Management in Houston, Texas. This role involves leading the IAM architecture, ensuring secure access across cloud and on-premises environments. The ideal candidate will have over 10...SeniorFlexible hours
- Conexess Group is seeking an experienced candidate with deep hands-on expertise in Enterprise Identity and Access Management (IAM) specifically within regulated industries like healthcare and financial services. This role emphasizes operational excellence and solution architecture...Senior
$104.8k - $192.2k
EY is seeking a Digital Identity SME - Senior in Palo Alto to enhance cybersecurity for clients through robust identity solutions. Responsibilities include assessing current states, designing IAM strategies, and implementing governance solutions with Microsoft Entra and...Senior$104.8k - $192.2k
EY is seeking a Senior Digital Identity SME with expertise in Microsoft Entra and Saviynt to enhance... ...solutions. Responsibilities include architecting identity governance solutions, conducting assessments, and developing IAM strategies. The ideal candidate has 3-5 years...SeniorFlexible hours- A strategic IT services provider is seeking a Senior IAM Expert with over 10 years of experience to enhance security and automate processes using Okta. This remote position requires local availability for occasional meetings in Washington, DC. Key tasks include configuring...SeniorRemote jobLocal area
- GuidePoint Security, LLC is seeking a Senior Security Architect to join their IAM team. This fully remote role involves implementing and enhancing Active Directory solutions, gathering technical requirements, and serving as a subject matter expert in client discussions....SeniorRemote jobFlexible hours
- ...design and implement identity solutions using Microsoft Entra and Saviynt. Responsibilities include assessing current states, developing IAM strategies, and implementing identity governance solutions. The ideal candidate will have hands-on experience with identity lifecycle...Senior
$152.4k - $251.6k
Memorial Sloan Kettering Cancer Center seeks a Principal Cyber Security Engineer specializing in Identity Access Management (IAM). In this senior role, you will shape secure identity solutions and lead IAM initiatives. The position requires deep technical expertise in...SeniorCasual workRemote work- ...involves designing the target PAM architecture, onboarding strategy, and implementation blueprint. Candidates must have 10+ years in IAM/PAM roles and deep CyberArk expertise. The position emphasizes collaboration across multiple departments, ensuring effective onboarding...Senior
- A technology consulting firm in Raleigh, NC is looking for an IAM Architect. This full-time role focuses on designing and implementing Identity and Access Management solutions, requiring expertise in IAM processes and programming in ASP.NET MVC. The ideal candidate will...SeniorFull time
$104.8k - $192.2k
EY is seeking a Digital Identity SME - Senior, focusing on enhancing identity solutions using Microsoft Entra and Saviynt. Key responsibilities... ...have a bachelor's degree, 3-5 years of experience, and relevant IAM certifications. The position includes a competitive salary range...Senior- Digital Technologies, LLC is looking for experts to design, integrate, and deploy IAM products, particularly involving the Saviynt platform. Ideal candidates will have over 10 years of experience in enterprise software development, with a strong focus on identity and access...Senior
$125.8k - $218.5k
EY is looking for a Digital Identity SME - Senior in New York, NY. In this role, you will enhance user experience and reduce risks through... ...’s degree. Strong analytical skills and familiarity with IAM technologies are needed. The position offers a competitive salary...Senior- A financial services firm in Austin, Texas is seeking a Senior IAM Automation Engineer to transform workforce identity management. This role combines DevOps and IAM expertise, enabling the development of self-service, API-driven solutions that enhance security and compliance...Senior
- Handshake is looking for a Senior Security Engineer in San Francisco to lead the architecture and implementation of enterprise identity solutions. This role requires proficiency in IAM engineering, automation, and strong scripting skills in Python. The ideal candidate has...SeniorFlexible hours
$90 - $95 per hour
...inclusive, adaptable, and forward-thinking organization, apply now. NTT DATA's Client is currently seeking a Senior Identity & Access Management (IAM) Architect- Remote to join our team in Phoenix, Arizona (US-AZ), United States (US). REMOTE Job Description:...SeniorHourly payTemporary workRemote workFlexible hours$152.4k - $251.6k
...Principal Cyber Security Engineer specializing in Identity Access Management. This role serves as a principal-level technical lead for IAM architecture and solutions, focusing on designing and implementing secure identity platforms. Candidates should have deep experience...SeniorRemote job$135k - $182.1k
Bank of America is seeking a Senior Identity and Access Management Specialist to oversee access provisioning initiatives within a complex... .... Candidates should have over 10 years of experience in IAM, strong technical skills with systems like Active Directory, Microsoft...Senior- ...Entra and Saviynt. Responsibilities include conducting assessments, architecting governance solutions, and collaborating with client stakeholders. Candidates should have a Bachelor’s degree, 3-5 years of IAM experience, and relevant certifications. The position offers a...Senior
$104.8k - $192.2k
EY is looking for a Digital Identity SME - Senior to enhance user experience and reduce operational risk. Responsibilities include assessing current states, designing IAM strategies, and implementing governance solutions using Microsoft Entra and Saviynt. The candidate...SeniorFlexible hours$104.8k - $192.2k
...experiences through robust identity solutions using Microsoft Entra and Saviynt. The role involves assessing current states, developing IAM strategies, and ensuring compliance during implementation. Ideal candidates will have a Bachelor’s degree and 3-5 years of relevant...SeniorFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior IAM Architect. Be the first to apply!
- senior hr assistant United States
- senior cost analyst United States
- senior computer engineer United States
- senior electrical estimator United States
- senior process manager United States
- senior development engineer United States
- senior program specialist United States
- senior food scientist United States
- senior living cook United States
- senior power bi developer United States

