CrawlJobs Logo

Staff IAM Architect

addepar.com Logo

Addepar

Location Icon

Location:
United States

Category Icon

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

137000.00 - 214000.00 USD / Year

Job Description:

We are currently seeking a Sr. IAM Architect to join our growing Information Security & Risk team. The successful candidate will have the opportunity to help take Addepar’s Internal Identity & Access Management program to the next level. In this role, this person will work as the lead architect of the internal Identity & Access Management (IAM) function to increase the overall security posture of the organization. This role requires someone to work Eastern or Central working hours.

Job Responsibility:

  • Provide strategic direction on the overall maturity of the internal IAM program
  • Improve Data Quality in upstream and downstream systems (eg: HRIS, IGA, IDP, Productivity Tools)
  • Lifecycle Management (eg: Joiners, Movers and Leavers)
  • Governance such Entitlement Reviews and proper inventory management of identities
  • Enhancing IAM Monitoring with a focus on Non-Human Identities (NHID)
  • Identity Governance & Administration (IGA) platform Enhancements
  • Assist with the Production Readiness process to assist with IAM related queries, needs and assist stakeholders
  • Analysis and Understanding of access requirements, internal process & systems flows, client expectations, security policies, etc. to enforce a least privileged access model
  • Solution new processes and/or technologies to improve the overall security posture
  • Assisting with the development and refinement of Information Security Policies & Standards
  • Work closely with our Data Governance team to ensure the appropriate access controls are in place
  • Provide secondary operational support for IAM related administration tools

Requirements:

  • 8+ years of general Information Security experience
  • At least 5 years focused on Identity & Access Management
  • Bachelor’s degree/equivalent or higher
  • Computer Science or Engineering related education preferred
  • In-Depth Experience with Identity & Access Management tools
  • Familiar with IT Governance and Compliance functions, including SOC2 and Data Governance
  • Familiar with Security Operations Center(SOC) and Vulnerability management functions
  • Skilled at developing process maps, and translating processes to technical / system requirements
  • Attention to details and analytical skills
  • Ability to build strong relationships and work collaboratively
  • Excellent verbal and written communication and organisational skills
  • Curious, always learning and deeply interested in Information Security
  • Applicants must be legally authorized to work in the United States without requiring current or future visa sponsorship

Nice to have:

  • Experience with IGA tools such as Sailpoint, Saviynt
  • Experience working with IAM related systems such as Identity Providers(IDP), Multi-Factor Authentication(MFA), Zero Trust Access(ZTA) and Privileged Access Management(PAM) platforms
  • Experience working with HRIS systems such as Workday, PeopleSoft
  • Basic understanding of SQL database querying and leveraging API’s
  • Hands-on experience with Amazon Web Services (AWS) or similar cloud platform and strong understanding of IAM related policies and configurations
  • Experience with Okta and Google Workspace environments
What we offer:
  • bonus
  • equity
  • benefits
  • reasonable accommodation for individuals with disabilities
  • flexible workforce model

Additional Information:

Job Posted:
December 05, 2025

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Staff IAM Architect

Staff IAM Architect

We are currently seeking a Sr. IAM Architect to join our growing Information Sec...
Location
Location
Canada
Salary
Salary:
Not provided
addepar.com Logo
Addepar
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of general Information Security experience
  • At least 5 years focused on Identity & Access Management
  • Bachelor’s degree/equivalent or higher (Computer Science or Engineering preferred)
  • In-Depth Experience with Identity & Access Management tools
  • Familiar with IT Governance and Compliance functions (SOC2, Data Governance)
  • Familiar with Security Operations Center (SOC) and Vulnerability management functions
  • Skilled at developing process maps and translating processes to technical/system requirements
  • Attention to details and analytical skills
  • Ability to build strong relationships and work collaboratively
  • Excellent verbal and written communication and organisational skills
Job Responsibility
Job Responsibility
  • Provide strategic direction on the overall maturity of the internal IAM program
  • Improve Data Quality in upstream and downstream systems (HRIS, IGA, IDP, Productivity Tools)
  • Lifecycle Management (Joiners, Movers and Leavers)
  • Governance such as Entitlement Reviews and proper inventory management of identities
  • Enhancing IAM Monitoring with a focus on Non-Human Identities (NHID)
  • Identity Governance & Administration (IGA) platform Enhancements
  • Assist with the Production Readiness process for IAM related queries and needs
  • Analysis and Understanding of access requirements, internal process & systems flows, client expectations, security policies to enforce least privileged access
  • Solution new processes and/or technologies to improve overall security posture
  • Assist with development and refinement of Information Security Policies & Standards
  • Fulltime
Read More
Arrow Right

Staff Software Engineer, IAM

Mozilla IAM team seeks a Staff Software Engineer to rebuild our Identity and Acc...
Location
Location
United States; Canada
Salary
Salary:
Not provided
mozilla.org Logo
Mozilla
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years experience in software engineering
  • at least 5 years of extensive IAM / IdP expertise
  • Successfully implemented IAM/IdP Solution using Okta, Google IdP
  • Proven technical leadership experience
  • Expertise in AuthN, AuthZ, and access governance
  • Deep knowledge of identity lifecycle management and access governance
  • Proficient in Python, JavaScript, Github actions, GitOps workflows
  • Strong expertise integrating with Cloud Service Providers and cloud-native technologies, preferably GCP
  • Excellent communication skills aligning technology with user needs and organizational goals
  • Self-starter who thrives in ambiguity
Job Responsibility
Job Responsibility
  • Architect and lead IAM / IdP system redesign, emphasizing user experience and scalability
  • Guide technical decision-making and adoption of user-centric solutions
  • Guide team members and promote engineering standard methodologies, with a focus on usability and maintainability
  • Facilitate cross-functional collaboration for efficient and cohesive platform delivery
  • Drive automation and self-service capabilities in IAM / IdP, ensuring robust security, compliance, and improved user satisfaction
  • Meet with engineering teams across Mozilla to understand their needs and concerns around access management
  • Document standard methodologies and design guidelines
  • Be trusted to resolve unclear but urgent tasks
What we offer
What we offer
  • Generous performance-based bonus plans
  • Rich medical, dental, and vision coverage
  • Generous retirement contributions with 100% immediate vesting
  • Quarterly all-company wellness days
  • Country specific holidays plus a day off for your birthday
  • One-time home office stipend
  • Annual professional development budget
  • Quarterly well-being stipend
  • Considerable paid parental leave
  • Employee referral bonus program
  • Fulltime
Read More
Arrow Right

Security Engineer

Location
Location
Salary
Salary:
Not provided
ryzlabs.com Logo
Ryz Labs
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years total technical or security engineering experience with security focus
  • 2+ years of AWS or GCP experience implementing security and hardening activities, especially in a large or complex environments
  • 2+ years working in a CI/CD DevSecOps environment (Jenkins, Travis, Jira, GitHub, GitLab, etc.)
  • Experience with IAM solutions such as Okta and deep knowledge of AWS or GCP IAM and how to configure and maintain least-privilege and segregation of duty across boundaries
  • Knowledge and experience with EC2, ECS, S3, LBS, API Gateways, Bastion Hosts, VPC, Cloud Trail, Cloud Watch, Data Dog, SIEM and other cloud technologies
Job Responsibility
Job Responsibility
  • collaborate with our customers and suppliers to model security requirements against cloud capabilities
  • work closely with engineering teams, program management and senior stakeholders to translate requirements into achievable designs that raise the bar
  • function across teams ensuring that the strategic architecture is met across design, implementation, deployment and operation
  • playing a key role in defining the mechanisms that the company will use to validate how services are meeting all the security operational controls
  • work closely with the product and platform engineering teams to architect, implement, and operate effective cloud security controls
  • Partner with internal IT & Product Engineering stakeholders to assess gaps in products and platforms, design mitigating controls, and train and educate staff on remediations
  • Partner with the Business Technology and IAM teams to build a new Access Management and User Access Review system based on Lumos
  • Maintain inventory of cloud assets and ensure secure bootstrapping of deployed assets while monitoring for drift and potential threats across product engineering environment
  • Design and build the security components of the next phase of Sonder Security Roadmap
Read More
Arrow Right

Manager – Security Architecture and Strategy

The Manager, Security Architecture and Strategy, is a key role in continent secu...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.marriott.com Logo
Marriott Bonvoy
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science, Information Technology, Information Security, Cybersecurity or related field
  • 3+ years IT/ information security work experience, preferably in a large organization
  • Experience in reviewing Security Architectures and explaining security risks/gaps as well as mitigation strategies is highly desirable
  • Professional certifications related to security assessment, such as CISA, CRISC, PCI ISA, ISO/IEC 27001 Lead Auditor, etc.
  • The coordinator must have strong interpersonal communication skills, as well as organizational skills. Project management experience is also desirable.
  • Fluent in English, both spoken and written.
  • Strong working knowledge of IT service management (e.g., ITIL-related disciplines)
  • Ability to communicate Security Requirements for areas including but not limited to: Cloud Computing, Application Development, IAM, Cryptography, and Infrastructure design and standards to a diverse audience.
  • Ability to present the process to all levels of audience, be comfortable answering questions around the process, gather and document feedback from these presentations and bring that back to the Security Architect for future enhancements.
  • Experience in creating presentations in PowerPoint, and comfort in presenting to C level executives.
Job Responsibility
Job Responsibility
  • Contributes to, evaluates, and supports the documentation, and validation processes necessary to assure that associates, information technology systems and business processes meet the organization’s information assurance, security, and privacy requirements.
  • Consults with customers to gather and evaluate functional requirements and provides these to the Security Architect team.
  • Provides sound advice and recommendations to leadership and staff on a variety of relevant topics within the pertinent subject domain
  • Works with the Security Architect Analysts to monitor ongoing project activities, intake of new projects and monitoring of the Security Engagement Process to meet team objectives for performance.
  • Develops specific goals and plans to prioritize, organize, and accomplish work.
  • Champions leaders’ vision for product and service delivery.
  • Makes and executes the necessary decisions to keep moving forward toward achievement of goals.
  • Provides direction and assistance to other teams regarding projects.
  • Determines priorities, schedules, plans and necessary resources to promote completion of any projects on schedule.
  • Analyzes information and evaluates results to choose the best solution and solve problems.
  • Fulltime
Read More
Arrow Right
New

Staff DevOps - Data Platform

We are looking for a Staff DevOps - Data Platform to join the Data and ML Platfo...
Location
Location
France , Paris
Salary
Salary:
Not provided
doctolib.fr Logo
Doctolib
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience after graduation as a Staff Data Platform Engineer, Staff Data Ops, Staff Site Reliability Engineer, or in a similar role, with a history of architecting and scaling robust data platforms
  • Extensive experience with Google Cloud Platform and a command of Kubernetes & Terraform for automated deployments
  • Authority on implementing network and IAM security best practices
  • Deep technical proficiency in orchestrating data pipelines using Airflow or Dagster, deploying applications to the cloud, and leveraging modern data warehouses such as BigQuery
  • Highly skilled in programming with Python, and have a solid understanding of software development principles
  • Excellent troubleshooter who excels at diagnosing and fixing data infrastructure and identifying performance bottlenecks
  • Strong communicator who can articulate complex technical concepts to both technical and non-technical audiences
Job Responsibility
Job Responsibility
  • Design and implement enterprise-scale data infrastructure strategies, conducting thorough impact and cost analysis for major technical decisions, and establishing architectural standards across the organization
  • Build and optimize complex, multi-region data pipelines handling petabyte-scale datasets, ensuring 99.9% reliability and implementing advanced monitoring and alerting systems
  • Lead cost analysis initiatives, identify optimization opportunities across our data stack, and implement solutions that reduce infrastructure spend while improving performance and reliability
  • Provide technical guidance to data engineers and cross-functional teams, conduct architecture reviews, and drive adoption of best practices in DataOps, security, and governance
  • Evaluate emerging technologies, conduct proof-of-concepts for new data tools and platforms, and lead the technical roadmap for data infrastructure modernization
What we offer
What we offer
  • Free comprehensive health insurance for you and your children
  • Parent Care Program: receive one additional month of leave on top of the legal parental leave
  • Free mental health and coaching services through our partner Moka.care
  • For caregivers and workers with disabilities, a package including an adaptation of the remote policy, extra days off for medical reasons, and psychological support
  • Work from EU countries and the UK for up to 10 days per year, thanks to our flexibility days policy
  • Work Council subsidy to refund part of sport club membership or creative class
  • Up to 14 days of RTT
  • A subsidy from the work council to refund part of the membership to a sport club or a creative class
  • Lunch voucher with Swile card
  • Fulltime
Read More
Arrow Right

Staff Software Engineer I - Internal Access Management

We are seeking a Staff Software Engineer to lead the technical vision, architect...
Location
Location
Salary
Salary:
225100.00 - 264500.00 CAD / Year
confluent.io Logo
Confluent
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of engineering experience
  • 4+ years in security, IAM, or distributed systems
  • Deep expertise in Kubernetes, workload identity, cloud IAM (AWS, GCP, Azure), and zero-trust architectures
  • Strong understanding of authentication technologies: IAM, OAuth2, OIDC, policy engines, and modern zero-trust principles
  • Proven track record leading multi-team technical initiatives at a Staff or Senior Staff level
  • Strong knowledge of distributed systems, cloud infrastructure, container orchestration, and service mesh
  • Excellent communication and stakeholder-influence skills across engineering and security domains
Job Responsibility
Job Responsibility
  • Define and drive the long-term architecture and roadmap for Internal Access Management across Kubernetes and multi-cloud environments
  • Architect and implement least privilege, just-in-time access, and zero-trust models across Confluent services
  • Build and evolve scalable access-authorization workflows and lifecycle management systems using technologies such as SPIFFE/SPIRE, OPA, cloud IAM policies, workload identity, and internal enforcement engines
  • Strengthen security boundaries through threat modeling, defense-in-depth practices, and comprehensive access-auditing capabilities
  • Partner with cross-functional teams—including Platform, Kafka, Observability, Developer Productivity, Release Engineering, and SRE—to drive adoption of secure identity and access patterns
  • Mentor senior engineers, elevate engineering standards, and influence architectural decisions across the organization
  • Communicate complex technical decisions clearly and align stakeholders across engineering and security
What we offer
What we offer
  • Remote-First Work
  • Robust Insurance Benefits
  • Flexible Time Away
  • The Best Teammates
  • Experience Ambassadors
  • Open and Honest Culture
  • Well-Being and Growth
  • Offers Equity
  • Fulltime
Read More
Arrow Right

Staff Technical Program Manager

The role is part of the broader Mozilla Infrastructure Organization that is resp...
Location
Location
United States; Canada
Salary
Salary:
128000.00 - 170000.00 CAD / Year
mozilla.org Logo
Mozilla
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 10+ years of experience in program or project management
  • Minimum of 3 years focused on access management, identity management, security, IT systems, and Cloud environments
  • Proven track record of successfully delivering large-scale, complex technology programs in enterprise environments
  • Strong understanding of IAM concepts: identity lifecycle management, authentication/authorization protocols
  • Experience with IAM platforms such as Okta, Ping Identity, ForgeRock, SailPoint, or similar tools
  • Familiarity with cloud platforms (AWS, Azure, GCP) and their native IAM services
  • Working knowledge of compliance frameworks
  • Proficient in Agile methodologies
  • Skilled senior leadership management, communication, and negotiation skills
  • Ability to lead multiple workstreams and teams, prioritize tasks, and meet deadlines in a fast-paced, yet collaborative environment
Job Responsibility
Job Responsibility
  • Develop and drive the overall IAM program roadmap
  • Serve as the primary contact for IAM initiatives
  • Continuously review industry trends, emerging technologies, and standard methodologies to enhance the IAM program
  • Understand the technical requirements and needs of Mozilla’s IAM system
  • Partner with product & engineering managers, infrastructure teams, and security engineers
  • Coordinate cross-functional resources
  • Facilitate collaboration among engineering, operations, and security teams
  • Facilitate and where needed contribute to defining standard service arch designs, data flow call patterns, API interfaces
  • Work closely with engineering teams to document existing implementations
  • Ability to disambiguate complex workflows and system integrations
What we offer
What we offer
  • Generous performance-based bonus plans
  • Rich medical, dental, and vision coverage
  • Generous retirement contributions with 100% immediate vesting
  • Quarterly all-company wellness days
  • Country specific holidays plus a day off for your birthday
  • One-time home office stipend
  • Annual professional development budget
  • Quarterly well-being stipend
  • Considerable paid parental leave
  • Employee referral bonus program
  • Fulltime
Read More
Arrow Right

Sr Staff/Principal Devops Engineer

Balbix is looking for a DevOps Sr Staff/Principal Engineer to join our growing t...
Location
Location
India , Delhi
Salary
Salary:
Not provided
balbix.com Logo
Balbix
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Science or a related field
  • 10+ years of experience in DevOps for Sr Staff or 12-15 years for Principal
  • 4+ years of experience setting up and managing infrastructure in AWS for a product development organization
  • Ability to independently architect, design, document, and implement complex platforms and complex DevOps systems
  • Solid understanding of AWS infrastructure and services such as load balancers (ALB/ELB), IAM, KMS, Networking, EC2, CloudWatch, CloudTrail, CloudFormation, Lambda, etc.
  • 4+ years of experience building infrastructure using Terraform
  • 3+ years of solid experience with Kubernetes and Helm
  • Expert-level programming experience with Python for scripting and automation
  • Excellent knowledge of working on configuration management systems such as Ansible
  • Hands-on experience with CI/CD code management and deployment technologies like GitLab, Jenkins, or similar
Job Responsibility
Job Responsibility
  • Lead the development of critical DevOps projects, set technical direction, and influence the organization's technical strategy
  • Solve complex problems, mentor senior engineers, and collaborate with cross-functional teams to deliver high-impact DevOps solutions
  • Design and develop IaC components for Balbix solutions and internal engineering tools running in AWS
  • Build and deploy a state-of-the-art security SaaS platform using the latest CI/CD techniques, ensuring it is fully automated, repeatable, and secure
  • Secure infrastructure using best practices (e.g., TLS, bastion hosts, certificate management, authentication and authorization, network segmentation)
  • Design and develop a scalable, cost-efficient deployment infrastructure on Kubernetes
  • Design and implement consistent observability systems for Balbix solutions
  • Participate in on-call rotation
  • Fulltime
Read More
Arrow Right