Identity and Access Management (IAM) Architect

IDEXX
Virtual Massachusetts
Full-time

IT accelerates the success of IDEXX employees and customers by providing scalable and innovative solutions and leadership.

We are a global organization that supports all technology needed to deliver products and solutions to customers enabling them to focus on delivering high quality patient care.

We strive to provide exceptional customer service and experience in the most efficient means possible, requiring alignment and cross-functional communication.

The Identity and Access Management (IAM) Architect will be responsible for designing, implementing, and overseeing the organization's IAM strategy.

This role focuses on ensuring secure, efficient, and compliant access to various systems and applications. Leveraging Microsoft Active Directory (on-premises and Azure), the IAM Architect will develop and enforce policies related to Application Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC).

The architect will also ensure adherence to audit requirements and collaborate with cross-functional teams to align IAM initiatives with business objectives.

As the IAM Architect , you will play a critical role in shaping the security posture of our organization. This position offers the opportunity to work with cutting-edge technologies and to lead initiatives that have a significant impact on our business operations and security.

If you are passionate about IAM and looking for a challenging role where you can make a difference, we encourage you to apply.

In this role, you will be responsible for :

Direct leadership : leading 3 systems administrators and the day-to-day management of network access tasks. This newly formed role will have the opportunity to assess IDEXX’s existing domain structure and user policies and lead the effort to enhance, as well as design, and implement Role-Based Access Control (RBAC) policies with a focus on Zero Trust.

Strategic Planning and Design : Develop and implement an enterprise-wide IAM strategy that aligns with business goals and security requirements.

Design and architect IAM solutions, including SSO, MFA, and identity federation.

Policy Development and Enforcement : Create and enforce IAM policies, procedures, and standards, particularly focusing on RBAC frameworks.

Ensure compliance with regulatory requirements and internal security policies.

Technology Implementation : Lead the deployment and integration of IAM technologies, leveraging Microsoft Active Directory (on-premises and Azure).

Evaluate and select appropriate IAM tools and solutions to enhance security and user experience.

Collaboration and Leadership : Work closely with IT, security, and business teams to understand access requirements and implement appropriate controls.

Provide expert guidance and mentorship to IAM team members and other IT staff.

Automation and Optimization : Develop automation scripts and workflows (e.g., using PowerShell) to streamline provisioning and de-provisioning processes.

Optimize existing IAM processes for efficiency and effectiveness.

Incident Management and Support : Act as the highest escalation point for complex access issues not resolved by the IT Help Desk.

Oversee the resolution of IAM-related incidents and problems.

Audit and Compliance : Ensure that IAM practices meet audit requirements and assist in audit activities.Continuously monitor and improve IAM controls to mitigate risks.

What You Will Need to Succeed :

Technical Expertise : Extensive experience in IAM architecture and strategy development.Deep understanding of IAM principles and technologies, including MFA, OAuth, SSO, SAML, and OpenID Connect.

Proficient with Microsoft Active Directory (on-premises and Azure) and Azure AD Connect.

Scripting and Automation : Advancedproficiency in scripting tools, such as Microsoft PowerShell, for automation and management tasks.

Experience with automation tools and frameworks relevant to IAM.

Platform Knowledge : Desired experience with ServiceNow ITSM platform and its integration with IAM processes.

Soft Skills : Excellent leadership and communication skills, with the ability to articulate complex IAM concepts to non-technical stakeholders.

Strong analytical and problem-solving abilities.Proven track record of working collaboratively across departments.

Compliance and Security : Familiarity with compliance standards such as ISO 27001, NIST, GDPR, and SOX.Experience in conducting IAM audits and implementing controls to meet regulatory requirements.

Why IDEXX?

We’re proud of the work we do, because our work matters. An innovation leader in every industry we serve, we follow our Purpose and Guiding Principles to help pet owners worldwide keep their companion animals healthy and happy, to ensure safe drinking water for billions, and to help farmers protect livestock and poultry from diseases.

We have customers in over 175 countries and a global workforce of over 10,000 talented people.

So, what does that mean for you? We enrich the livelihoods of our employees with a positive and respectful work culture that embraces challenges and encourages learning and discovery.

At IDEXX, you will be supported by competitive compensation, incentives, and benefits while enjoying purposeful work that drives improvement.

Let’s pursue what matters together.

IDEXX values a diverse workforce and workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply.

IDEXX is an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state, or federal laws.

6 days ago
Related jobs
IDEXX
Wakefield, Massachusetts

Identity and Access Management (IAM) Architect. Leveraging Microsoft Active Directory (on-premises and Azure), the IAM Architect will develop and enforce policies related to Application Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Role-Based Access Control (RBAC). Design and architec...

Boston University
Boston, Massachusetts

As an IAM Analyst II, you will play a crucial role in the Identity and Access Management (IAM) Operations team by performing support activities for IAM technologies at Boston University. IAM ANALYST II, Information Services & Technology, Identity and Access Management. We aim to deliver exceptional ...

CVS Health
Work from home, MA, US
Remote

The Staff Security Engineer of IAM will be a product owner and lead engineer within Identity Access Management (IAM) space for CVS Health. Operating within DevOps and Agile frameworks as part of our Product Management Model, an ideal candidate will have strong soft skills and engineering skills. Thi...

Fox Rothschild
Boston, Massachusetts

As a member of the Information Services Department, the Identity & Access Management (IAM) Engineer will be responsible for managing Security Projects and Initiatives, implementing and maintaining Authentication and Authorization Frameworks, design and implementation of Lifecycle and Access Strategi...

MultiPlan
Bedford, Massachusetts
Remote

Lead the design and implementation of a robust and scalable IAM architecture, including identity lifecycle management, access governance, and privileged access management. Develop, maintain, and enforce IAM policies, standards, guidelines, and procedures to ensure consistent and secure access manage...

Thales
Boston, Massachusetts
Remote

Customer Identity & Access Management (CIAM) SaaS platform, Identity Management, Access Management, and Directory Services technologies. Thales Cloud Protection & Licensing (CPL) Professional Services team, you will operate independently with minimal supervision and deliver Customer Identity & Acces...

The Judge Group
Boston, Massachusetts

Refine, prioritize, and slate work, ensuring all approved work is surfaced and visualized on the team’s board, all approved work includes acceptance criteria and relevant business and technical requirements, and closed tickets have been reviewed to verify fulfillment of acceptance criteria. Preferen...

Econosoft, Inc
Wilmington, Massachusetts

SailPoint Identity Now experience—MUST, this has only been around for about 5-6 years so if someone claims to have that much experience, not real. Ability and experience communicated directly with Vendors/implementation partners. ...

Highmark Health
MA, Working at Home, Massachusetts

The Identity & Access Management Senior Security Engineer is responsible for acting as resource, leader, and peer coach with other engineers in the development, testing, implementation, and integration of Identity and Access Management systems and solutions. Identity Access Management Platforms: Sys...

Deloitte
Boston, Massachusetts

Design, develop, and implement IAM solutions, including identity provisioning, access control, authentication, and authorization mechanisms using on-prem and Cloud ForgeRock Identity Platform that align with clients' needs and industry best practices. As Identity and Access Management (IAM) solution...