Job ID: JOB_ID_9322
Role Overview
The Senior IAM Architect (SailPoint IdentityNow) is a strategic and technical leadership role responsible for designing, implementing, and governing enterprise-wide Identity & Access Management (IAM) solutions. This role will define future-state IAM architecture, lead RBAC and identity lifecycle transformation, and drive compliance-aligned identity governance programs across complex enterprise environments, particularly in Financial Services ecosystems. The architect will act as a trusted advisor to CISOs, CIOs, and business leaders, ensuring identity is positioned as a core security and business enabler.
Key Responsibilities
- Enterprise IAM Architecture: Design enterprise IAM architecture using SailPoint IdentityNow and leading IGA platforms, aligned to Zero Trust, Hybrid IAM (Cloud + On-Prem), and scalable identity governance models driving IAM transformation.
- SailPoint IdentityNow SME: Implement JML (Joiner-Mover-Leaver) workflows, Access Certifications, Policy-Based Access Controls, and develop connectors, ensuring platform optimization and performance tuning.
- Identity Lifecycle Management: Automate provisioning/deprovisioning, integrate with HR systems, AD/LDAP, and enable real-time access governance.
- RBAC Design: Design roles, perform role mining and engineering, define business and IT roles, manage entitlements, enforce least privilege, and implement SoD (Segregation of Duties) frameworks.
- Connector Architecture: Design and implement connector architecture, including API-based integrations (REST/SCIM) across AWS, Azure, OCI, enterprise applications (ERP/CRM), and directories (AD/LDAP/Entra ID).
- Regulatory Compliance: Align IAM with regulatory frameworks such as FINRA, SEC, and SOC 2, along with NIST, ISO 27001, ensuring audit readiness and compliance reporting.
- IAM Migration & Transformation: Lead IAM migration and transformation, including legacy to SailPoint transitions, cloud IAM transformation, data mapping, entitlement reconciliation, and migration roadmap execution with risk mitigation.
- Financial Services IAM: Experience in Financial/Wealth Management IAM environments, supporting regulatory compliance, trading systems, payment platforms, and ensuring customer data security and auditability.
- IAM Integration: Integrate IAM with SIEM, SOAR, and PAM, enabling ITDR (Identity Threat Detection & Response) and risk-based access controls using contextual signals.
- IAM Leadership: Engage with CISO/CIO stakeholders, drive solution architecture, enable cross-functional collaboration, and mentor teams.
Qualifications & Experience
- Experience: 10+ years of experience in Identity & Access Management (IAM). 5+ years of hands-on experience with SailPoint IdentityNow / IdentityIQ. Proven experience in large-scale IAM transformation programs. Experience in Financial Services deployments (mandatory).
- Certifications: SailPoint Certified IdentityNow Engineer (mandatory). Preferred certifications include CISSP, CISM, TOGAF, and cloud credentials across AWS, Azure, or OCI.
- Technical Skills: Strong expertise in Identity Governance & Administration (IGA), RBAC/ABAC models, and end-to-end identity lifecycle management. Proficient in APIs (REST, SCIM), directory services (AD, LDAP, Entra ID), and familiar with PAM, SIEM/SOAR integrations, and cloud IAM frameworks.
- Compliance & Governance Knowledge: Solid understanding of financial regulatory requirements, audit frameworks, control validation, and identity risk and compliance metrics.
- Preferred Skills: Experience with leading IGA tools (Saviynt, Oracle IAM, Okta), exposure to Zero Trust architecture, and familiarity with automation, AI-driven IAM, and identity analytics.
- Soft Skills: Strong analytical thinking, executive communication capability, strategic mindset with execution focus, and ability to perform in complex, high-pressure environments.
Special Requirements
Mandatory: SailPoint Certified IdentityNow Engineer. Mandatory: Any other certification required. Experience in Financial Services deployments. Experience with leading IGA tools (Saviynt, Oracle IAM, Okta) preferred. Exposure to Zero Trust architecture. Familiarity with automation, AI-driven IAM, and identity analytics. Experience in complex, high-pressure environments.
Compensation & Location
Salary: $130,000 – $170,000 per year
Location: Austin, TX
Recruiter / Company – Contact Information
Email: kartikey@akliptech.com
Recruiter Notice:
To remove this job posting, please send an email from
kartikey@akliptech.com with the subject:
DELETE_JOB_ID_9322