Cyber Security IAM Leader
- Lead the execution of aligning applications and systems to Deloitte's next-generation IAM platform, including identity lifecycle, authentication, authorization, and privileged access capabilities, while ensuring alignment with global enterprise direction and U.S. MF business requirements.
- Define and implement IAM architecture and standards, in alignment with global enterprise strategy and with influence on that strategy to reflect U.S. MF business requirements, including:
- Identity data architecture (authoritative sources, identity lifecycle, identity correlation)
- Authentication platforms (SSO, MFA, passwordless)
- Authorization strategy (policy-based access, fine-grained access control)
- Privileged and workload identity (ephemeral access, secrets management)
- Establish and lead IAM as a product-based operating model, organizing teams around platform capabilities (e.g., Identity Platform, Governance, Privileged Access, Authorization).
- Oversee a team responsible for the design, integration, deployment, and operation of IAM services, ensuring scalability, reliability, adoption, and alignment with enterprise and business priorities.
- Serve as a trusted advisor to stakeholders to design and deliver IAM solutions and strategies that balance security, usability, and business enablement, while ensuring U.S. MF requirements are effectively represented in broader enterprise decisions.
- Drive the transition from traditional role-based access control (RBAC) to policy-based and attribute-driven access models (ABAC / contextual authorization).
- Lead the implementation of modern identity capabilities, including:
- Machine and workload identity (APIs, services, pipelines)
- Secrets management and credential lifecycle automation
- Just-in-time (JIT) and ephemeral privileged access
- Identity services exposed via APIs for developer consumption
- Communicate IAM architecture, strategy, and implementation approaches at both technical and business levels, including across global and U.S. MF stakeholders, to drive alignment, understanding, and adoption.
- Lead senior team members in the design, development, testing, and implementation of IAM solutions, controls, and governance frameworks.
- Perform technology research, hands-on evaluation, and provide architectural recommendations aligned to enterprise strategy, global standards, and U.S. MF business use cases.
- Evaluate and guide build vs. buy decisions for emerging IAM capabilities such as authorization platforms and workload identity frameworks, considering enterprise strategy, global alignment, and business needs.
- As part of the largest component within a global enterprise, influence IAM strategies, standards, and platform direction to ensure global alignment with U.S. MF business requirements.
Decision Making / Judgment Required
- Define and execute IAM strategy, architecture, and operating model with a high degree of autonomy.
- Make enterprise-level decisions regarding identity platforms, authorization models, and governance frameworks, that must complement business strategy and integrate within the global enterprise.
- Balance strategic transformation goals with operational stability.
- Lead complex IAM initiatives, including cross-functional alignment and stakeholder consensus building.
- Navigate ambiguity and evolving requirements, particularly in emerging areas such as AI/agentic identity and machine identity.
- Continuously improve IAM posture from both technical and business perspectives.
- Identity Governance and Administration (IGA)
- Privileged Access Management (PAM)
- Authentication (SSO, MFA, federation, passwordless)
- Identity lifecycle management and provisioning
- Enterprise directory architecture and design
- Policy-based authorization (PBAC/ABAC, contextual access, policy engines)
- Machine/workload identity and secrets management
- API and developer identity
- Zero Trust architecture principles
- Multi-cloud identity (Azure, AWS, GCP)
- Experience designing enterprise-scale IAM architectures
- With greater than >200,00 identities
- Globally dispersed primarily remote workforce supporting international clients
- API-driven and platform-based service design
- Integration with modern application architectures (microservices, APIs)
- Familiarity with global identity standards (OIDC, OAuth, SAML, SCIM, LDAP)
- Java, JavaScript, or similar languages
- PowerShell, Bash, or scripting tools
- Database technologies (MSSQL, MySQL, Oracle)
- Windows and Linux administration
- Directory services (Active Directory, LDAP-based systems)
- IAM operates as a scalable identity platform
- Access is policy-driven, contextual, Just-in-Time and low-friction
- Human and machine identities are governed consistently
- Privileged access is ephemeral and risk-based
- Developers consume identity services via APIs and platform capabilities
- Deloitte's IAM environment reflects leading practices delivered to clients
- Cyber Security
- Technology Support
- Technology & Infrastructure
- Applications
- Relationship Management
- Strategy & Communications
- Project Management
- Financials
- Risk & Compliance
- Identity & Access Management
- Data Protection
- Cyber Design
- Incident Response
- Security Architecture
- Business Partnership
- Bachelor's degree or equivalent in Computer Science, Computer Engineering, Business Administration
- Minimum 10 years of experience in IAM or enterprise identity architecture
- Minimum 5 years of experience in IAM architecture and integration across enterprise systems
- Minimum 5 years of experience in deployment and operationalization of IAM or security technologies
- Experience leading large-scale IAM transformations in complex environments
- Experience with IAM platforms such as SailPoint, CyberArk, Azure AD (or equivalent)
- Experience working with consulting partners and vendor ecosystems
- Minimum 2 years of people and/or process management experience
- Ability to travel 0-10%, on average, based on the work you do and the clients and industries/sectors you serve
- Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.
- Advanced Cyber, Computer Science or Engineering degree preferred
- Certifications such as Certified Information Systems Security Professional (CISSP), Systems Security Certified Practitioner (SSCP), or Cybersecurity Analyst (CySA+), with CyberArk Sentry or Guardian (preferred)
EA_ExpHire
RITM10327765
Recommended Jobs
Regional Flatbed CDL-A Truck Driver (Southeast)
Job Description Job Description Join a top-paying fleet hauling flatbed freight across the US. Enjoy steady miles, consistent pay, and weekly home time Average Weekly Pay: $1,500 Home Time…
Dietary Assistant in Kitchen (Full Time)
Dietary Assistant in Kitchen (Full Time) JOB SUMMARY: Performs various tasks related to cleaning and sanitation. Washes pots/pans/utensils/dishes according to established procedures to maintain compl…
Accounting Director
Job Description Job Description Filter of Hope is a global Great Commission ministry with a mission to share the gospel of Jesus Christ and provide clean drinking water to families in desperate n…
Product Design Engineer
Job Description Job Description We’re looking for a hands-on Product Design Engineer who thrives on turning ideas into real, production-ready products. In this role, you’ll take ownership of stru…
Nurse Practitioner
Job Description Job Description Primary Care NP needed to work independently and along side Family Medicine MD in an established clinic setting. Clinic hours are M-F 8-5. Some shared call with th…
Relief Veterinarian
VCA Animal Medical Center of Northeast Alabama is seeking an experienced Associate Veterinarian to join our practice in Anniston. We have a formal mentorship program, so new graduates are encoura…
Senior FS Tax Manager - Bermuda
Senior FS Tax Manager - Bermuda We are looking for a Senior Tax Manager experienced in Investment Management Partnership Tax, for a Big 4 Firm based in Bermuda. The ideal candidate will have wo…
Psychiatrist - Four Day Week!
Stable and caring group of 11 health centers seeks a Psychiatrist in Montgomery Alabama! Four day week available! Contact: Raymond Stiles 843-574-8233 [email protected] About th…
Bingo Floor Runner
Job Description Job Description Looking for someone to work 2-3 days a week selling bingo cards to customers 3-4 hour shifts. Paid weekly. Cash tips daily. Must be 19 years old.
Local Truck Driver (CDL- A) Shuttle Parts - Cullman, AL area
Job Description Job Description TOPRE AMERICA is seeking Local Truck Drivers (CDL - A) Day Cab Shuttle driver for our Cullman, AL facility. We Offer: Very Competitive Hourly Pay …