Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Workforce Identity Architect, VP

$166k - $192k

MUFG Bank, Ltd.

Do you want your voice heard and your actions to count?

Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 150,000 colleagues, striving to make a difference for every client, organization, and community we serve. We stand for our values, building long-term relationships, serving society, and fostering shared and sustainable growth for a better world.

With a vision to be the world's most trusted financial group, it's part of our culture to put people first, listen to new and diverse ideas and collaborate toward greater innovation, speed and agility. This means investing in talent, technologies, and tools that empower you to own your career.

Join MUFG, where being inspired is expected and making a meaningful impact is rewarded.

The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.

Job Summary

The Workforce Identity Architect is a senior architecture role responsible for defining and governing workforce (human) identity architecture at global scale. This role designs and standardizes how employee and partner identities are created, governed, authenticated, authorized, reviewed, and retired across hybrid and cloud environments.

The Workforce Identity Architect operationalizes global IAM standards for human identity, ensuring secure, scalable, and auditable access while supporting regions transitioning through different identity maturity stages. This role focuses on architecture, standards, and enablement, not day-to-day operations or tool administration.

Key Responsibilities:

Workforce Identity Architecture
  • Define and maintain global workforce identity architecture using Microsoft Entra ID in hybrid and cloud-mastered environments.
  • Establish standard patterns for authentication, federation, Conditional Access, and MFA.
  • Design tenant-level identity integration patterns that scale across applications and regions.
Identity Lifecycle Management
  • Architect and standardize Joiner / Mover / Leaver (JML) identity lifecycle patterns driven by authoritative HR sources.
  • Ensure consistent provisioning, modification, and deprovisioning of workforce identities.
  • Reduce orphaned, dormant, and over-provisioned access through strong lifecycle design.
Identity Governance & Privileged Access
  • Define workforce identity governance standards, including access requests, access reviews, and separation of duties (SoD).
  • Architect privileged access models for workforce identities, including PIM and Just-in-Time access.
  • Ensure access models are auditable and aligned to regulatory and risk expectations.
AI-Assisted Analytics & Access Optimization
  • Leverage analytics and AI-assisted capabilities to improve role and entitlement design.
  • Reduce access certification noise by improving role quality, review scoping, and access rationalization.
  • Translate analytic insights into architectural improvements rather than one-off reporting.
External & Partner Identity
  • Define B2B and partner identity patterns using Entra ID that enable collaboration while maintaining centralized governance.
  • Ensure third-party access aligns with global standards and workforce identity controls.
Metrics & Continuous Improvement
  • Partner with IAM Governance teams to define and consume workforce identity metrics, including access quality, review effectiveness, and lifecycle hygiene.
  • Use metrics to continuously improve identity architecture and reduce access risk.
What This Role Is - and Is Not

This role is:
  • A senior architecture and standards role
  • Focused on workforce identity at enterprise and global scale
  • A bridge between architecture, security, risk, and delivery team
This role is not:
  • An IAM operation or helpdesk role
  • A single-tool administrator position
  • A regional-only identity role
What Success Looks Like
  • Consistent, scalable workforce identity standards adopted across regions
  • Reduced access risk and certification fatigue
  • Clear lifecycle ownership and audit-ready access governance
  • Smooth regional progression toward cloud-mastered identity
Why This Role Matters

Workforce identity is foundational to security, compliance, and user experience. This role ensures workforce identity evolves intentionally, consistently, and defensibly, enabling global scale while reducing access risk and operational friction.

Required Qualifications
  • 8-10+ years of experience in identity, access management, or security architecture roles.
  • Deep expertise in Microsoft Entra ID architecture in hybrid environments.
  • Strong experience designing JML lifecycle, identity governance, and privileged access controls.
  • Ability to design auditable, regulator-defensible access models.
  • Proven ability to influence across technical and non-technical stakeholders.
Preferred Qualifications
  • Experience using analytics or AI-assisted tools for access optimization and certification improvement.
  • Experience supporting global or federated IAM models with regional variation.
  • Familiarity with regulated industries (e.g., financial services).
  • Relevant identity or security certifications.
Required Skills (Must Have)

These skills are essential to successfully perform the role and should be treated as non-negotiable.
  • Identity Architecture & Lifecycle
  • Enterprise-level experience designing workforce identity architecture at scale.
  • Deep understanding of Joiner / Mover / Leaver (JML) lifecycle patterns and HR-driven identity provisioning.
  • Strong grounding in least privilege, access lifecycle management, and identity hygiene.
  • Microsoft Entra ID (Azure AD)
  • Hands-on architectural experience with Microsoft Entra ID in hybrid environments.
  • Design and governance of:
    • Authentication and federation
    • Conditional Access and MFA
    • Tenant-level architecture and integration patterns
  • Identity Governance & Access Controls
  • Proven experience designing identity governance solutions, including:
    • Access reviews / certifications
    • Separation of Duties (SoD)
    • Access request and approval workflows
  • Ability to design auditable, regulator-defensible access models.
  • Privileged Access
  • Experience with privileged access for workforce identities, including:
    • Privileged Identity Management (PIM)
    • Just-in-Time (JIT) access concepts
  • Stakeholder & Architecture Skills
  • Strong ability to collaborate across architecture, engineering, security, risk, and audit teams.
  • Comfortable influencing outcomes without direct authority.
  • Ability to translate complex identity concepts into clear architectural standards.
  • Suggested Skills (Strongly Preferred)
    • AI-Assisted Identity Analytics
    • Experience using analytics or AI-assisted tools to improve:
      • Role and entitlement rationalization
      • Role / bundle design
      • Reduction of access certification noise and over-reviewing
    • Ability to translate analytic insights into architectural improvements, not just reports.
    • B2B & External Identity
    • Experience designing B2B / partner identity patterns using Entra ID.
    • Understanding of secure external collaboration models that preserve centralized governance.
    • Hybrid & Global Environments
    • Experience operating in global or federated IAM models, supporting regions at varying maturity levels.
    • Familiarity with phased migrations from on-prem AD-centric to cloud-mastered identity.
    • Metrics & Continuous Improvement
    • Experience defining or consuming IAM metrics, such as:
      • Access review effectiveness
      • Orphaned or dormant access
      • Role reuse vs. sprawl
    • Ability to use metrics to drive continuous improvement in identity design.
Optional Skills (Nice to Have)

These are not required but add additional value and future-proofing.
  • Advanced Identity Concepts
  • Familiarity with continuous access evaluation and signal-driven identity models.
  • Exposure to workforce identity data platforms or identity fabric concepts.
  • Cloud & Platform Awareness
  • Understanding of how workforce identity integrates with cloud platforms (e.g., AWS IAM Identity Center) without owning cloud IAM design.
Certifications & Background
  • Relevant certifications (e.g., Microsoft Identity, CISSP, CCSP, IAM-focused certifications).
  • Experience in financial services or other highly regulated industries.

Education:

• Bachelor's degree in Computer Science or a closely-related discipline, or an equivalent combination of formal education and experience

"Visa sponsorship/support is based on business needs. We do not anticipate providing visa sponsorship/support for this position."

The typical base pay range for this role is between $166k - $192k depending on job-related knowledge, skills, experience, and location. This role may also be eligible for certain discretionary performance-based bonuses and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, paid vacation, sick days, and holidays.

Our hybrid work schedule is four days on-site and work remotely one day per week.

For more information on our Total Rewards package, please click the link below.

MUFG Benefits Summary

We will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws (including (i) the San Francisco Fair Chance Ordinance, (ii) the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, (iii) the Los Angeles County Fair Chance Ordinance, and (iv) the California Fair Chance Act) to the extent that (a) an applicant is not subject to a statutory disqualification pursuant to Section 3(a)(39) of the Securities and Exchange Act of 1934 or Section 8a(2) or 8a(3) of the Commodity Exchange Act, and (b) they do not conflict with the background screening requirements of the Financial Industry Regulatory Authority (FINRA) and the National Futures Association (NFA). The major responsibilities listed above are the material job duties of this role for which the Company reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of conditional offer of employment, if any.

The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.

We are proud to be an Equal Opportunity Employer and committed to leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business. We do not discriminate on the basis of race, color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and military status, disability, medical condition, sexual orientation, genetic information, or any other status of an individual or that individual's associates or relatives that is protected under applicable federal, state, or local law.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Workforce Identity Architect, VP in Jersey City, NJ vacancy
  • $172k - $191k

     ...The AI Knowledge Intelligence Foundations Architect is responsible for designing the...  ...backgrounds, perspectives and experience of our workforce to create opportunities for our...  ...origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected... 
    Suggested
    Work at office
    Local area
    Remote work

    MUFG

    Jersey City, NJ
    2 days ago
  • $145k - $200k

     ...Identity BISO / Business Identity Officer (BIO) We are seeking a highly driven and business-aligned Identity BISO / Business Identity...  ...all employees regardless of our differences and supports a workforce that is reflective of the communities where we work and live.... 
    Suggested
    Full time
    Part time
    Local area

    Jefferies Financial Group

    Jersey City, NJ
    2 days ago
  •  ...Senior Lead Architect Shape secure digital experiences and drive Customer Identity and Access Management strategy and customer security. If you are excited about...  ...the diverse talents they bring to our global workforce are directly linked to our success. We are an... 
    Suggested

    Chase

    Jersey City, NJ
    2 days ago
  • $104.8k - $192.2k

    A global professional services firm is seeking a Digital Identity SME to enhance user experiences and reduce risk. Responsibilities include creating IAM strategies and architecting governance solutions using Microsoft Entra and Saviynt. Required qualifications include a... 
    Suggested

    EY

    Hoboken, NJ
    5 days ago
  • $120.8k - $181.2k

     ...customers and their people. The Impact You Will Have The M365 / Workforce AI Practice Architect is a senior technical leader responsible for shaping,...  ...365 architecture including collaboration, security, identity, and governance. Proven experience architecting and delivering... 
    Suggested

    Softchoice

    New York, NY
    3 days ago
  • $189k - $370k

    Publicis Groupe Holdings B.V is seeking a Client Data Solution Lead to enable clients' growth through Connected Identity solutions. The ideal candidate should have over 18 years of experience in marketing and data solutions, demonstrating strong collaboration and client... 

    Publicis Groupe Holdings B.V

    New York, NY
    2 days ago
  •  ...Senior Principal Architect You're a pro who wants to influence the future of technical...  ...dispute management, Fraud/Risk processing, Identity and settlement. Ensure our Partners...  ...diverse talents they bring to our global workforce are directly linked to our success. We... 
    Worldwide

    Chase

    Jersey City, NJ
    2 days ago
  • $133k - $185k

     ...on this exciting opportunity. As an Architect III at JPMorganChase within the CIB Markets...  ...talents they bring to our global workforce are directly linked to our success. We are...  ...origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran... 

    JPMorgan Chase Bank, N.A.

    Jersey City, NJ
    1 day ago
  • $150k - $200k

     ...A leading identity security company is seeking a Customer Success Architect to manage customer relationships and ensure successful adoption of their Identity Lifecycle Management product. This remote position involves working closely with technical enterprise clients,... 
    Remote work

    Veza Technologies, Inc.

    New York, NY
    3 days ago
  •  ...Job Summary: We are seeking a highly skilled Workforce Architect with deep expertise in ADP Workforce Software (WFS) to lead the design, development, and implementation of scalable and efficient workforce management solutions. The ideal candidate will play a key role in... 
    Remote work

    ClinDCast LLC

    New York, NY
    3 days ago
  •  ...A leading technology firm in the United States is seeking a Capacity and Workforce Planning Architect. The successful candidate will translate demand forecasts into capacity models and analyze workforce metrics to ensure optimal service delivery. With 8 to 10 years of... 

    Framework Ventures

    New York, NY
    3 days ago
  •  ...Runlayer is seeking a software engineer specialized in identity and authentication systems based in the United States. You will architect and implement secure authentication systems for AI integration, collaborating with leading companies to solve real-world identity... 

    Runlayer

    New York, NY
    12 hours ago
  •  ...VP Workforce Planning Are you looking for an exciting career opportunity with a stable company? Aqua Corp invites you to consider a Workforce Planning Manager position located in the New York City area. The Aqua Corp Team has a philosophy that a company is the sum... 
    Contract work
    For contractors
    Worldwide

    Aqua

    New York, NY
    4 days ago
  • $150k - $210k

     ...in joining a team that’s eager to create, innovate and make an impact on the world? Read on. We are seeking a seasoned Workforce Strategy, VP responsible for delivering data‑driven workforce insights that inform hiring, cost, and location decisions across... 
    Temporary work
    Work at office

    Morgan Stanley

    New York, NY
    2 days ago
  •  ...based in Los Angeles, CA to lead the design of its authentication and authorization stack. You will architect high-performance Golang microservices to manage user identity and access tokens. The ideal candidate should have over 10 years of experience in backend... 

    Xsolla

    New York, NY
    1 day ago
  • $150k - $200k

     ...Customer Success Architect (Identity Lifecycle Management) Remote, USA About the Opportunity Looking to make a real impact in the fast-growing world of identity security? Join Veza, the company transforming how organizations manage access through our innovative Intelligent... 
    Local area
    Remote work

    Veza Technologies, Inc.

    New York, NY
    3 days ago
  • $250k - $275k

     ...A global leader in identity verification is seeking a Senior Vice President of Strategic Financial Services to lead sales in the financial sector. This senior role involves building partnerships with banks and fintechs while owning and closing strategic deals. Candidates... 
    Remote work

    Storm2

    New York, NY
    3 days ago
  • $160k - $200k

     ...everything we do - and where your work helps shape the future of finance. What We're Looking For Cross River Bank is seeking a VP of Identity & Access Management (IAM) to build and lead a modern, risk-aligned, and automation-forward IAM program. Reporting to the VP of... 

    Cross River

    Fort Lee, NJ
    5 days ago
  • $127.4k - $236.6k

     ...enterprise leader responsible for global demand optimization and workforce intelligence across Traveler Care/Traveler Experience...  ...colleagues through our global INclusion Groups, centered around common identities or initiatives, to discuss challenges, obstacles, achievements... 
    Immediate start
    Flexible hours
    Shift work

    American Express Global Business Travel

    New York, NY
    3 days ago
  • $137k - $170k

     ...leveraging the diverse backgrounds, perspectives and experience of our workforce to create opportunities for our colleagues and our business....  ..., color, national origin, religion, gender expression, gender identity, sex, age, ancestry, marital status, protected veteran and... 
    Work at office
    Local area
    Remote work
    1 day per week

    MUFG

    Jersey City, NJ
    1 day ago
  •  ...A progressive energy company is seeking a TechOps Architect to define strategic technical decisions and improve processes across their...  ...the TechOps team. The ideal candidate will have expertise in Identity and Access Management, experience leading technical projects,... 

    Octopus Energy

    New York, NY
    3 days ago
  •  ...Senior Lead Architect You're a hands-on architect with a passion for building robust solutions...  ...talents they bring to our global workforce are directly linked to our success. We are...  ..., gender, sexual orientation, gender identity, gender expression, age, marital or veteran... 

    Chase

    Jersey City, NJ
    1 day ago
  • The-Voleon-Group in New York, NY, is seeking an IAM Architect to define and execute our identity and access management strategy. You will work directly with the CISO and be responsible for designing modern identity solutions across hybrid infrastructures. Candidates should... 

    The-Voleon-Group

    New York, NY
    1 day ago
  • $152.4k - $251.6k

    Memorial Sloan Kettering Cancer Center seeks a Principal Cyber Security Engineer specializing in Identity Access Management (IAM). In this senior role, you will shape secure identity solutions and lead IAM initiatives. The position requires deep technical expertise in... 
    Casual work
    Remote work

    Memorial Sloan Kettering Cancer Center

    New York, NY
    4 days ago
  • EY is searching for a Digital Identity SME in New York to enhance user experience and mitigate risks through advanced identity governance solutions. The ideal candidate will have hands-on experience with Microsoft Entra or Saviynt, along with a solid understanding of IAM... 
    Flexible hours

    EY

    New York, NY
    3 days ago
  • $66.3k

     ...nonprofit organization in New York is seeking an Employer Training Coordinator who will be responsible for developing and delivering workforce training programs. The role requires strong operational management and experience with at-risk populations. The ideal candidate... 

    Fedcap Group

    New York, NY
    2 days ago
  •  ...AI research. This role requires a strong background in curriculum design and apprenticeship program administration, along with experience in workforce development. The position offers competitive hourly compensation and a remote work environment. #J-18808-Ljbffr Mercor
    Remote job
    Hourly pay
    Apprenticeship

    Mercor

    New York, NY
    4 days ago
  • Softchoice in Georgia is looking for an M365 / Workforce AI Practice Architect to lead and deliver Microsoft 365 collaboration and AI solutions. This senior role involves leading tenant-to-tenant migrations, designing secure architectures, and integrating AI capabilities... 

    Softchoice

    New York, NY
    3 days ago
  • A global consulting firm in New York is seeking a Digital Identity SME to enhance cybersecurity by designing and implementing identity...  ...assessing current states, developing IAM strategies, and architecting solutions using Microsoft Entra and Saviynt. The ideal candidate... 

    Ernst & Young Oman

    New York, NY
    5 days ago
  • $120.8k - $181.2k

    Softchoice is looking for an M365 / Workforce AI Practice Architect to shape and deliver Microsoft 365 collaboration solutions. This senior role involves leading complex transformations and integrating AI features while working closely with enterprise customers. Candidates... 

    Softchoice

    New York, NY
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Workforce Identity Architect, VP. Be the first to apply!