Maintains First Horizon's Security Architecture Pattern Inventory (across identity, data ... IAM for associates (Entra ID, Active Directory) and clients (Transmit Security, ForgeRock/Ping, or ...
Maintains First Horizon's Security Architecture Pattern Inventory (across identity, data ... IAM for associates (Entra ID, Active Directory) and clients (Transmit Security, ForgeRock/Ping, or ...
I have an opportunity for "Cloud /API Architect" _ ( 100% REMOTE)" and I am looking for a candidate ... ForgeRock, Ping Identity or Okta • Understanding of Auth Token consumption such as OAUTH, SAML ...
I have an opportunity for "Cloud /API Architect" _ ( 100% REMOTE)" and I am looking for a candidate ... ForgeRock, Ping Identity or Okta • Understanding of Auth Token consumption such as OAUTH, SAML ...
SSO / Federation Engineer-North Quincy , MA or East Princeton, NJ (Onsite)-Long term Contract
Princeton, NJ · On-site
Design target state SSO and federation architecture with Entra ID as entry point. * Implement federation between Entra ID, ForgeRock, RSA, and ADFS. * Onboard applications using SAML, OIDC, OAuth, WS ...
Quick apply
SSO / Federation Engineer-North Quincy , MA or East Princeton, NJ (Onsite)-Long term Contract
Princeton, NJ · On-site
Design target state SSO and federation architecture with Entra ID as entry point. * Implement federation between Entra ID, ForgeRock, RSA, and ADFS. * Onboard applications using SAML, OIDC, OAuth, WS ...
ICAM Architect
Springfield, VA · On-site
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · On-site
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · On-site
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · On-site
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
As a Software Architect Consultant (CIAM) , you will sit at the intersection of engineering ... Experience with identity platforms such as Okta/Auth0, Ping/ForgeRock, Microsoft Entra ID, Keycloak ...
As a Software Architect Consultant (CIAM) , you will sit at the intersection of engineering ... Experience with identity platforms such as Okta/Auth0, Ping/ForgeRock, Microsoft Entra ID, Keycloak ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
The ideal candidate will have strong experience in IAM architecture, authentication technologies, identity lifecycle management, and access governance. Experience with the ForgeRock IAM platform is ...
The ideal candidate will have strong experience in IAM architecture, authentication technologies, identity lifecycle management, and access governance. Experience with the ForgeRock IAM platform is ...
Sr. IAM Engineer
Newark, NJ · On-site
$109K - $150K/yr
... architecture, builds, and configurations for solutions provided. Advanced experience and/or expertise in several of the following; ForgeRock SAAS or On Prem. This includes ability to install and ...
Sr. IAM Engineer
Newark, NJ · On-site
$109K - $150K/yr
... architecture, builds, and configurations for solutions provided. Advanced experience and/or expertise in several of the following; ForgeRock SAAS or On Prem. This includes ability to install and ...
AWS Solution Architect-Hybrid
Austin, TX · Hybrid
$64.25 - $84.25/hr
Job Title: Cloud Solution Architect Location: Austin TX-Hybrid Duration: Long term Key ... g., Okta, ForgeRock) 2 Required Experience with message queue technologies (Kafka, RabbitMQ ...
New
AWS Solution Architect-Hybrid
Austin, TX · Hybrid
$64.25 - $84.25/hr
Job Title: Cloud Solution Architect Location: Austin TX-Hybrid Duration: Long term Key ... g., Okta, ForgeRock) 2 Required Experience with message queue technologies (Kafka, RabbitMQ ...
New
Technical Architect (No H1B)
Los Angeles, CA · On-site
$71.50 - $86.25/hr
Deploy VIP-ForgeRock solution to provide foundational capabilities to NBCU around customer management/enablement. * Establish the customer schema, CRUD interfaces for basic customer profile ...
Technical Architect (No H1B)
Los Angeles, CA · On-site
$71.50 - $86.25/hr
Deploy VIP-ForgeRock solution to provide foundational capabilities to NBCU around customer management/enablement. * Establish the customer schema, CRUD interfaces for basic customer profile ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Springfield, VA · Hybrid
Vendor-specific certifications for identity tools such as ForgeRock, Okta, Ping Identity, or SailPoint. * Experience establishing ICAM within a Zero Trust Architecture (ZTA) framework. Clearance ...
ICAM Architect
Washington, DC · On-site
Identity & Access Management (SailPoint, Okta, CyberArk, ForgeRock) * Networking(Cisco, Palo Alto, Juniper) * Security Tools (Splunk, Carbon Black,Cylance, McAfee, Tenable, FireEye, CrowdStrike, ELK)
ICAM Architect
Washington, DC · On-site
Identity & Access Management (SailPoint, Okta, CyberArk, ForgeRock) * Networking(Cisco, Palo Alto, Juniper) * Security Tools (Splunk, Carbon Black,Cylance, McAfee, Tenable, FireEye, CrowdStrike, ELK)
Enterprise IAM Lead
Jersey City, NJ · On-site
Align IAM architecture with Zero Trust principles and enterprise security strategy * Own IAM platform roadmap and strategy across tools such as Okta, Ping, ForgeRock, and Entra ID * Drive ...
Quick apply
Enterprise IAM Lead
Jersey City, NJ · On-site
Align IAM architecture with Zero Trust principles and enterprise security strategy * Own IAM platform roadmap and strategy across tools such as Okta, Ping, ForgeRock, and Entra ID * Drive ...
Senior IAM Engineer
$101K - $138K/yr
... Identity, ForgeRock, or similar IAM solutions • Java and Spring Boot • Microservices architecture • RESTful APIs and enterprise integrations • React and modern JavaScript frameworks ...
New
Senior IAM Engineer
$101K - $138K/yr
... Identity, ForgeRock, or similar IAM solutions • Java and Spring Boot • Microservices architecture • RESTful APIs and enterprise integrations • React and modern JavaScript frameworks ...
New
Security Engineer
Chicago, IL · On-site
... architecture development and implementation of infrastructure/network and multi-platform ... Or equivalent work experience." • 3+ years experience with ForgeRock , hands-on experience with ...
Security Engineer
Chicago, IL · On-site
... architecture development and implementation of infrastructure/network and multi-platform ... Or equivalent work experience." • 3+ years experience with ForgeRock , hands-on experience with ...
Senior IAM Engineer
Salt Lake City, UT · On-site
$60 - $65/hr
... Identity, ForgeRock, or similar IAM solutions • Java and Spring Boot • Microservices architecture • RESTful APIs and enterprise integrations • React and modern JavaScript frameworks ...
New
Quick apply
Senior IAM Engineer
Salt Lake City, UT · On-site
$60 - $65/hr
... Identity, ForgeRock, or similar IAM solutions • Java and Spring Boot • Microservices architecture • RESTful APIs and enterprise integrations • React and modern JavaScript frameworks ...
New
Senior IAM Engineer
Cottonwood Heights, UT · On-site
$98K - $135K/yr
Okta, Ping Identity, ForgeRock, or similar IAM solutions * Java and Spring Boot * Microservices architecture * RESTful APIs and enterprise integrations * React and modern JavaScript frameworks ...
Senior IAM Engineer
Cottonwood Heights, UT · On-site
$98K - $135K/yr
Okta, Ping Identity, ForgeRock, or similar IAM solutions * Java and Spring Boot * Microservices architecture * RESTful APIs and enterprise integrations * React and modern JavaScript frameworks ...
Senior IAM Engineer
$99K - $136K/yr
Okta, Ping Identity, ForgeRock, or similar IAM solutions * Java and Spring Boot * Microservices architecture * RESTful APIs and enterprise integrations * React and modern JavaScript frameworks ...
Senior IAM Engineer
$99K - $136K/yr
Okta, Ping Identity, ForgeRock, or similar IAM solutions * Java and Spring Boot * Microservices architecture * RESTful APIs and enterprise integrations * React and modern JavaScript frameworks ...
Forgerock Architect information
See salary details
$10.10 - $18.77
7% of jobs
$18.77 - $27.45
0% of jobs
$27.45 - $36.12
3% of jobs
$42.52 is the 25th percentile. Wages below this are outliers.
$36.12 - $44.80
20% of jobs
$44.80 - $53.47
9% of jobs
$53.47 - $62.15
5% of jobs
The median wage is $64.12 / hr.
$62.15 - $70.83
23% of jobs
$74.40 is the 75th percentile. Wages above this are outliers.
$70.83 - $79.50
18% of jobs
$79.50 - $88.18
14% of jobs
$88.18 - $96.85
0% of jobs
$96.85 - $105.53
1% of jobs
$10
$61
$105
How much do forgerock architect jobs pay per hour?
How does a ForgeRock Architect typically collaborate with cross-functional teams during identity and access management (IAM) projects?
What is the difference between Forgerock Architect vs Forgerock Developer?
| Aspect | Forgerock Architect | Forgerock Developer |
|---|---|---|
| Primary Role | Designs and oversees the implementation of ForgeRock identity solutions | Develops and codes ForgeRock modules and integrations |
| Required Skills | Architecture, system design, project management | Programming, scripting, technical troubleshooting |
| Certifications | ForgeRock certifications, architecture credentials | ForgeRock developer certifications |
| Work Environment | Project planning, client interaction, high-level design | Code development, testing, debugging |
The Forgerock Architect focuses on designing and planning ForgeRock solutions, ensuring they meet client needs, while the Forgerock Developer implements these designs through coding and technical development. Both roles require ForgeRock certifications but differ in scope and responsibilities.
What is a ForgeRock Architect?
What are the key skills and qualifications needed to thrive as a ForgeRock Architect, and why are they important?

Full-time
Medical, Dental, Vision, Retirement
Posted 22 days ago
First Horizon Bank rating
8.3
Based on 30 frontline employees who took The Breakroom Quiz
34th of 141 rated banks
Job description
Location: Memphis, TN
Weekly Schedule: Monday- Friday: 9am-5pm
- Manages solution design from conception, through ARB, to delivery
- Primarily responsible for producing architecture documentation for security applications as assigned and as projects and programs of work dictate
- Maintains First Horizon’s Security Architecture Pattern Inventory (across identity, data, application, network, and cloud) as a member of the Core Enterprise Architecture Team
- Leads security design workshops and POC efforts for new (security) capabilities
- Validates 3rd Party/Vendor Solutions for security concerns
- Aligns Information Security Technology strategy and planning with First Horizon’s business goals and objectives
- Promotes the use of a shared infrastructure and application roadmap to reduce costs and improve how assets are secured
- Builds and maintains technical trusted advisor relationships with influential technical decision makers within Technology
- Works with engineers to ensure that technical solutions as delivered align with Information Security Standards and Policies
- Works with Portfolio technology leaders to include IT Risk and Security Exception initiatives in portfolio roadmap
- Manage Encryption Standards: key management, tokenization for payments, DLP/classification/handling; architect PCI DSS segmentation boundaries and compensating controls.
- Manage Network/Zero Trust Standards: microsegmentation across Azure and colocation; secure branch/office connectivity; define workload identity and continuous verification patterns; enforce least privilege.
- Detection/telemetry: Publish Splunk logging schema, retention, and correlation strategies; onboard logs from Azure, Colo, API Gateways, IAM, CyberArk, MFaaS, and core platforms; drive ATT&CKaligned detections and forensic readiness.
- Secure SDLC and supply chain: Operationalize threat modeling; collaboratively define CI/CD control overlays with DevOps; establish artifact signing/SBOM standards; ensure secrets handling and container/Kubernetes baselines where applicable.
- Governance and risk: Maintain control overlays mapped to FFIEC/GLBA/PCI/NIST; lead design reviews; manage exceptions with remediation timelines; produce audit-ready decision records in partnership with the CISO team.
- Payments and third-party/SaaS: Define intake and security requirements for MFaaS, Salesforce, ServiceNow, FIS/Fiserv/Bottomline integrations—identity, logging, data handling, and PCI scoping.
- Physical security integration: Align building access, video, and visitor systems with identity and logging patterns; coordinate incident playbooks with Corporate/Physical Security.
- Enablement and influence: Mentor senior architects and engineering associates; lead communities of practice; communicate strategy, benefits, and trade-offs to executives and delivery teams.
- Bachelor's degree in Computer Science, Management Information Systems, or related field
- (12+) years of Information Security experience
- (7+) years of Security Architecture
- Experience in regulated financial services
- Experience with Azure security architecture across multi-tenant/region and hybrid environments; strong Zero Trust and network segmentation expertise
- Regulatory fluency: FFIEC, GLBA, PCI DSS; practical NIST CSF/800-53 mapping; MITRE ATT&CKaligned detection design.
- Experience with technical documentation like interaction diagrams, process diagrams, network topologies and other architectural content
- Experience with Agile/SAFe methodologies
- Experience with Enterprise Architecture Governance: ARB/design councils, exception handling, and audit narratives; ability to set and harmonize enterprise standards.
- Strongly preferred: CISSP or CompTIA Security+
- Microsoft Azure Security Engineer or Azure Solutions Architect Expert
- Preferred: CCSP; CISM or CRISC; SANS GCSA or GCLD; PCI Professional (PCIP) or equivalent GIAC enterprise defense/IR certifications
- Ability to adapt to new technologies and learn quickly
- Enterprise architectural leadership across identity, cloud, application, data, and network security.
- IAM for associates (Entra ID, Active Directory) and clients (Transmit Security, ForgeRock/Ping, or Okta); OAuth/OIDC; phishing-resistant MFA/passkeys; PAM integration and privileged pathway design.
- Integration Security: FAPI, OAuth2.0, FDX, mTLS, rate limiting, schema validation, abuse/bot mitigation, CIAM integration, OWASP, and high-quality telemetry to Splunk.
- Secure SDLC and supply chain: threat modeling, pipeline security, artifact signing/SBOM, dependency hygiene, and secrets management.
- Communication, influence, and enablement: ability to translate risk to business impact, drive adoption, and coach peers and engineers.
- Ownership and execution: measurable risk reduction, pattern adoption, and crossteam collaboration.
About Us
First Horizon Corporation is a leading regional financial services company, dedicated to helping our clients, communities and associates unlock their full potential with capital and counsel. Headquartered in Memphis, TN, the banking subsidiary First Horizon Bank operates in 12 states across the southern U.S. The Company and its subsidiaries offer commercial, private banking, consumer, small business, wealth and trust management, retail brokerage, capital markets, fixed income, and mortgage banking services. First Horizon has been recognized as one of the nation's best employers by Fortune and Forbes magazines and a Top 10 Most Reputable U.S. Bank. More information is available at www.FirstHorizon.com.
Benefit Highlights
• Medical with wellness incentives, dental, and vision
• HSA with company match
• Maternity and parental leave
• Tuition reimbursement
• Mentor program
• 401(k) with 6% match
• More -- FirstHorizon.com/First-Horizon-National-Corporation/Careers/Our-Benefits
Follow Us
X formerly Twitter
YouTube
What First Horizon Bank employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About First Horizon Bank
Sourced by ZipRecruiter
Industry
Finance and insurance and commercial banking
Company size
5,001 - 10,000 Employees
Headquarters location
Memphis, TN, US