IAM Architect
Newco-GB-London-UK-Virtual-40, United Kingdom
Alight Solutions
Alight works with the best-known brands to create a benefits advantage -- an opportunity to optimize costs while delivering a world-class benefits experience.Our story
Strada is a technology-enabled, people powered company committed to delivering world-class payroll, human capital management, and financial management solutions to organizations globally.
With a team of more than 8,000 experts and over 30 years of expertise, Strada blends leading-edge technology with human ingenuity to help businesses across the globe design and deliver at scale. Supporting over 1,400 customers in 33 countries, Strada partners with customers at every stage of their journey, to help drive their vision forward.
It’s why we’re so driven to connect passion with purpose. Our team’s experience in human insights and cloud technology gives companies and employees around the world the ability to power confident decisions, for life.
With a comprehensive total rewards package, continuing education and training, and tremendous potential with a growing global organization, Strada is the perfect place to put your passion to work.
#LI-REMOTE
To learn more about us, visit stradaglobal.com
IAM Architect
Location: Remote
Reports to: Director, IAM
Strada Global is a leading provider of HR and payroll services, delivering secure and innovative workforce solutions worldwide. As we continue to scale, Identity & Access Management (IAM) is at the heart of our cybersecurity and business enablement strategy, ensuring seamless and secure access for employees, customers, and partners.
We are building a modern IAM framework that integrates across Entra ID, Entra B2C, SAP, and Workday, aligning with zero-trust principles, automation, and regulatory compliance.
Role Overview
The IAM Architect will lead the design, implementation, and optimization of enterprise identity and access solutions, ensuring seamless integration across cloud, SaaS, and on-prem systems. This role will focus on Entra ID (Azure AD), Entra B2C, SAP, and Workday integrations, balancing security, user experience, and operational efficiency.
This is a hands-on technical leadership role, working closely with security engineers, infrastructure teams, and business application owners to drive a modern IAM strategy at Strada.
Key Responsibilities
Identity & Access Architecture
- Design and implement a scalable IAM architecture utilizing Microsoft Entra ID, Entra B2C, and other identity platforms.
- Lead integration efforts across SAP, Workday, SaaS applications, and custom-built platforms.
- Define IAM governance models, including role-based access control (RBAC), attribute-based access control (ABAC), and just-in-time (JIT) access.
- Support the adoption of zero-trust identity principles, including MFA, conditional access, and passwordless authentication.
Identity Lifecycle & Automation
- Architect identity lifecycle management solutions, automating provisioning/deprovisioning across HR, IT, and security systems.
- Implement Identity Governance & Administration (IGA) best practices, ensuring least privilege access and role alignment.
- Develop custom integrations and automation scripts (PowerShell, Python, API-based solutions) to enhance IAM workflows.
- Collaborate with HR (Workday) and ERP (SAP) teams to synchronize identity management with workforce operations.
Security & Compliance
- Ensure regulatory compliance (GDPR, SOC 2, ISO 27001) by aligning IAM controls with security frameworks.
- Design and enforce privileged access management (PAM) solutions, securing admin accounts and critical systems.
- Support security audits and identity risk assessments, addressing access anomalies and reducing attack surfaces.
- Enhance identity threat detection and response capabilities in collaboration with SOC and SIEM teams.
Required Skills & Experience
- 6+ years of hands-on IAM experience, with at least 2 years in an architect or senior engineering role.
- Expertise in Entra ID (Azure AD), Entra B2C, and IAM-related Microsoft security tools.
- Experience integrating IAM with SAP, Workday, and other enterprise applications.
- Deep knowledge of SAML, OAuth, OpenID Connect, SCIM, and federation protocols.
- Hands-on experience with identity automation, PowerShell scripting, and API-based integrations.
- Strong understanding of zero-trust architecture, privileged access management (PAM), and adaptive authentication.
- Ability to collaborate with IT, HR, DevOps, and security teams to align identity solutions with business needs.
Preferred Qualifications
- Certifications such as Microsoft Certified: Identity and Access Administrator, CISSP, GIAC-GIAM, or Okta Certified Architect.
- Experience with Azure AD Conditional Access, Defender for Identity, and Entra Permissions Management.
- Knowledge of Identity Governance and Administration (IGA) platforms like SailPoint or Saviynt.
- Familiarity with DevOps and cloud security best practices in AWS/Azure environments.
Why Join Strada Global?
- Be a key leader in building a cutting-edge IAM framework for a global enterprise.
- Work on complex identity challenges spanning HR, payroll, cloud, and enterprise applications.
- Collaborate with top cybersecurity professionals and drive IAM innovation.
- Competitive compensation, flexible work arrangements, and career growth opportunities.
Benefits
We offer programs and plans for a healthy mind, body, wallet and life because it’s important our benefits care for the whole person. Options include a variety of health coverage options, wellbeing and support programs, retirement, vacation and sick leave, maternity, paternity & adoption leave, continuing education and training as well as a number of voluntary benefit options.
By applying for a position with Strada, you understand that, should you be made an offer, it will be contingent on your undergoing and successfully completing a background check consistent with Strada’s employment policies. Background checks may include some or all the following based on the nature of the position: SSN/SIN validation, education verification, employment verification, and criminal check, search against global sanctions and government watch lists, credit check, and/or drug test. You will be notified during the hiring process which checks are required by the position.
Our commitment to Diversity and Inclusion
Strada is committed to diversity, equity, and inclusion. We celebrate differences and believe in fostering an environment where everyone feels valued, respected, and supported. We know that diverse teams are stronger, more innovative, and more successful.
At Strada, we welcome and embrace all individuals, regardless of their background, and are dedicated to creating a culture that enables every employee to thrive. Join us in building a brighter, more inclusive future.
Diversity Policy Statement
Strada is an Equal Employment Opportunity employer and does not discriminate against anyone based on sex, race, color, religion, creed, national origin, ancestry, age, physical or mental disability, medical condition, pregnancy, marital or domestic partner status, citizenship, military or veteran status, sexual orientation, gender, gender identity or expression, genetic information, or any other legally protected characteristics or conduct covered by federal, state or local law. In addition, we take affirmative action to employ and advance in the employment of qualified minorities, women, disabled persons, disabled veterans and other covered veterans.
Strada provides reasonable accommodations to the known limitations of otherwise qualified employees and applicants for employment with disabilities and sincerely held religious beliefs, practices and observances, unless doing so would result in undue hardship. Applicants for employment may request a reasonable accommodation/modification by contacting his/her recruiter.
Authorization to work in the Employing Country
Applicants for employment in the country in which they are applying (Employing Country) must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the Employing Country and with Strada.
Note, this job description does not restrict management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Strada business units.
We offer you a competitive total rewards package, continuing education & training, and tremendous potential with a growing worldwide organization.
DISCLAIMER:
Nothing in this job description restricts management's right to assign or reassign duties and responsibilities of this job to other entities; including but not limited to subsidiaries, partners, or purchasers of Alight business units.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: APIs Audits Automation AWS Azure CISSP Cloud Compliance DevOps ERP GDPR GIAC Governance IAM ISO 27001 Okta OpenID PowerShell Python Risk assessment SaaS SailPoint SAML SAP Scripting SIEM SOC SOC 2 Strategy Threat detection
Perks/benefits: Competitive pay Equity / stock options Flex hours Flex vacation Health care Medical leave Parental leave
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.