Senior Principal, Enterprise Identity & Access Management Architect

The Cigna Group

Bloomfield (CT)

Hybrid

USD 175,000 - 291,000

Full time

10 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health, vision, dental benefits
401(k) plan
Life insurance
Tuition reimbursement
18+ days PTO and paid holidays

Job summary

The Cigna Group is seeking a Senior Principal IAM Architect to lead the strategy, design, and governance of identity and access security across the organization. You will drive the long‑term IAM vision and oversee modernization across cloud and on-prem environments, collaborating with executives to align security with business goals.

Responsibilities include defining enterprise IAM roadmaps, establishing governance for authentication, authorization, and privileged access, and guiding technology

Qualifications

  • Bachelor's degree in CS, cybersecurity, Information Systems, or related field; Master's preferred.
  • 12+ years in cybersecurity, identity management, or enterprise architecture.
  • 8+ years leading enterprise IAM architecture or large transformation programs.
  • Experience leading complex technology initiatives and influencing senior/executive leaders.
  • Experience in large, highly regulated organizations.
  • Knowledge of IAM concepts: IGA, PAM, CIAM, Zero Trust.
  • Experience with major IAM platforms (CyberArk, Okta, Ping Identity, SailPoint, Microsoft Entra ID).
  • Strong communication to explain complex topics to executives and business leaders.

Responsibilities

  • Define and lead the enterprise IAM strategy, architecture, standards, and multi-year roadmap.
  • Create standards for authentication, authorization, privileged access, and access controls.
  • Serve as a senior technical advisor for IAM programs.
  • Partner with cybersecurity, risk, compliance and business leaders to align IAM with business needs.
  • Explain IAM risks in business terms to support decisions.
  • Guide investments and recommend IAM platforms and solutions.
  • Establish and maintain IAM policies, controls, and governance standards.
  • Support compliance with HIPAA, SOX, GDPR, NIST, ISO and other standards.
  • Lead identity risk assessments and risk reduction strategies.
  • Strengthen identity governance, RBAC, access reviews, SoD, and PAM.
  • Lead evaluation and adoption of new IAM technologies and platforms.
  • Advance cloud identity, Zero Trust, passwordless authentication, adaptive access, PAM, and AI-enabled security.
  • Define identity integration across apps, APIs, cloud services, data platforms, and digital channels.
  • Provide technical direction for large IAM implementations and migrations.
  • Guide architecture, engineering, security, and operations through identity challenges.
  • Ensure IAM solutions are secure, reliable, scalable, and future-ready.
  • Mentor architects and engineers; promote knowledge sharing.

Skills

IAM architecture
Strategy & roadmaps
Cloud & on-prem IAM
Stakeholder leadership
Identity Governance & Administration
Zero Trust
PowerShell
Python

Education

Bachelor's degree in CS or related
Master's degree preferred

Tools

CyberArk
Okta
Ping Identity
SailPoint
Microsoft Entra ID (Azure AD)

Job description

The Senior Principal Enterprise Identity & Access Management (IAM) Architect leads the strategy, design, and governance of identity and access security across the organization. This role sets the long‑term IAM vision and ensures identity solutions support business goals, cybersecurity standards, risk management, and regulatory requirements. This senior technical leader serves as a trusted advisor to executives and technology leaders. The role leads large IAM modernization efforts across cloud and on-premises environments, including workforce, customer, partner, privileged, and machine identities. The Senior Principal IAM Architect also helps guide technology investments, improve security, support compliance, and prepare the organization for emerging technologies, including AI-enabled security capabilities.

Responsibilities
  • Define and lead the enterprise IAM strategy, architecture, standards, and multi-year roadmap.
  • Create standards for identity governance, authentication, authorization, privileged access, and access controls.
  • Serve as a senior technical advisor for complex IAM and identity security programs.
  • Partner with cybersecurity, technology, risk, compliance, and business leaders to align IAM solutions with business needs.
  • Explain complex identity and security risks in clear business terms to support leadership decisions.
  • Guide technology investments and recommend IAM platforms and solutions based on business and security needs.
  • Establish and maintain IAM policies, security controls, and governance standards.
  • Support compliance with requirements such as HIPAA, SOX, GDPR, NIST, ISO, and other cybersecurity standards.
  • Lead identity risk assessments and strategies to reduce security risks.
  • Strengthen identity governance, role-based access, access reviews, segregation of duties, and privileged access management.
  • Lead the evaluation and adoption of new IAM technologies and platforms.
  • Advance cloud identity, Zero Trust, passwordless authentication, adaptive access, privileged access management, and AI-enabled security.
  • Define identity integration strategies across applications, APIs, cloud services, data platforms, and digital channels.
  • Provide technical direction for large IAM implementations, migrations, and transformation programs.
  • Guide architecture, engineering, security, and operations teams through complex identity challenges.
  • Ensure IAM solutions are secure, reliable, scalable, and able to support future growth.
  • Mentor architects, engineers, and technical leaders while encouraging knowledge sharing and continuous learning.
  • Provide IAM guidance during mergers, acquisitions, business changes, and technology modernization efforts.
Qualifications
  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field. Master's degree preferred.
  • 12+ years of experience in cybersecurity, identity management, enterprise architecture, or a related area.
  • 8+ years of experience leading enterprise IAM architecture, strategy, or large transformation programs.
  • Experience leading complex technology initiatives and influencing senior and executive leaders.
  • Experience working in large, highly regulated organizations.
  • Deep knowledge of IAM, Identity Governance & Administration (IGA), Privileged Access Management (PAM), Customer IAM (CIAM), and Zero Trust.
  • Experience with technologies such as CyberArk, Okta, Ping Identity, SailPoint, and Microsoft Entra ID (Azure AD).
  • Strong knowledge of SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, LDAP, Kerberos, FIDO2, and modern authentication methods.
  • Experience designing identity solutions across AWS, Azure, GCP, hybrid-cloud, and multi-cloud environments.
  • Strong knowledge of API security, directory services, identity federation, automation, and enterprise integrations.
  • Experience using automation and AI-enabled capabilities to improve identity governance, security, and access processes.
  • Experience with PowerShell, Python, and infrastructure-as-code methods.
  • Strong communication skills with the ability to explain technical topics to both technical and business leaders.
  • Ability to lead through complex business and technology changes and build agreement across teams.

If you will be working at home occasionally or permanently, the internet connection must be obtained through a cable broadband or fiber optic internet service provider with speeds of at least 10Mbps download/5Mbps upload.

For this position, we anticipate offering an annual salary of 174,800 - 291,300 USD / yearly, depending on relevant factors, including experience and geographic location.

This role is also anticipated to be eligible to participate in an annual bonus and long term incentive plan.

At The Cigna Group, you’ll enjoy a comprehensive range of benefits, with a focus on supporting your whole health. Starting on day one of your employment, you’ll be offered several health‑related benefits including medical, vision, dental, and well‑being and behavioral health programs. We also offer 401(k), company paid life insurance, tuition reimbursement, a minimum of 18 days of paid time off per year, paid holidays, and leaves of absence. For more details on our employee benefits programs, click here.

About The Cigna Group

Doing something meaningful starts with a simple decision, a commitment to changing lives. At The Cigna Group, we’re dedicated to improving the health and vitality of those we serve. Through our divisions Cigna Healthcare and Evernorth Health Services, we are committed to enhancing the lives of our clients, customers and patients. Join us in driving growth and improving lives.

Qualified applicants will be considered without regard to race, color, age, disability, sex, childbirth (including pregnancy) or related medical conditions including but not limited to lactation, sexual orientation, gender identity or expression, veteran or military status, religion, national origin, ancestry, marital or familial status, genetic information, status with regard to public assistance, citizenship status or any other characteristic protected by applicable equal employment opportunity laws.

If you need a reasonable accommodation to complete the online application process, please email seeyourself@thecignagroup.com for assistance. Please note that this email inbox is dedicated to accommodation requests only and cannot provide application updates or accept resumes.

The Cigna Group has a tobacco-free policy and reserves the right not to hire tobacco/nicotine users in states where that is legally permissible. Candidates in such states who use tobacco/nicotine will not be considered for employment unless they enter a qualifying smoking cessation program prior to the start of their employment. These states include: Alabama, Alaska, Arizona, Arkansas, Delaware, Florida, Georgia, Hawaii, Idaho, Iowa, Kansas, Maryland, Massachusetts, Michigan, Nebraska, Ohio, Pennsylvania, Texas, Utah, Vermont, and Washington State.

Qualified applicants with criminal histories will be considered for employment in a manner consistent with all federal, state and local ordinances.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Principal, Enterprise Identity & Access Management Architect
Senior Principal, Enterprise Identity & Access Management Architect

Cigna Health and Life Insurance Company • Bloomfield (CT)

On-site
USD 175,000 - 291,000
Medical benefits
Vision and dental
401(k) plan
+2
Product Strategy Senior Advisor – Identity Strategy & Innovation
Product Strategy Senior Advisor – Identity Strategy & Innovation

The Cigna Group • United States

Hybrid
USD 113,000 - 189,000
Health, vision, dental benefits
401(k) plan
Tuition reimbursement
+1
Info Protection Advisor-App Security Eng- Hybrid
Info Protection Advisor-App Security Eng- Hybrid

cigna • Bloomfield (CT)

Remote
USD 156,000 - 172,000
Health benefits
401(k)
Paid time off
+1
Senior Full Stack Developer- Senior Advisor
Senior Full Stack Developer- Senior Advisor

cigna • Tallahassee (FL)

On-site
USD 130,000 - 217,000
Health benefits
401(k)
Life insurance
+3
Principal Data & Solution Architect
Principal Data & Solution Architect

The Cigna Group • United States

On-site
USD 152,000 - 253,000
Health benefits
401(k)
Life insurance
+4
VP, Strategic Intelligence & Market Insights
VP, Strategic Intelligence & Market Insights

The Cigna Group • Philadelphia

On-site
USD 256,000 - 384,000
Annual bonus opportunity
Comprehensive benefits package
Senior Executive Assistant- Hybrid
Senior Executive Assistant- Hybrid

cigna • Bloomfield (CT)

Hybrid
USD 103,155,000 - 154,732,000
401(k)
Health benefits incl. medicalVision.DH
Paid time off
Senior Principal, Enterprise Strategy & Strategic Opportunities
Senior Principal, Enterprise Strategy & Strategic Opportunities

The Cigna Group • Bloomfield (CT)

On-site
USD 175,000 - 292,000
Health benefits
401(k)
Tuition reimbursement
+3
Enterprise Architecture Director – US Employer
Enterprise Architecture Director – US Employer

Cigna Health and Life Insurance Company • Bloomfield (CT)

On-site
USD 170,000 - 283,000
Medical
Vision
Dental
+6
Strategic Planning Senior Director
Strategic Planning Senior Director

The Cigna Group • Bloomfield (CT)

On-site
USD 193,000 - 322,000
Health benefits
401(k) plan
Tuition reimbursement
+1