IAM Architect
Philadelphia, PA · Remote
Develop enterprise authorization patterns across RBAC, ABAC, and policy-driven access models to ... Strong hands-on experience with Identity and Access Management (IAM), including identity governance ...
Philadelphia, PA · Remote
Develop enterprise authorization patterns across RBAC, ABAC, and policy-driven access models to ... Strong hands-on experience with Identity and Access Management (IAM), including identity governance ...
Philadelphia, PA · Remote
Develop enterprise authorization patterns across RBAC, ABAC, and policy-driven access models to ... Strong hands-on experience with Identity and Access Management (IAM), including identity governance ...
Pittsburgh, PA · On-site +1
$62.75 - $82.50/hr
Author production-ready Terraform modules with state management and remote backends; implement multi-tenant security (ABAC/RBAC, Lake Formation row/column filters, and KMS encryption). * Quality ...
Pittsburgh, PA · On-site +1
$62.75 - $82.50/hr
Author production-ready Terraform modules with state management and remote backends; implement multi-tenant security (ABAC/RBAC, Lake Formation row/column filters, and KMS encryption). * Quality ...
$150K - $174K/yr
The Technical Product Manager (TPM) is responsible for defining and driving the vision, roadmap ... Knowledge of enterprise identity models such as RBAC, ABAC, ReBAC, and AWS IAM * Experience in ...
$150K - $174K/yr
The Technical Product Manager (TPM) is responsible for defining and driving the vision, roadmap ... Knowledge of enterprise identity models such as RBAC, ABAC, ReBAC, and AWS IAM * Experience in ...
Radnor, PA · On-site
$150K - $174K/yr
The Technical Product Manager (TPM) is responsible for defining and driving the vision, roadmap ... Knowledge of enterprise identity models such as RBAC, ABAC, ReBAC, and AWS IAM * Experience in ...
Radnor, PA · On-site
$150K - $174K/yr
The Technical Product Manager (TPM) is responsible for defining and driving the vision, roadmap ... Knowledge of enterprise identity models such as RBAC, ABAC, ReBAC, and AWS IAM * Experience in ...
Expertly manage data consolidation across CRM, ERP, and finance systems, implementing real-time ... Define and enforce comprehensive data governance frameworks, RBAC policies, and security best ...
Expertly manage data consolidation across CRM, ERP, and finance systems, implementing real-time ... Define and enforce comprehensive data governance frameworks, RBAC policies, and security best ...
$113K - $155K/yr
Support Identity Governance (OIG) initiatives, including role-based access control (RBAC), access certifications, and integration with Privileged Access Management (PAM) tools. Experience: 10+ years ...
$113K - $155K/yr
Support Identity Governance (OIG) initiatives, including role-based access control (RBAC), access certifications, and integration with Privileged Access Management (PAM) tools. Experience: 10+ years ...
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
Strong controls mindset (audit readiness, RBAC/security, data privacy) * Excellent troubleshooting ... Release management and documentation; familiarity with version control * SQL for validation ...
Quick apply
Strong controls mindset (audit readiness, RBAC/security, data privacy) * Excellent troubleshooting ... Release management and documentation; familiarity with version control * SQL for validation ...
Pittsburgh, PA · On-site
$105K - $143K/yr
Define and implement our Kubernetes security posture: secure network policies, RBAC, container security, secrets management, vulnerability management, compliance-oriented controls and reporting
Pittsburgh, PA · On-site
$105K - $143K/yr
Define and implement our Kubernetes security posture: secure network policies, RBAC, container security, secrets management, vulnerability management, compliance-oriented controls and reporting
Philadelphia, PA · On-site
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
Quick apply
Philadelphia, PA · On-site
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
Philadelphia, PA · On-site
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
Philadelphia, PA · On-site
$56.25 - $75.25/hr
Implement and operate Azure landing zones, subscriptions, management groups, and governance controls (RBAC, Azure Policy, tagging, resource organization). * Engineer Azure networking solutions (VNets ...
Expertly manage data consolidation across CRM, ERP, and finance systems, implementing real-time ... Define and enforce comprehensive data governance frameworks, RBAC policies, and security best ...
Expertly manage data consolidation across CRM, ERP, and finance systems, implementing real-time ... Define and enforce comprehensive data governance frameworks, RBAC policies, and security best ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
Strong controls mindset (audit readiness, RBAC/security, data privacy) * Excellent troubleshooting ... Release management and documentation; familiarity with version control * SQL for validation ...
Strong controls mindset (audit readiness, RBAC/security, data privacy) * Excellent troubleshooting ... Release management and documentation; familiarity with version control * SQL for validation ...
Pittsburgh, PA · On-site
$85K - $116K/yr
Design and execute end-to-end tests for document management workflows, including document ... Implement security and compliance testing, including RBAC validation, access controls, and data ...
Pittsburgh, PA · On-site
$85K - $116K/yr
Design and execute end-to-end tests for document management workflows, including document ... Implement security and compliance testing, including RBAC validation, access controls, and data ...
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
Define and maintain standards for subscriptions, RBAC, tagging, ownership, and overall operational ... Manage joiner, mover, and leaver processes, ensuring access is provisioned, updated, and removed ...
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
Quick apply
... GEOINT Information Management Services (GIMS) system. GIMS is a mission-critical enterprise ... Strong Kubernetes skills - core objects, scheduling, RBAC, networking, storage, upgrades ...
| Aspect | Manager Rbac | Security Analyst |
|---|---|---|
| Credentials | Certifications like CISSP, CISM, or vendor-specific RBAC certifications | Certifications such as CompTIA Security+, CISSP, or GIAC Security Certifications |
| Work Environment | Typically in IT or cybersecurity teams managing access controls | In security operations centers or IT departments analyzing threats and vulnerabilities |
| Employer & Industry Usage | Used across industries for access management roles | Common in finance, healthcare, and tech sectors for security monitoring |
While both roles focus on security, Manager Rbac primarily manages role-based access controls, whereas Security Analysts monitor and respond to security threats. They often collaborate but have distinct responsibilities within cybersecurity teams.
Other
Medical, Dental, Vision, Life, Retirement, PTO
Posted 4 days ago
5.9
Based on 1,212 frontline employees who took The Breakroom Quiz
336th of 426 rated business services
Aramark is modernizing its enterprise identity environment to support scalable, secure access across workforce, non-human, and emerging automation use cases.
We are looking for an Identity Architect who can simplify complex identity challenges, define practical governance and authorization patterns, and help shape the future direction of enterprise identity capabilities.
This role is a senior individual contributor position that partners across architecture, engineering, operations, and security teams to guide identity strategy, federation design, access models, and modernization efforts in a large-scale enterprise environment.
Architecture & Design
? Develop enterprise authorization patterns across RBAC, ABAC, and policy-driven access models to improve consistency, scalability, and long-term adaptability.
? Shape identity governance architecture and support modernization efforts across lifecycle management and enterprise access capabilities.
? Establish governance patterns for non-human identities, including service accounts, APIs, and automation workflows.
? Lead the architectural direction for enterprise federation and access patterns across PingFederate, PingAccess, Entra ID, and related identity platforms.
? Define scalable SSO, federation, trust, and access design patterns for application onboarding and modernization efforts.
Program Leadership
? Partner with IAM leadership, engineering, operations, and security teams to guide long-term identity architecture and modernization decisions.
? Translate identity strategy into practical design patterns, governance models, and implementation guidance.
? Produce architecture standards, design artifacts, and decision frameworks that improve consistency across the identity ecosystem.
What Success Looks Like
First 6?12 Months
? Establish a clear direction for identity architecture and governance evolution.
? Improve consistency of enterprise authorization and federation patterns.
? Advance modernization of identity governance and access models.
? Strengthen internal architectural decision-making and reduce fragmentation across identity capabilities.
? Strong hands-on experience with Identity and Access Management (IAM), including identity governance, access controls, authentication, authorization, privileged access management, and enterprise IAM architecture. Experience primarily focused on IT audit or compliance is not the primary focus of this role.
? Strong experience designing identity governance, authorization, federation, and lifecycle management patterns in complex enterprise environments.
? Experience with SailPoint ISC or IIQ, including governance architecture and enterprise IAM transformation initiatives.
? Strong understanding of RBAC, ABAC, policy-driven access models, and modern identity governance concepts.
? Strong experience with federation and enterprise access architecture, including practical design experience with Ping Identity platforms such as PingFederate and PingAccess.
? Ability to translate complex identity challenges into scalable, pragmatic architectural approaches.
? Experience working in SOX-controlled or other highly regulated environments.
Preferred
? Experience with non-human identity governance patterns, including service accounts, APIs, automation identities, or secrets management.
? Experience contributing to enterprise IAM modernization or identity operating model evolution initiatives.
? Experience with SailPoint IIQ-to-ISC migration or similar identity governance platform modernization efforts.
? Experience with Ping Identity platforms such as PingFederate, PingAccess, and PingDirectory in complex enterprise environments.
? Familiarity with cloud transformation, automation platforms, or identity-centric security models.
BENEFITS: Aramark offers comprehensive benefit programs and services for eligible employees including medical, dental, vision, and work/life resources. Additional benefits may include retirement savings plans like 401(k) and paid days off such as parental leave and disability coverage. Benefits vary by location and are subject to any legal requirements or limitations, employee eligibility status, and where the employee lives and/or works. For more information about Aramark benefits, click here Aramark Careers - Benefits & Compensation. ?
#LI-Remote
Our Mission
Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet.
At Aramark, we believe that every employee should enjoy equal employment opportunity and be free to participate in all aspects of the company. We do not discriminate on the basis of race, color, religion, national origin, age, sex, gender, pregnancy, disability, sexual orientation, gender identity, genetic information, military status, protected veteran status or other characteristics protected by applicable law.
About Aramark
The people of Aramark proudly serve millions of guests every day through food and facilities in 15 countries around the world. Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. We believe a career should develop your talents, fuel your passions, and empower your professional growth. So, no matter what you're pursuing - a new challenge, a sense of belonging, or just a great place to work - our focus is helping you reach your full potential. Learn more about working here at http://www.aramarkcareers.com or connect with us on Facebook, Instagram and Twitter.
Sourced by ZipRecruiter
The people of Aramark proudly serve millions of guests every day through food, facilities, and uniform services in 19 countries around the world. Rooted in service and united by our purpose, we strive to do great things for each other, our partners, our communities, and our planet. We believe a career should develop your talents, fuel your passions, and empower your professional growth. So, no matter what you're pursuing - a new challenge, a sense of belonging, or just a great place to work - our focus is helping you reach your full potential. Learn more about working here at or connect with us on Facebook, Instagram and Twitter.
Hospitality services and facilities support services
10,000+ Employees
Philadelphia, PA, US