1

Microsoft Identity Security Architect Jobs (NOW HIRING)

Identity Security Engineer

Washington, DC · On-site

$120K - $130K/yr

You will assess the organization's identity architecture against modern security frameworks, lead ... Hands-on experience with Microsoft Entra ID (Azure Active Directory), Privileged Identity ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

Microsoft 365 Technical Architect

$67.75 - $82/hr

Microsoft Security Operations Analyst • Microsoft SC-300: Microsoft Identity and Access ... architecture diagrams, and technical specifications for security platform implementation • ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

Security Architect/vCISO

Duluth, GA · On-site

$59.75 - $77.25/hr

Design and validate identity security architectures, including identity governance, access ... Perform architecture reviews and control gap assessments against security frameworks and client ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

Security Architect/vCISO

Duluth, GA · Remote

$59.75 - $77.25/hr

Design and validate identity security architectures, including identity governance, access ... Perform architecture reviews and control gap assessments against security frameworks and client ...

Security Architect/vCISO

Duluth, GA · On-site

$59.75 - $77.25/hr

Design and validate identity security architectures, including identity governance, access ... Perform architecture reviews and control gap assessments against security frameworks and client ...

$48 - $62/hr

Design and validate identity security architectures, including identity governance, access ... Perform architecture reviews and control gap assessments against security frameworks and client ...

As a key member of the Global Security Identity & Access Management team, you will serve as the ... CISSP, CIAM, CISM, Microsoft Identity & Access Administrator, Certified Identity Management ...

... a Microsoft Security Architect to design and implement scalable, enterprise-grade security ... Microsoft Defender Suite (Defender for Endpoint, Identity, Cloud Apps, Office 365, etc.

Showing results 21-40

Microsoft Identity Security Architect information

See salary details

$14

$71

$103

How much do microsoft identity security architect jobs pay per hour?

As of Sep 11, 2026, the average hourly pay for microsoft identity security architect in the United States is $71.80, according to ZipRecruiter salary data. Most workers in this role earn between $62.50 and $80.77 per hour, depending on experience, location, and employer.

What is the difference between Microsoft Identity Security Architect vs Identity and Access Management (IAM) Engineer?

AspectMicrosoft Identity Security ArchitectIAM Engineer
Required CertificationsMicrosoft Certified: Identity and Access Administrator Associate, Security+Certified Identity and Access Manager (CIAM), CompTIA Security+
Work EnvironmentDesigning and implementing identity security solutions within Microsoft ecosystemsManaging identity and access systems across various platforms and technologies
Employer & Industry UsagePrimarily in organizations using Microsoft cloud services and security solutionsAcross diverse industries managing enterprise identity infrastructure
Common Search & Comparison IntentUnderstanding specialized identity security roles in Microsoft environmentsExploring roles related to identity management and security engineering

The Microsoft Identity Security Architect focuses on designing and implementing identity security solutions within Microsoft ecosystems, while the IAM Engineer manages and maintains identity and access systems across various platforms. Both roles require security certifications and work in related environments, but their scope and focus differ based on organizational needs and technology stacks.

What are popular job titles related to Microsoft Identity Security Architect jobs?

For Microsoft Identity Security Architect jobs, the most frequently searched job titles are:

Infographic showing various Microsoft Identity Security Architect job openings in the United States as of September 2026, with employment types broken down into 1% Internship, 1% As Needed, 74% Full Time, 20% Part Time, 3% Contract, and 1% Nights. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $149,349 per year, or $71.8 per hour.

Identity and Access Management Architect

Southfield, MI • Hybrid

Open Dealer Exchange
Software Development • 51 - 200 employees

Full-time

Re-posted 26 days ago


Job description

Description

Identity and Access Management Architect


Open Dealer Exchange (ODE), is seeking an Identity and Access Management (IAM) Architect to support its workforce in Southfield, MI. As an IAM Architect, you will own and mature our identity security posture across a complex, multi-platform environment, serving as the primary driver of a structured role based access control (RBAC) program and a trusted technical advisor across infrastructure, IT, and development teams. The ideal candidate will have deep experience with Entra ID, Active Directory, identity lifecycle automation, and governing access in regulated enterprise environments. Open Dealer Exchange is a dynamic, exciting place to work. Open Dealer Exchange offers a hybrid work model as well as an excellent compensation/benefit package.


Responsibilities

  • Design and implement enterprise RBAC: Build a cohesive role-based access control model across Entra ID, Active Directory, and Entra External ID, replacing ad hoc access grants with governed, role-aligned entitlements.
  • Lead identity lifecycle automation: Integrate the HR system with Entra ID to automate provisioning and deprovisioning, ensuring access changes are event-driven and auditable at the point of hire, transfer, and termination.
  • Govern directory structure and access hygiene: Define and enforce naming conventions, group structures, and access review cadences across all directory platforms.
  • Manage non-human identities: Govern service accounts, including managed identities, service principals, and app registrations, enforcing least privilege and credential hygiene across all environments.
  • Advise development teams on identity security: Provide architectural guidance on token handling, session management, and federation patterns for teams building or maintaining identity adjacent systems.
  • Drive Conditional Access and PIM: Lead Conditional Access policy design and own Privileged Identity Management configuration and the privileged access model for admin roles across Azure and M365.
  • Support Entra External ID governance: Advise teams on External ID tenant configuration, custom policy, user flows, and external identity federation.
  • Produce compliance-ready documentation: Maintain IAM documentation including access control matrices, provisioning runbooks, and audit-ready entitlement inventories supporting FCRA and FTC Safeguards Rule obligations.
  • Collaborate across the security program: Align IAM initiatives with the broader security roadmap and participate in change management and architecture review processes alongside security engineers and the Cybersecurity Manager.

Requirements

Required Skills & Experience

  • 5+ years of hands-on IAM engineering experience, with at least 3 years focused on Entra ID (Azure AD) in enterprise environments.
  • Deep working knowledge of Active Directory, including group policy, OU design, domain trust models, and hybrid identity patterns.
  • Demonstrated experience designing and implementing RBAC models at scale in complex or legacy environments.
  • Hands-on experience with Entra ID Governance, including access reviews, entitlement management, lifecycle workflows, and Privileged Identity Management (PIM).
  • Strong working knowledge of OAuth 2.0, OIDC, and SAML, sufficient to review developer implementations and identify security risk.
  • Practical experience automating identity lifecycle events using Logic Apps, Azure Functions, PowerShell, or the Microsoft Graph API.
  • Ability to communicate risk clearly to non-technical stakeholders and produce compliance-ready documentation.
  • Will accept any suitable combination of education, training, or experience.

Preferred Skills & Experience

  • Experience in regulated industries such as financial services, fintech, or automotive with access control obligations.
  • Familiarity with FTC Safeguards Rule requirements or equivalent data security regulatory frameworks.
  • Prior experience integrating an HRIS platform (Workday, BambooHR, UKG, or similar) with Entra ID via SCIM or custom connector.
  • Exposure to IGA platforms such as SailPoint, Saviynt, or Omada.
  • Experience advising development teams on token validation, scope design, role claims, and secure session management.
  • Bachelor's degree in Computer Science, Information Systems, or a related field, or equivalent professional experience.
  • Relevant certifications: SC-300 (Microsoft Identity and Access Administrator), AZ-500 (Microsoft Azure Security Technologies), or equivalent