Overview
As an IDAM Architect, you will lead the design and delivery of enterprise-scale identity and access management solutions for highly regulated environments. You will shape identity strategy, modernise IDAM platforms, and ensure governance and security across complex on-premises and cloud environments. You’ll provide technical leadership on large programmes and collaborate with cross-functional teams to enable secure digital transformation. This role offers the challenge of advancing zero-trust and cloud-based identity initiatives in critical settings.
Responsibilities
- Design enterprise-scale Identity and Access Management architectures
- Develop secure authentication, authorization and MFA frameworks
- Design and implement RBAC, ABAC and PAM solutions
- Define identity governance, access lifecycle and entitlement management strategies
- Evaluate emerging technologies and support platform selection activities
- Ensure identity architectures align with government and industry security standards
- Conduct security risk assessments and provide mitigation strategies
- Design secure audit, logging and monitoring capabilities
- Develop data protection and encryption approaches for identity platforms
- Support regulatory and security compliance requirements
- Lead the design and implementation of modern IDAM platforms (Azure AD/Entra ID, Okta, Ping, ForgeRock)
- Architect cloud-native and hybrid identity solutions
- Support API-driven identity services and microservices-based authentication models
- Lead identity migrations and transformation programmes
- Provide architectural leadership and mentoring to technical teams
- Define architecture standards, patterns and governance frameworks
- Lead technical design reviews and architecture assurance activities
- Produce and maintain high-quality architecture documentation
- Design identity integrations across enterprise applications and cloud platforms
- Architect SSO, federation and cross-domain authentication capabilities
- Facilitate workshops and stakeholder engagements
- Present architecture recommendations to senior technical and business leaders
Key requirements
- 12+ years in Identity and Access Management
- 5+ years in an Architecture role
- Proven experience delivering enterprise-scale IDAM solutions
- Experience in secure, regulated or government-focused environments
- Expertise in Microsoft Entra ID / Azure AD, Okta, Ping Identity, ForgeRock
- Strong knowledge of Active Directory and LDAP, OAuth 2.0, SAML, OpenID Connect, Identity Federation
- Experience with PAM, RBAC, ABAC, IGA, Access Certification and Entitlement Management
- Understanding of cloud and hybrid identity architectures
- Strong knowledge of security architecture, cryptography and secure authentication principles
- Excellent communication and stakeholder management skills
- Desirable: CISSP/CISM or equivalent, Entra/Azure certifications, Okta certifications
- Desirable: Zero Trust architectures, Defence/Aerospace/Central Government experience
- Previous DV or SC clearance
- communication
- stakeholder management
- leadership
- Microsoft Entra ID / Azure AD
- Okta
- Ping Identity
…
