Identity and Access Management Architect

Tata Consultancy Services

New York (NY)

On-site

USD 100,000 - 130,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Tata Consultancy Services in the United States seeks an experienced IAM and cloud security expert to lead design, implementation, and governance of identity programs across on‑prem and cloud environments. You will optimize access controls, authentication flows, and policy enforcement to protect critical assets.

The role emphasizes RBAC optimization, SSO, MFA, federation, and automated identity workflows, with strong collaboration with senior leadership to align security architecture with

Qualifications

  • At least ten (10) years of experience in a technical services function in a complex distributed enterprise network and application environment.
  • Hands-on experience in managing and designing IAM technologies and services (e.g. SailPoint IdentityIQ, Active Directory / EntraID IAM solutions in a large environment is required).
  • Ability to automate complex access management and authentication policies for on-prem and cloud hosted applications at an expert level required.
  • Skilled at collaborating with peers and socializing IAM governance and strategy with senior leadership and executives.

Responsibilities

  • At least ten (10) years of experience in a technical services function in a complex distributed enterprise network and application environment.
  • Hands-on experience in managing and designing IAM technologies and services (e.g. SailPoint IdentityIQ, Active Directory / EntraID IAM solutions in a large environment is required).
  • Ability to automate complex access management and authentication policies for on-prem and cloud hosted applications at an expert level required.
  • Skilled at collaborating with peers and socializing IAM governance and strategy with senior leadership and executives.
  • Working knowledge of Microsoft Purview, Azure IaaS security and data protection controls (e.g. data loss, encryption, conditional access, data classification).
  • Experienced in the following areas: security architecture, design, implementation, and integration management for full stack IT infrastructure (applications, scripting, databases, operating systems, hardware, IP network, and test planning in a dynamic continuous improvement environment).

Skills

IAM
Cloud security
RBAC
SSO
MFA
Federation
OIDC/OAuth/SAML
SCIM
NIST CSF
HIPAA/HITECH
Active Directory
EntraID
SailPoint IdentityIQ

Tools

SailPoint IdentityIQ
Active Directory
EntraID IAM

Job description

  • In depth knowledge delivering IAM and cloud security capabilities in a hybrid hosting model.
  • Optimize RBAC controls and map workflows for individuals / groups and perform certification based on segregation of duties / role.
  • Extensive knowledge of IAM technologies and protocols (SSO, MFA, Federation, PAM, OIDC, OAuth, SAML, and SCIM) and the ability to automate / streamline identity workflow scenarios.
  • Knowledge of NIST CSF, Health Insurance Portability and Accountability Act (HIPAA)/Health Information Technology for Economic and Clinical Health (HITECH) security concepts where capable of reviewing / performing security assessments for project solutions.
  • Ability to work effectively under pressure and function in a fast-paced collaborative team setting.
  • Demonstrated capacity to acquire new skills efficiently and ability to blend technical expertise and business perspective.
  • Able to make logical decisions regarding the best method to accomplish goals or solve a problem and is guided by precedent and general policy in making decisions.
  • Able to coordinate and obtain cooperation with others and to handle controversial issues tactfully.
  • At least ten (10) years of experience in a technical services function in a complex distributed enterprise network and application environment.
  • Hands-on experience in managing and designing IAM technologies and services (e.g. SailPoint IdentityIQ, Active Directory / EntraID IAM solutions in a large environment is required.
  • Ability to automate complex access management and authentication policies for on-prem and cloud hosted applications at an expert level required.
  • Skilled at collaborating with peers and socializing IAM governance and strategy with senior leadership and executives.
  • Working knowledge of Microsoft Purview, Azure IaaS security and data protection controls (e.g. data loss, encryption, conditional access, data classification).
  • Experienced in the following areas: security architecture, design, implementation, and integration management for full stack IT infrastructure (applications, scripting, databases, operating systems, hardware, IP network, and test planning in a dynamic continuous improvement environment.
Job Description
  • In depth knowledge delivering IAM and cloud security capabilities in a hybrid hosting model.
  • Optimize RBAC controls and map workflows for individuals / groups and perform certification based on segregation of duties / role.
  • Extensive knowledge of IAM technologies and protocols (SSO, MFA, Federation, PAM, OIDC, OAuth, SAML, and SCIM) and the ability to automate / streamline identity workflow scenarios.
  • Knowledge of NIST CSF, Health Insurance Portability and Accountability Act (HIPAA)/Health Information Technology for Economic and Clinical Health (HITECH) security concepts where capable of reviewing / performing security assessments for project solutions.
  • Ability to work effectively under pressure and function in a fast-paced collaborative team setting.
  • Demonstrated capacity to acquire new skills efficiently and ability to blend technical expertise and business perspective.
  • Able to make logical decisions regarding the best method to accomplish goals or solve a problem and is guided by precedent and general policy in making decisions.
  • Able to coordinate and obtain cooperation with others and to handle controversial issues tactfully.
Roles & Responsibilities
  • At least ten (10) years of experience in a technical services function in a complex distributed enterprise network and application environment.
  • Hands-on experience in managing and designing IAM technologies and services (e.g. SailPoint IdentityIQ, Active Directory / EntraID IAM solutions in a large environment is required.
  • Ability to automate complex access management and authentication policies for on-prem and cloud hosted applications at an expert level required.
  • Skilled at collaborating with peers and socializing IAM governance and strategy with senior leadership and executives.
  • Working knowledge of Microsoft Purview, Azure IaaS security and data protection controls (e.g. data loss, encryption, conditional access, data classification).
  • Experienced in the following areas: security architecture, design, implementation, and integration management for full stack IT infrastructure (applications, scripting, databases, operating systems, hardware, IP network, and test planning in a dynamic continuous improvement environment.
Generic Managerial Skills
  • Responsible for the evaluation, architecture and delivery of advanced technology solutions while demonstrating a high degree financial awareness and consideration of final objectives.
  • Determine requirements, develop, and recommend security solutions, capabilities, and controls that are aligned with business objectives, technology, and threat drivers.
  • Evaluate, assess, and recommend improvements to statements of work and proposals from vendors to ensure that adequate security protections are in place for security-rel ated deficiencies and required "user controls," and report any findings to the CISO and vendor management teams.
  • Develop and maintain security architecture, design, and roadmap documents. Develop and present detailed strategies, designs, and implementation plans to management.
  • Deliver complex customized designs and solutions aligned to defense in depth strategies by self and by collaborating with peers, vendors, and stakeholders.
  • Test, evaluate, and review security technologies, tools, and services aligned to business goals and make recommendations to the broader security team for their use based on security, financial and operational metrics.
  • Track developments and changes in the digital business and threat environments to ensure that the YNHHS healthcare applications' landscape is adequately protected by existing security controls.
  • Responsible for setting technical direction, scope, quality metrics, planning, execution and closing of technical projects.
  • Determine baseline security configuration standards for operating systems, applications, network segmentation, and identity and access management.
  • Provide high level of technical skill to enable resolution of complex security and identity and access related technology problems throughout the project lifecycle.
  • Work collaboratively across technical, customer, and management constituencies to ensure quality and timely service delivery.
  • Perform other job duties and responsibilities as assigned.

Salary Range: $100,000-$130,000 a year

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
Director, Cyber Security Engineering (Identity Access Management)
Director, Cyber Security Engineering (Identity Access Management)

Walgreens • United States

On-site
USD 165,000 - 283,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Eleven Recruiting • New York (NY)

On-site
USD 110,000 - 165,000
Senior Manager, IAM Cloud
Senior Manager, IAM Cloud

F-Prime Capital • United States

On-site
USD 186,000 - 202,000
Remote work
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
IAM Executive Advisor – Information Security
IAM Executive Advisor – Information Security

Jobtailor • Indianapolis (IN), Town of Montana (WI)

On-site
USD 120,000 - 180,000
Senior Manager, IAM Cloud
Senior Manager, IAM Cloud

HealthEdge Software, Inc. • Northern (KY)

Hybrid
USD 186,000 - 202,000
IAM/PAM Architect
IAM/PAM Architect

Tata Consultancy Services • New York (NY)

On-site
USD 120,000 - 130,000
Discretionary Annual Incentive
Medical Coverage
Parental Leaves
+3
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

Hybrid
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
Senior IAM Engineer Centene
Senior IAM Engineer Centene

Quest Technology Management • California (MO)

Hybrid
USD 120,000 - 160,000