Job Title: CyberArk Architect Location: London - 2 days per week Salary/Rate: Up to £600 per day inside IR35 Start Date: 20/04/2026 Job Type: Contract - 6 months Company Introduction We have an exciting opportunity now available with one of our sector-leading consultancy clients! They are currently looking for a skilled CyberArk Architect to join their team for a six-month contract. Working on an Identity & Access Management (IAM) as part of an IT Controls Remediation programme delivering Privileged Access Management (PAM) with CyberArk and Identity Governance & Administration (IGA) with Saviynt. Further Integration with Workday (HR) as the authoritative source of identity and ServiceNow for access request workflows and operational processes. The CyberArk PAM Architect will define and deliver the end-to-end architecture for a major Privileged Access Management implementation. This includes design of the CyberArk CorePAS platform, onboarding strategy for privileged accounts, vaulting, session control, credential rotation, JIT access, and integration with enterprise systems including AD, Entra ID, ServiceNow, and infrastructure/security tooling. The role will be responsible for ensuring strong security foundations, scalable platform design, privileged account discovery, and embedding operational processes aligned to enterprise security controls. Job Responsibilities/Objectives Own the overall CyberArk architectural blueprint, covering: Vault environment, PSM (Privileged Session Manager), CPM (Credential Provider Manager), Conjur or Alero (if applicable), EPM (Endpoint Privilege Management), JIT access and least privilege models Produce architectural artefacts: HLD, LLD, data flow diagrams, platform topology. Define privileged account onboarding strategy and classification model. Develop vaulting and credential rotation standards. Create session monitoring and audit strategies. Architect PAM operational model (day-to-day vault admin, break-glass, emergency access). Integrate CyberArk with:AD/Entra ID for authentication and group-based access, Windows/Linux/UNIX Servers, Databases, network devices, cloud platforms, ServiceNow for privileged access request workflows, SIEM/SOAR for alerting and monitoring Define API integrations for application credential management. Ensure PAM design aligns to:Zero Trust, NIST 800-53/800-63, CIS Controls, Internal SOX/ISO27001 requirements Implement controls for least privilege, JIT elevation, and removal of standing privileges. Act as the technical authority for PAM engineering teams. Validate configurations, policies, platform hardening, and onboarding plans. Define reusable design patterns for application onboarding. Required Skills/Experience The ideal candidate will have the following: IAM/PAM roles with strong experience as a CyberArk Architect. Hands-on experience designing and implementing: CyberArk Vault, PSM/PSMP, CPM and PVWA Strong understanding of privileged account classification, credential rotation, session monitoring, and JIT models. Experience onboarding:Windows/Linux Servers, Databases, Network devices, Cloud services (AWS/Azure) Experience integrating CyberArk with ServiceNow, SIEM, SSO, and enterprise directories. Desirable Skills/Experience Although not essential, the following skills are desired by the client: CyberArk CDE/CPE/CIM certifications (highly desirable). Experience in highly regulated environments (Banking/Insurance/Energy). Knowledge of DevOps secrets management and modern cloud PAM patterns. If you are interested in this opportunity, please apply now with your updated CV in Microsoft Word/PDF format. Disclaimer Notwithstanding any guidelines given to level of experience sought, we will consider candidates from outside this range if they can demonstrate the necessary competencies. Square One is acting as both an employment agency and an employment business, and is an equal opportunities recruitment business. Square One embraces diversity and will treat everyone equally. Please see our website for our full diversity statement.
18/03/2026
Contractor
Job Title: CyberArk Architect Location: London - 2 days per week Salary/Rate: Up to £600 per day inside IR35 Start Date: 20/04/2026 Job Type: Contract - 6 months Company Introduction We have an exciting opportunity now available with one of our sector-leading consultancy clients! They are currently looking for a skilled CyberArk Architect to join their team for a six-month contract. Working on an Identity & Access Management (IAM) as part of an IT Controls Remediation programme delivering Privileged Access Management (PAM) with CyberArk and Identity Governance & Administration (IGA) with Saviynt. Further Integration with Workday (HR) as the authoritative source of identity and ServiceNow for access request workflows and operational processes. The CyberArk PAM Architect will define and deliver the end-to-end architecture for a major Privileged Access Management implementation. This includes design of the CyberArk CorePAS platform, onboarding strategy for privileged accounts, vaulting, session control, credential rotation, JIT access, and integration with enterprise systems including AD, Entra ID, ServiceNow, and infrastructure/security tooling. The role will be responsible for ensuring strong security foundations, scalable platform design, privileged account discovery, and embedding operational processes aligned to enterprise security controls. Job Responsibilities/Objectives Own the overall CyberArk architectural blueprint, covering: Vault environment, PSM (Privileged Session Manager), CPM (Credential Provider Manager), Conjur or Alero (if applicable), EPM (Endpoint Privilege Management), JIT access and least privilege models Produce architectural artefacts: HLD, LLD, data flow diagrams, platform topology. Define privileged account onboarding strategy and classification model. Develop vaulting and credential rotation standards. Create session monitoring and audit strategies. Architect PAM operational model (day-to-day vault admin, break-glass, emergency access). Integrate CyberArk with:AD/Entra ID for authentication and group-based access, Windows/Linux/UNIX Servers, Databases, network devices, cloud platforms, ServiceNow for privileged access request workflows, SIEM/SOAR for alerting and monitoring Define API integrations for application credential management. Ensure PAM design aligns to:Zero Trust, NIST 800-53/800-63, CIS Controls, Internal SOX/ISO27001 requirements Implement controls for least privilege, JIT elevation, and removal of standing privileges. Act as the technical authority for PAM engineering teams. Validate configurations, policies, platform hardening, and onboarding plans. Define reusable design patterns for application onboarding. Required Skills/Experience The ideal candidate will have the following: IAM/PAM roles with strong experience as a CyberArk Architect. Hands-on experience designing and implementing: CyberArk Vault, PSM/PSMP, CPM and PVWA Strong understanding of privileged account classification, credential rotation, session monitoring, and JIT models. Experience onboarding:Windows/Linux Servers, Databases, Network devices, Cloud services (AWS/Azure) Experience integrating CyberArk with ServiceNow, SIEM, SSO, and enterprise directories. Desirable Skills/Experience Although not essential, the following skills are desired by the client: CyberArk CDE/CPE/CIM certifications (highly desirable). Experience in highly regulated environments (Banking/Insurance/Energy). Knowledge of DevOps secrets management and modern cloud PAM patterns. If you are interested in this opportunity, please apply now with your updated CV in Microsoft Word/PDF format. Disclaimer Notwithstanding any guidelines given to level of experience sought, we will consider candidates from outside this range if they can demonstrate the necessary competencies. Square One is acting as both an employment agency and an employment business, and is an equal opportunities recruitment business. Square One embraces diversity and will treat everyone equally. Please see our website for our full diversity statement.
PAM Architect - CyberArk The PAM architect will have strong CyberArk experience to define and deliver the end-to-end architecture for a major Privileged Access Management implementation. This includes design of the CyberArk CorePAS platform, onboarding strategy for privileged accounts, vaulting, session control, credential rotation, JIT access, and integration with enterprise systems including AD, Entra ID, ServiceNow, and infrastructure/security tooling. Experience and skills required: - PAM - Saviynt - CyberArk Vault - Integration architecture The role is inside IR35 and for 3 months initially. The work is based on a hybrid working model with two days in the office in Central London each week. To be considered for the position please send your latest CV over. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. A multiple award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over consecutive years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
18/03/2026
Contractor
PAM Architect - CyberArk The PAM architect will have strong CyberArk experience to define and deliver the end-to-end architecture for a major Privileged Access Management implementation. This includes design of the CyberArk CorePAS platform, onboarding strategy for privileged accounts, vaulting, session control, credential rotation, JIT access, and integration with enterprise systems including AD, Entra ID, ServiceNow, and infrastructure/security tooling. Experience and skills required: - PAM - Saviynt - CyberArk Vault - Integration architecture The role is inside IR35 and for 3 months initially. The work is based on a hybrid working model with two days in the office in Central London each week. To be considered for the position please send your latest CV over. LA International is an award-winning partner of choice for many of the world's most influential companies and government organisations. Holding Enhanced Government Security Accreditation, we are recognised as the European market leader in the delivery of Security Cleared talent to organisations that demand the very highest levels of security, compliance and assurance. A multiple award-winning organisation, having secured the prestigious Queens Award for Enterprise: International Trade over consecutive years. We are committed to fostering an inclusive, equitable and accessible workplace where everyone feels valued and supported. We welcome applications from all individuals, regardless of background or identity, and we encourage candidates who may not meet every listed requirement to still apply. If you require any adjustments or support during the recruitment process, please let us know and we will work with you to ensure a fair and accessible experience. Please Note: If a high volume of applications is received, only candidates shortlisted will be contacted.
We are looking for an experienced CyberArk PAM Architect to support a major enterprise security transformation programme within a global financial markets infrastructure organisation . This organisation operates critical platforms used by banks, trading firms and financial institutions worldwide. As part of a large-scale identity and security modernisation initiative, they are implementing CyberArk SaaS/Privilege Cloud as the core Privileged Access Management (PAM) platform across a complex hybrid and multi-cloud estate. This role requires someone who can design enterprise-scale PAM architecture , define integration patterns, and support governance within a highly regulated environment. Key Responsibilities Define the end-to-end CyberArk PAM target architecture using CyberArk SaaS. Design privileged access models including Just-in-Time (JIT) access and session management . Architect integrations with enterprise systems including Entra ID, ServiceNow, SailPoint IdentityNow, Splunk and DataDog . Develop privileged access models across AWS and Azure environments . Produce architecture artefacts including HLD, LLD, SDD and solution design documentation . Define identity federation, MFA and authentication architecture . Design automation and onboarding frameworks including CI/CD integration. Define session recording, data retention and encryption models . Support security governance, architecture review and audit processes . Contribute to the implementation roadmap for the PAM transformation programme . Technology Environment CyberArk Privilege Cloud/CyberArk SaaS Microsoft Entra ID (Azure AD) ServiceNow SailPoint IdentityNow AWS & Azure Splunk/DataDog Enterprise IAM & PAM tooling Required Experience Strong experience working as a CyberArk Architect/PAM Architect . Deep knowledge of CyberArk Privilege Cloud or CyberArk SaaS architecture . Experience designing enterprise PAM solutions in large organisations . Experience integrating CyberArk with IAM platforms and enterprise systems . Strong knowledge of privileged access models, credential vaulting and session management . Experience working in regulated enterprise environments such as banking, financial services, insurance or large global organisations . Desirable Experience delivering large-scale PAM transformation programmes . Experience with automation frameworks and CI/CD onboarding for PAM . Knowledge of security governance frameworks and audit requirements . This is an opportunity to work on a high-profile enterprise security programme delivering a next-generation PAM capability within a complex global environment Whilst advertised as remote working, there will be some requirement to attend site in London. It maybe required to attend a weekly meeting in London but even this maybe up for negotiation. This is an Inside IR35 role. The indicative rate is advertised as £720 p/day but if you have the requisite skills and experience and are able to justify a higher day rate, still apply.
17/03/2026
Contractor
We are looking for an experienced CyberArk PAM Architect to support a major enterprise security transformation programme within a global financial markets infrastructure organisation . This organisation operates critical platforms used by banks, trading firms and financial institutions worldwide. As part of a large-scale identity and security modernisation initiative, they are implementing CyberArk SaaS/Privilege Cloud as the core Privileged Access Management (PAM) platform across a complex hybrid and multi-cloud estate. This role requires someone who can design enterprise-scale PAM architecture , define integration patterns, and support governance within a highly regulated environment. Key Responsibilities Define the end-to-end CyberArk PAM target architecture using CyberArk SaaS. Design privileged access models including Just-in-Time (JIT) access and session management . Architect integrations with enterprise systems including Entra ID, ServiceNow, SailPoint IdentityNow, Splunk and DataDog . Develop privileged access models across AWS and Azure environments . Produce architecture artefacts including HLD, LLD, SDD and solution design documentation . Define identity federation, MFA and authentication architecture . Design automation and onboarding frameworks including CI/CD integration. Define session recording, data retention and encryption models . Support security governance, architecture review and audit processes . Contribute to the implementation roadmap for the PAM transformation programme . Technology Environment CyberArk Privilege Cloud/CyberArk SaaS Microsoft Entra ID (Azure AD) ServiceNow SailPoint IdentityNow AWS & Azure Splunk/DataDog Enterprise IAM & PAM tooling Required Experience Strong experience working as a CyberArk Architect/PAM Architect . Deep knowledge of CyberArk Privilege Cloud or CyberArk SaaS architecture . Experience designing enterprise PAM solutions in large organisations . Experience integrating CyberArk with IAM platforms and enterprise systems . Strong knowledge of privileged access models, credential vaulting and session management . Experience working in regulated enterprise environments such as banking, financial services, insurance or large global organisations . Desirable Experience delivering large-scale PAM transformation programmes . Experience with automation frameworks and CI/CD onboarding for PAM . Knowledge of security governance frameworks and audit requirements . This is an opportunity to work on a high-profile enterprise security programme delivering a next-generation PAM capability within a complex global environment Whilst advertised as remote working, there will be some requirement to attend site in London. It maybe required to attend a weekly meeting in London but even this maybe up for negotiation. This is an Inside IR35 role. The indicative rate is advertised as £720 p/day but if you have the requisite skills and experience and are able to justify a higher day rate, still apply.
CyberArk Architect (PAM) London 2 days a week in the office 100K A leading insurance firm is seeking a CyberArk Architect to drive their PAM strategy. Far from a maintenance role, you will design and govern the frameworks protecting critical financial infrastructure. Bridging the gap between high-level architecture and hands-on deployment, you will ensure every privileged credential is secured and rotated. You'll lead the rollout of enterprise-wide PAM frameworks, establishing a "gold standard" for identity governance in a high-stakes environment. Acting as a technical liaison, you will harmonise security protocols with business efficiency while maintaining rigorous oversight through deep-dive audits and advanced control deployments. Essential Skills 13+ years of experience in cybersecurity architecture with a heavy focus on Privileged Access Management (PAM). Deep, hands-on expertise with CyberArk and other enterprise-level access security tools. Strong technical background in building and launching large-scale security frameworks from scratch. Expert knowledge of the security standards and compliance rules specific to the insurance or finance industry. London Based 2 days in the office per week 100K + plus fantastic benefits If you come from a strong cyberArk background and have a strong understanding in delivering PAM solutions at an architect level then this is the perfect opportunity for you. If the above seems of interest to you then please apply directly to the AD or send your CV to (url removed) Randstad Technologies Ltd is a leading specialist recruitment business for the IT & Engineering industries. Please note that due to a high level of applications, we can only respond to applicants whose skills & qualifications are suitable for this position. No terminology in this advert is intended to discriminate against any of the protected characteristics that fall under the Equality Act 2010. For the purposes of the Conduct Regulations 2003, when advertising permanent vacancies we are acting as an Employment Agency, and when advertising temporary/contract vacancies we are acting as an Employment Business.
12/03/2026
Full time
CyberArk Architect (PAM) London 2 days a week in the office 100K A leading insurance firm is seeking a CyberArk Architect to drive their PAM strategy. Far from a maintenance role, you will design and govern the frameworks protecting critical financial infrastructure. Bridging the gap between high-level architecture and hands-on deployment, you will ensure every privileged credential is secured and rotated. You'll lead the rollout of enterprise-wide PAM frameworks, establishing a "gold standard" for identity governance in a high-stakes environment. Acting as a technical liaison, you will harmonise security protocols with business efficiency while maintaining rigorous oversight through deep-dive audits and advanced control deployments. Essential Skills 13+ years of experience in cybersecurity architecture with a heavy focus on Privileged Access Management (PAM). Deep, hands-on expertise with CyberArk and other enterprise-level access security tools. Strong technical background in building and launching large-scale security frameworks from scratch. Expert knowledge of the security standards and compliance rules specific to the insurance or finance industry. London Based 2 days in the office per week 100K + plus fantastic benefits If you come from a strong cyberArk background and have a strong understanding in delivering PAM solutions at an architect level then this is the perfect opportunity for you. If the above seems of interest to you then please apply directly to the AD or send your CV to (url removed) Randstad Technologies Ltd is a leading specialist recruitment business for the IT & Engineering industries. Please note that due to a high level of applications, we can only respond to applicants whose skills & qualifications are suitable for this position. No terminology in this advert is intended to discriminate against any of the protected characteristics that fall under the Equality Act 2010. For the purposes of the Conduct Regulations 2003, when advertising permanent vacancies we are acting as an Employment Agency, and when advertising temporary/contract vacancies we are acting as an Employment Business.
LA International Computer Consultants Ltd
Sheffield, Yorkshire
A Security Solution Architect is required for an initial 2 month contract which is likely to extend. This is a hybrid role with 3 days per week on site in Sheffield and is inside ir35 so will require working via an FCSA accredited umbrella company. Role Description: Our client is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the organisation. One of the pillars of that programme is Privileged Access Management (PAM). They are working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Key skills and experience: Cybersecurity Expertise: *Experience as a Solution Architect with knowledge of identity & access management, and especially PAM. *Strong experience documenting High-Level and Low-Level designs. *Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level. *Experience working in large-scale IT transformation programmes. *Experience working with PAM solutions such as CyberArk, Centrify, Delinea/Thycotic and OneIdentity. Qualifications & Certifications: *CISSP/CISM certification or other broad cybersecurity industry-recognised certificate. Platform & Technology: *BizzDesign, Archi, or generic UML visualisation experience for high-level designs. *Working proficiency in Jira for project & tasks management. *Working proficiency in Confluence for documentation. LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds. Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.
01/10/2025
Contractor
A Security Solution Architect is required for an initial 2 month contract which is likely to extend. This is a hybrid role with 3 days per week on site in Sheffield and is inside ir35 so will require working via an FCSA accredited umbrella company. Role Description: Our client is working on a strategic Identity and Access Management programme and is re-shaping the way Authentication, Federation, Privileged Access Management, Access Governance, Secrets Management and API Security is done across the organisation. One of the pillars of that programme is Privileged Access Management (PAM). They are working on uplifting controls and capabilities in privileged access for the Group and introducing the strategic password vaulting solution that will enable to meet strategic requirements. We are seeking an experienced Security Solution Architect that can complement an existing team of Solution Architects to progress with designs of different components of the PAM solution and other supporting systems it will need to integrate with as part of the end-to-end journey. Key skills and experience: Cybersecurity Expertise: *Experience as a Solution Architect with knowledge of identity & access management, and especially PAM. *Strong experience documenting High-Level and Low-Level designs. *Broad background across information technology with the ability to communicate clearly with non-security technical SMEs at a comfortable level. *Experience working in large-scale IT transformation programmes. *Experience working with PAM solutions such as CyberArk, Centrify, Delinea/Thycotic and OneIdentity. Qualifications & Certifications: *CISSP/CISM certification or other broad cybersecurity industry-recognised certificate. Platform & Technology: *BizzDesign, Archi, or generic UML visualisation experience for high-level designs. *Working proficiency in Jira for project & tasks management. *Working proficiency in Confluence for documentation. LA International is a HMG approved ICT Recruitment and Project Solutions Consultancy, operating globally from the largest single site in the UK as an IT Consultancy or as an Employment Business & Agency depending upon the precise nature of the work, for security cleared jobs or non-clearance vacancies, LA International welcome applications from all sections of the community and from people with diverse experience and backgrounds. Award Winning LA International, winner of the Recruiter Awards for Excellence, Best IT Recruitment Company, Best Public Sector Recruitment Company and overall Gold Award winner, has now secured the most prestigious business award that any business can receive, The Queens Award for Enterprise: International Trade, for the second consecutive period.
Job Title: Enterprise Identity Architect - IAM Architect Contract Length: 6 months (possibility for extension) Location: London (2 to 3 days a week on-site) Rate: Highly competitive rate available for suitable candidates Working Pattern: Full Time Overview Are you ready to take on a pivotal role in shaping the future of Identity and Access Management (IAM)? Our client is seeking a dynamic Enterprise Identity Architect to design, implement, and maintain a robust IAM strategy across a hybrid IT environment. You'll play a crucial role in ensuring secure, scalable, and compliant identity solutions that facilitate business agility and drive digital transformation. If you have a passion for identity architecture and a knack for innovation, this is the opportunity for you! Knowledge, Skills, Experience & Qualification To succeed in this role, you should have: Experience in Enterprise IAM - Configuration and Identity design solution is essential Deep knowledge of identity protocols (SAML, OAuth, OpenID Connect, LDAP, Kerberos) Experience with cloud IAM solutions (Entra-ID, Google Cloud Identity) Hands-on experience with IAM platforms such as Okta, ForgeRock, SailPoint, and CyberArk Strong understanding of Zero Trust principles and identity-centric security models Familiarity with DevSecOps practises and CI/CD integration for IAM Excellent stakeholder management skills, with the ability to collaborate with diverse teams across regions Certifications: Certified Identity and Access Manager (CIAM) and Certified Information Systems Security Professional (CISSP) is plus Key Job Functions As an Enterprise Identity Architect, you will: Develop and maintain the enterprise IAM architecture roadmap aligned with business and security objectives. Design cutting-edge identity federation, single sign-on (SSO), multi-factor authentication (MFA), and privileged access management (PAM) solutions. Lead the integration of IAM across hybrid environments, including on-premises Active Directory and cloud-native identity providers. Define standards for identity life cycle management, role-based access control (RBAC), and attribute-based access control (ABAC). Why Join Us? Be part of an innovative team that values creativity and collaboration. Work in a dynamic environment where your contributions will make a real impact. Enjoy a competitive rate and the possibility of extending your contract. Experience a flexible working pattern that promotes work-life balance. If you are a seasoned IAM professional looking to make a difference, we want to hear from you! Embrace this exciting opportunity to lead identity architecture initiatives and contribute to our client's mission. Apply Now! Join us in redefining the landscape of Identity and Access Management. Don't miss out on this chance to elevate your career with our client! Note: Only candidates with the required qualifications and experience will be contacted for further discussions. Pontoon is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an inclusive environment that helps them thrive. If you require reasonable adjustments at any stage, please let us know and we will be happy to support you.
28/08/2025
Contractor
Job Title: Enterprise Identity Architect - IAM Architect Contract Length: 6 months (possibility for extension) Location: London (2 to 3 days a week on-site) Rate: Highly competitive rate available for suitable candidates Working Pattern: Full Time Overview Are you ready to take on a pivotal role in shaping the future of Identity and Access Management (IAM)? Our client is seeking a dynamic Enterprise Identity Architect to design, implement, and maintain a robust IAM strategy across a hybrid IT environment. You'll play a crucial role in ensuring secure, scalable, and compliant identity solutions that facilitate business agility and drive digital transformation. If you have a passion for identity architecture and a knack for innovation, this is the opportunity for you! Knowledge, Skills, Experience & Qualification To succeed in this role, you should have: Experience in Enterprise IAM - Configuration and Identity design solution is essential Deep knowledge of identity protocols (SAML, OAuth, OpenID Connect, LDAP, Kerberos) Experience with cloud IAM solutions (Entra-ID, Google Cloud Identity) Hands-on experience with IAM platforms such as Okta, ForgeRock, SailPoint, and CyberArk Strong understanding of Zero Trust principles and identity-centric security models Familiarity with DevSecOps practises and CI/CD integration for IAM Excellent stakeholder management skills, with the ability to collaborate with diverse teams across regions Certifications: Certified Identity and Access Manager (CIAM) and Certified Information Systems Security Professional (CISSP) is plus Key Job Functions As an Enterprise Identity Architect, you will: Develop and maintain the enterprise IAM architecture roadmap aligned with business and security objectives. Design cutting-edge identity federation, single sign-on (SSO), multi-factor authentication (MFA), and privileged access management (PAM) solutions. Lead the integration of IAM across hybrid environments, including on-premises Active Directory and cloud-native identity providers. Define standards for identity life cycle management, role-based access control (RBAC), and attribute-based access control (ABAC). Why Join Us? Be part of an innovative team that values creativity and collaboration. Work in a dynamic environment where your contributions will make a real impact. Enjoy a competitive rate and the possibility of extending your contract. Experience a flexible working pattern that promotes work-life balance. If you are a seasoned IAM professional looking to make a difference, we want to hear from you! Embrace this exciting opportunity to lead identity architecture initiatives and contribute to our client's mission. Apply Now! Join us in redefining the landscape of Identity and Access Management. Don't miss out on this chance to elevate your career with our client! Note: Only candidates with the required qualifications and experience will be contacted for further discussions. Pontoon is an employment consultancy. We put expertise, energy, and enthusiasm into improving everyone's chance of being part of the workplace. We respect and appreciate people of all ethnicities, generations, religious beliefs, sexual orientations, gender identities, and more. We do this by showcasing their talents, skills, and unique experience in an inclusive environment that helps them thrive. If you require reasonable adjustments at any stage, please let us know and we will be happy to support you.