Lead IAM Technical Architect
This is a remote role with occasional travel to Swindon
Candidates should have a high level of IGA experience, Please specify on your CV as much as possible all IGA experience in detail.
Role Summary
Lead IAM Technical Architect responsible for defining and delivering the enterprise identity architecture, establishing identity as the primary security control plane across services.
The role combines cross-programme IAM design authority with secure-by-design, risk-led decision making, providing leadership across multiple IAM project workstreams and stakeholder groups.
Key Responsibilities
- Define and govern the target-state IAM architecture, covering:
- Identity verification and assurance
- Identity governance & lifecycle (IGA / JML)
- Authentication and access management (AM)
- Privileged access (PAM)
- Customer and citizen identity (CIAM)
- Non-human / machine identity (NHI/MIM)
- Federation and identity trust models
- Lead end-to-end IAM solution design across programmes, ensuring alignment with enterprise architecture and the clients standards
- Provide design authority and architectural assurance, ensuring solutions are secure, scalable, and aligned to organisational strategy
- Embed secure-by-design principles, integrating identity into risk-based access control and Zero Trust models
- Define identity lifecycle and governance controls, including provisioning, access review, and deprovisioning
- Design integration and federation patterns, enabling secure identity exchange.
- Develop transition architectures and migration strategies from legacy identity services
- Deliver a phased IAM roadmap aligned to Discovery, Alpha, and enterprise rollout
- Engage senior stakeholders and provide technical leadership and advisory support across business and technology teams
Deliverables
- Enterprise IAM target architecture and design blueprint
- Current-state IAM assessment and risk analysis
- Identity governance and lifecycle (IGA) operating model
- Authentication and access management design (including MFA/passwordless)
- Privileged access management control model
- Identity integration and federation architecture
- Transition and migration architecture
- Phased delivery roadmap with defined outcomes and milestones
IAM Project Background
Strategic multi-year programme to establish identity as a core control plane aligned to Zero Trust principles
Transformation of IAM services into a policy-driven, standards-aligned, enterprise capability
Specific skills required for the role
Technical and Architecture Expertise
- Enterprise IAM architecture across IGA, AM, PAM, CIAM, federation, and NHI/MIM
- Strong experience in Zero Trust architecture and identity-driven access control
- Design of identity lifecycle governance models and audit controls
- Integration and migration architecture across legacy and modern platforms
- Experience with platforms such as:
- Entra ID
- AWS Cognito
- IGA and PAM tooling
Security and Risk Capability
- Strong understanding of modern authentication and assurance models
- Experience embedding risk-based access controls and policy-driven identity
- Ability to translate risk into pragmatic architectural controls
Delivery and Leadership
- Proven delivery of large-scale IAM transformations
- Stakeholder engagement across business, security, and technical domains
- Ability to lead multi-team and supplier delivery environments
- Experience delivering phased roadmaps with measurable outcomes
Must have deep understanding of architecture.
Services advertised by Gold Group are those of an Agency and/or an Employment Business.
We will contact you within the next 14 days if you are selected for interview. For a copy of our privacy policy please visit our website.