PL
IAM Architect
PeopleNTech LLC
πΊπΈ United States
On-site
Staff / Principal
1 month ago
- IAM
- AI
- Zero Trust
- CIS Controls
- Secrets Management
- AI/ML
- Devops
- SailPoint
- CyberArk
- Okta
- OAuth2
- OIDC
- SAML
- SCIM
- mTLS
- LangGraph
- AutoGen
- CrewAI
- Semantic Kernel
- MCP
- CISSP
- CISM
- TOGAF
1 month ago
Role :IAM Architect
Location : Remote
Rate: $85/hr
Duration : 3 months
Role Summary
We are seeking a highly experienced Principal Security Architect with deep expertise in Identity & Access Management (IAM), Privileged Access Management (PAM), Non-Human Identities (NHI), and Machine Identity Security. The individual will lead the assessment, design, and governance of AI Agent and NHI security architecture, defining enterprise-wide identity control frameworks to enable secure adoption of Agentic AI and autonomous systems.
Key Responsibilities
Architecture & Strategy
- Lead current-state assessment of AI Agents, Machine Identities, Service Accounts, APIs, Bots, and Non-Human Identities.
- Design target-state AI Agent and NHI reference architecture aligned with Zero Trust principles.
- Define security architecture patterns for AI agents, agent-to-agent interactions, and agent-to-system communications.
- Develop governance architecture covering identity lifecycle, privileged access, authorization, auditability, and runtime enforcement.
- Define and operationalize the Registry β Intent β Issuance β Execution β Monitoring control framework.
- Design lifecycle governance processes for registration, approval, certification, rotation, suspension, and retirement of NHI identities.
- Establish JIT/JEA credential management and privileged access controls for AI Agents.
- Map architecture to NIST SP 800-53, NIST AI RMF, Zero Trust, CIS Controls, and enterprise IAM standards.
- Define identity-centric security controls for:
- Authentication
- Authorization
- Secrets Management
- Workload Identities
- Agent Trust Relationships
- Runtime Access Enforcement
- Conduct gap assessments and recommend remediation roadmaps.
- Work closely with Security, IAM, Cloud, Platform Engineering, AI/ML, DevOps, Compliance, and Architecture teams.
- Lead executive workshops and architecture review sessions.
- Present findings, recommendations, and roadmaps to senior leadership.
Must-Have
- 10+ years of IAM/PAM architecture and security consulting experience.
- Strong expertise in:
- Machine Identities / Non-Human Identities (NHI)
- Service Accounts Governance
- Workload Identity Security
- Secrets Management
- Zero Trust Architecture
- Experience with SailPoint, Saviynt, CyberArk, BeyondTrust, Microsoft Entra ID, Okta, or equivalent platforms.
- Deep understanding of OAuth2, OIDC, SAML, SCIM, SPIFFE/SPIRE, mTLS, API Security, and Workload Identities.
- Experience designing enterprise IAM architectures.
- Experience securing AI Agents, Agentic Workflows, or Autonomous Systems.
- Familiarity with LangGraph, AutoGen, CrewAI, Semantic Kernel, MCP, or similar Agentic AI frameworks.
- CISSP, CISM, SABSA, TOGAF, or equivalent certifications.
IAM Architect Β· PeopleNTech LLC