1

Iam Security Architect Jobs (NOW HIRING)

AI IAM Architect

Fort Mill, SC · Remote

$153K - $255K/yr

The AI IAM Architect partners across AI/platform engineering, IAM, security, and enterprise architecture to define reusable, secure, and production-ready identity standards for agents. Key ...

AI IAM Architect

San Diego, CA · Remote

$153K - $255K/yr

The AI IAM Architect partners across AI/platform engineering, IAM, security, and enterprise architecture to define reusable, secure, and production-ready identity standards for agents. Key ...

IAM Security Engineer

San Jose, CA · On-site

$114 - $162/hr

Facilitate decision-making among architecture, security, infrastructure, and operations teams ... Align IAM solutions with business objectives, security requirements, and organizational risk ...

Cloud Security Architect

Newton, NJ · On-site

$68 - $90.50/hr

Lead the IAM architecture function through collaboration, encompassing identity management for ... Partner closely with Security Engineering, IT Infrastructure and Operations, DevOps, and GRC ...

Cloud Security Architect

Newton, NJ · On-site

$68 - $90.50/hr

Lead the IAM architecture function through collaboration, encompassing identity management for ... Partner closely with Security Engineering, IT Infrastructure and Operations, DevOps, and GRC ...

Cloud Security Architect

Newton, NJ · On-site

$68 - $90.50/hr

Lead the IAM architecture function through collaboration, encompassing identity management for ... Partner closely with Security Engineering, IT Infrastructure and Operations, DevOps, and GRC ...

Security Architect

Fort Lauderdale, FL · On-site

$62.25 - $80.25/hr

Broad knowledge across Network Security, IAM, SecOps, Incident Response, Asset/Lock Management, and Threat Modeling. * Hands-on experience with methodologies such as TOGAF, PASTA, STRIDE . * Ability ...

Showing results 41-60

Iam Security Architect information

See salary details

$14

$71

$103

How much do iam security architect jobs pay per hour?

As of Aug 12, 2026, the average hourly pay for iam security architect in the United States is $71.80, according to ZipRecruiter salary data. Most workers in this role earn between $62.50 and $80.77 per hour, depending on experience, location, and employer.

What is an IAM Security Architect?

An IAM (Identity and Access Management) Security Architect is a cybersecurity professional who designs, implements, and manages systems that control user identities and access to resources within an organization. They develop strategies and frameworks to ensure that only authorized individuals can access sensitive data and systems, helping protect the organization from security breaches. Their responsibilities often include evaluating current identity infrastructures, recommending improvements, and integrating new IAM technologies to meet evolving security needs. IAM Security Architects work closely with other IT and security teams to align identity management with overall cybersecurity goals.

What are the main challenges an IAM Security Architect faces when implementing identity solutions in large organizations?

One of the main challenges IAM Security Architects encounter is integrating new identity and access management solutions with existing legacy systems, which often have different protocols and security requirements. Balancing user convenience with robust security controls, such as multi-factor authentication, can also be complex, especially when rolling out solutions to a large, diverse user base. Additionally, IAM Security Architects must stay up-to-date with evolving compliance regulations and ensure that the organization’s identity solutions are scalable, resilient, and aligned with business needs. Regular collaboration with IT, security, and business stakeholders is vital to ensure smooth deployments and ongoing operations.

What are the key skills and qualifications needed to thrive as an IAM Security Architect?

To thrive as an IAM Security Architect, you need expertise in identity and access management concepts, security protocols, and a background in computer science or information security. Proficiency with tools like Active Directory, LDAP, SAML, OAuth, and certifications such as CISSP or CIAM are highly valued. Strong analytical thinking, problem-solving abilities, and effective communication skills help you design secure systems and collaborate with stakeholders. These skills are essential to safeguard organizational assets, ensure regulatory compliance, and manage complex security architectures.

What is the difference between Iam Security Architect vs Iam Security Engineer?

AspectIam Security ArchitectIam Security Engineer
CertificationsCCSP, CISSP, CISACISSP, Security+
Work EnvironmentDesigns security frameworks, high-level planningImplements security measures, technical configuration
Employer & Industry UsageUsed in large organizations, consulting firmsCommon in IT departments, cybersecurity teams
Search & Comparison IntentUnderstanding strategic roles, career pathsTechnical responsibilities, daily tasks

While both roles focus on identity and access management security, the Iam Security Architect primarily designs and plans security frameworks, whereas the Iam Security Engineer implements and maintains these systems. The architect role is more strategic, while the engineer role is more technical and hands-on.

More about Iam Security Architect jobs
What cities are hiring for Iam Security Architect jobs? Cities with the most Iam Security Architect job openings:
What states have the most Iam Security Architect jobs? States with the most job openings for Iam Security Architect jobs include:
What job categories do people searching Iam Security Architect jobs look for? The top searched job categories for Iam Security Architect jobs are:
Infographic showing various Iam Security Architect job openings in the United States as of August 2026, with employment types broken down into 85% Full Time, 12% Part Time, and 3% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $149,349 per year, or $71.8 per hour.

AI IAM Architect

LPL Financial

Fort Mill, SC • Remote

$153K - $255K/yr

Full-time

Medical, Retirement, PTO

Re-posted 17 days ago


LPL Financial rating

7.3

Company rating: 7.3 out of 10

Based on 71 frontline employees who took The Breakroom Quiz

123rd of 150 rated financial services


Job description

Where Ambition Meets Innovation

Build a career that matches all your initiative with an impressive dose of innovation. From cutting-edge resources and a collaborative environment to the freedom to make an impact and more, you'll find the ingredients you need at LPL Financial to shape your success while helping clients pursue their financial goals.

Job Overview:


We are seeking an experienced Identity and Access Management (IAM) Architect with a strong AI and agent-integration focus to lead the design, proof-of-concept (POC), and hands-on implementation of identity patterns for AI workloads, conversational agents, and AI platform integrations across the enterprise. The ideal candidate combines deep IAM architecture expertise with practical engineering skills-building POCs, configuring OAuth/OIDC flows, and partnering directly with AI engineering teams to secure agent runtimes, tool access, and human-in-the-loop experiences.

This role owns IAM architecture for AI use cases, including delegated and service-to-service access, API gateway/BFF token flows, scoped credentials, and governance alignment. You will design and validate OAuth/OIDC patterns (Auth Code + PKCE, OBO, token exchange, client credentials) across identity providers (PingOne AIC, Entra ID), gateways, and agent platforms. The AI IAM Architect partners across AI/platform engineering, IAM, security, and enterprise architecture to define reusable, secure, and production-ready identity standards for agents.

Key Responsibilities:

  • Discover AI/agent identity requirements across users, services, runtimes, tools, and APIs.

  • Assess existing SSO, MFA, federation, and API authorization models; identify gaps in delegation, token lifecycle, scopes, secrets, and auditability.

  • Design enterprise IAM patterns (user context propagation, delegation chains, BFF sessions, least-privilege access) and OAuth/OIDC client models.

  • Define standards for securing agent tools, data access, and cross-domain integrations; align to zero trust and regulatory controls.

  • Produce architecture artifacts (CAD/HLD/PSS) and reference implementations.

  • Lead and build IAM POCs (end-to-end flows, token exchange, gateway enforcement, delegated agent access).

  • Configure/test identity flows; troubleshoot tokens, scopes, and integrations.

  • Implement or guide IAM integrations across gateways, BFFs, agent orchestration, and observability.

  • Transition validated patterns to IAM engineering for production rollout.

  • Define agent identity lifecycle (registration, credential rotation, revocation, environment separation).

  • Integrate IAM across AI platform components; support CI/CD and IaC for IAM configurations.

  • Establish patterns for human-in-the-loop controls, break-glass access, and rate limiting.

  • Maintain documentation, decision records, diagrams, and runbooks.

  • Deliver POC summaries, evaluations, and implementation guidance; communicate risks and dependencies.

  • Ensure regulatory compliance; partner on threat modeling and controls (secrets, PAM, audit evidence).

  • Serve as IAM SME for AI initiatives; mentor engineers.

  • Deliver production-ready IAM patterns and reduce identity risk across AI workloads.

Requirements:

  • 10+ years in IAM, security architecture, or platform engineering with significant IAM scope.

  • 2+ years building IAM POCs and troubleshooting OAuth 2.0 / OIDC flows (Auth Code + PKCE, refresh tokens, client credentials, token exchange, OBO).

  • 2+ years with PingOne AIC and/or Microsoft Entra ID.

Core Competencies:

  • Hands-on experience designing identity for APIs, microservices, and BFF architectures.

  • Experience integrating IAM with API gateways, AI/ML platforms, and modern application stacks.

  • Strong knowledge of SAML, OAuth, OIDC, JWT, scopes, and authorization patterns.

  • Familiarity with agent/tool identity models and secure integration patterns.

  • Ability to translate AI requirements into secure identity designs; strong communication skills.

Preferences:

  • Experience delivering AI/ML agents or copilots to production.

  • Experience with SailPoint, CyberArk/Delinea, or Auth0/CIAM.

  • Knowledge of AI-aware API gateways (e.g., Kong).

  • Experience with IAM modernization or M&A programs.

  • Relevant certifications (CISSP, CCSP, Entra, Ping, SailPoint, AWS).

  • Familiarity with zero trust and identity threat detection.


Pay Range:

$153,470.00 - $255,749.00
Actual base salary varies based on factors, including but not limited to, relevant skill, prior experience, education, base salary of internal peers, demonstrated performance, and geographic location. Additionally, LPL Total Rewards package is highly competitive, designed to support your success at work, at home, and at play - such as 401K matching, health benefits, employee stock options, paid time off, volunteer time off, and more. Your recruiter will be happy to discuss all that LPL has to offer!

Company Overview:

LPL Financial Holdings Inc. (Nasdaq: LPLA) is among the fastest growing wealth management firms in the U.S. As a leader in the financial advisor-mediated marketplace(6) , LPL supports over 32,000 financial advisors and the wealth management practices of approximately 1,100 financial institutions, servicing and custodying approximately $2.3 trillion in brokerage and advisory assets on behalf of approximately 8 million Americans. The firm provides a wide range of advisor affiliation models, investment solutions, fintech tools and practice management services, ensuring that advisors and institutions have the flexibility to choose the business model, services, and technology resources they need to run thriving businesses. For further information about LPL, please visit www.lpl.com.


At LPL, independence means that advisors and institution leaders have the freedom they deserve to choose the business model, services, and technology resources that allow them to run a thriving business. They have the flexibility to do business their way. And they have the freedom to manage their client relationships, because they know their clients best. Simply put, we take care of our advisors and institutions, so they can take care of their clients.


For further information about LPL, please visit www.lpl.com.


Join the LPL team and help us make a difference by turning life's aspirations into financial realities. Please log in or create an account to apply to this position. Principals only. EOE.


Information on Interviews:

LPL will only communicate with a job applicant directly from an@lplfinancial.comemail address and will never conduct an interview online or in a chatroom forum. During an interview, LPL will not request any form of payment from the applicant, or information regarding an applicant's bank or credit card. Should you have any questions regarding the application process, please contact LPL's Human Resources Solutions Center at(855) 575-6947.


EAC 5.19.26


What LPL Financial employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom