Lead Cloud/AI/IAM Architect & Engineer

Auto Import

<p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>Lead Cloud/AI/IAM Architect & Engineer</strong></span></p><p><span style="color:rgb(0,0,0);font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Job Level:</strong> W2T Consultant</span></p><p><span style="color:rgb(0,0,0);font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Job Location:</strong> Remote</span></p><p><span style="color:rgb(0,0,0);font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Travel Expectations:</strong> 0%</span></p><p><span style="color:rgb(0,0,0);font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Job Classification:</strong> <span style="line-height:107.0%;">Temporary (W2T)</span></span></p><p><span style="font-family:arial , helvetica , sans-serif;"> </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>Join Centric Consulting – A Culture You’ll Love</strong></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">At Centric Consulting, we've cultivated a unique approach to business.  Our business is built on three fundamental principles: Enjoy the people you work with, have fun, and do great work. These principles define our consulting model and have crafted one of the most vibrant cultures in the consulting industry – celebrating individuals, collaboration, and lifelong friendships.  </span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"> The identity cloud engineer is responsible for the design, implementation, and sustainment of identity and access management capabilities across the organization's cloud environments, spanning AWS, Azure, and GCP. This role ensures that cloud native IAM constructs including roles, policies, service accounts, and Federated identity configurations are engineered to enforce least privilege, support zero trust principles, and integrate seamlessly with the enterprise identity stack.</span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">As AI is embedded into the security program, this role will play a critical part in securing AI workloads and machine identities in the cloud, ensuring that non human identities, service principles, and automated pipelines are governed with the same trigger applied to human access.</span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">The Lead Cloud IAM Architect & Engineer is responsible for defining and delivering the enterprise cloud and hybrid IAM architecture across AWS, Azure, and GCP. This role blends hands-on engineering with architecture leadership to build secure, scalable identity services and integrations using Okta, SailPoint, CyberArk, and HashiCorp platforms. The Lead will set technical direction, establish reference architectures and standards, and guide delivery across multiple teams while ensuring solutions are secure-by-design and operationally sustainable. </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>In this role, you will: </strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Own the cloud IAM reference architecture across AWS, Azure, and GCP, including identity patterns for workforce, partners, and non-human identities (workloads/services).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Define and drive adoption of authentication and authorization patterns (SSO, federation, MFA/adaptive access, API access, service-to-service identity) aligned to security standards and business requirements.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Establish and maintain reusable architecture artifacts: reference architectures, standard integration patterns, design templates, configuration baselines, and guardrails.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Lead architecture reviews and provide technical governance to ensure consistent implementation across cloud and application teams.</span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Design, build, and integrate IAM solutions using:</strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Okta (SSO, federation, lifecycle integrations, MFA/adaptive policies, app integrations)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">SailPoint (identity governance, provisioning workflows, access reviews/certifications, role and entitlement modeling)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">CyberArk (privileged access management, credential/session controls, privileged workflows)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">HashiCorp (Vault/secrets management, dynamic secrets where applicable, identity-based access to secrets)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Engineer secure cloud access patterns across AWS/Azure/GCP, including least privilege designs, account/subscription/project onboarding patterns, and role-based access models.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Build and support modern identity integrations using standards and protocols (SAML, OIDC, OAuth 2.0, SCIM; familiarity with XACML/SPML as applicable).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Develop automation and repeatability via scripting and/or infrastructure-as-code approaches (e.g., Terraform), improving time-to-deliver and reducing manual effort.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Translate IAM strategy and security policies into implementable engineering standards (e.g., privileged access requirements, access request flows, secrets handling standards, non-human identity controls).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Identify and mitigate IAM risks in cloud and hybrid environments (e.g., privileged sprawl, excessive permissions, token/session risks, misconfiguration, secrets leakage).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Partner with Security, Cloud Platform, and Compliance teams to ensure IAM solutions meet regulatory and audit expectations.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Own and maintain the IAM technical roadmap across Okta/SailPoint/CyberArk/HashiCorp, including modernization, integrations, technical debt reduction, and platform lifecycle planning for the cloud platform.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Evaluate new capabilities from cloud providers and IAM vendors; recommend improvements based on emerging threats and business needs.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Drive operational readiness for new IAM services: monitoring, alerting, runbooks, support transitions, and resilience/failover considerations.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Serve as a technical escalation point for complex IAM issues and integrations.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Mentor engineers and influence application and platform teams on secure identity patterns and implementation best practices.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Communicate architecture decisions and tradeoffs clearly to engineering teams, product owners, and senior stakeholders.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Interpret business needs and IAM strategy and convert them into secure, scalable architectures and engineering plans.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Make technical decisions balancing security, usability, delivery speed, operability, and cost.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Drive alignment across stakeholders and teams through architecture leadership and clear technical direction. </span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"> </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>Who You Are: </strong></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Knowledge, Skills, and Experience Requirements</strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Deep experience in enterprise IAM architecture and engineering, including SSO/federation, authentication, authorization, identity lifecycle, and privileged access.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Strong understanding of IAM protocols and standards: SAML, OpenID Connect, OAuth 2.0, SCIM (plus familiarity with related standards as needed).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Strong security foundation: least privilege, privileged access controls, secrets management, segmentation, auditing/logging, and identity threat considerations.</span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Hands-on experience designing IAM models across:</strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">AWS(IAM roles/policies, cross-account access patterns, identity federation)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Azure (Entra ID/Azure RBAC patterns, subscription management concepts)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">GCP (IAM roles, service accounts, workload identity concepts)</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Understanding of cloud operating models across IaaS/PaaS/SaaS and how identity patterns differ across them.</span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Proven implementation experience with:</strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Okta for identity provider patterns, app onboarding, MFA/adaptive access, lifecycle integrations</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">SailPoint for governance, provisioning, role/entitlement modeling, certifications</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">CyberArk for privileged access workflows, vaulting, session controls</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">HashiCorp Vault (and related tooling) for secrets lifecycle and secure access patterns</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Strong scripting/automation capability (e.g., PowerShell, Python) and experience with IaC (e.g., Terraform) for scalable delivery.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Ability to produce high-quality technical documentation: diagrams, designs, standards, and implementation guides.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Excellent troubleshooting and analytical skills; ability to design for resiliency and failure modes.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Strong written and verbal communication skills with the ability to influence and lead across teams.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Comfortable leading technical delivery, mentoring others, and operating with minimal supervision in a complex environment.</span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><strong>Preferred Skills</strong></span></p><ul><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Experience with Zero Trust and modern conditional access/adaptive access patterns.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Experience integrating IAM telemetry into SIEM/SOAR and supporting identity threat detection/response workflows.</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Exposure to API management and service-to-service security patterns (mTLS, JWT validation, OAuth client credential flows).</span></li><li><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">Familiarity with AI/ML-driven identity controls and adaptive access tuning. </span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"> </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>Total Rewards:</strong>  </span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">We proudly offer competitive compensation, a comprehensive and well-rounded benefits package for full-time employees that have been designed to nourish your well-being, such as health coverage, wellness programs, 401K company match, self-managed PTO, and other unique incentives that celebrate your accomplishments.      </span></span></p><ul><li style="line-height:18.0px;margin-bottom:0.0px;margin-right:0.0px;margin-top:0.0px;padding:0.0px;"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">Remote and Hybrid Work</span></span></li><li style="line-height:18.0px;margin-bottom:0.0px;margin-right:0.0px;margin-top:0.0px;padding:0.0px;"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">Time Off When You Need It</span></span></li><li style="line-height:18.0px;margin-bottom:0.0px;margin-right:0.0px;margin-top:0.0px;padding:0.0px;"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">Benefits That Flex</span></span></li><li style="line-height:18.0px;margin-bottom:0.0px;margin-right:0.0px;margin-top:0.0px;padding:0.0px;"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">Professional Development  </span></span></li></ul><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">While benefits eligibility may vary for roles that are not full-time, we provide unique opportunities for growth, skill development, and more.  Regardless of your role, you’ll be part of a collaborative environment where every team member contributes to our shared success.  </span></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">Discover more about our benefits by exploring additional details here </span></span><a style="color:rgb(0,135,204);margin:0.0px;padding:0.0px;text-decoration:none;" href="https://benefitsatcentric.com/#xd_co_f=ZmYwYmJhNDUtYzhhNi00MWVmLTkzYzctNTYwMjIwZDE0ZTU1~"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">benefits</span></span></a><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><span style="margin:0.0px;padding:0.0px;">. </span></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;">  </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>Who We Are: </strong></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>Founded in 1999 with a remote workforce, we combine the benefits of experience, flexibility, and cost efficiency to create tailored solutions centered on what’s best for businesses.  Now numbering more than 1,400 employees in the U.S. and India, we’re committed to solving clients’ toughest problems and delivering on our mission of providing unmatched experiences.   </i></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>Our purpose at Centric Consulting is to bring </i></span><a href="https://centricconsulting.com/blog/fall15-enews-stlouis-creating-a-culture-of-unmatched-experiences/#xd_co_f=ZmYwYmJhNDUtYzhhNi00MWVmLTkzYzctNTYwMjIwZDE0ZTU1~"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>unmatched experiences</i></span></a><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i> to clients and employees. These aren't just words we use — it's how we became a company and who we are today. Providing an unmatched experience means we approach each other as human beings and lead with empathy and humility. It means we work diligently to ensure we are a place where everyone can create a sense of belonging and feel respected for who they are.  </i></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"> </span></p><p><span style="color:rgb(65,45,93);font-family:arial , helvetica , sans-serif;font-size:14.0pt;"><strong>What Makes Centric a Great Place to Work? </strong></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>We know that creating and sustaining an authentically welcoming culture requires that we all play a part in promoting </i></span><a href="https://centricconsulting.com/about-us/diversity-and-inclusion/"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>diversity, equity, and inclusion</i></span></a><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>, from our business practice to how we show up for employees and communities. This is how we bring our </i></span><a href="https://centricconsulting.com/about-us/why-were-here/"><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>mission and core values</i></span></a><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i> to life, working together to provide the highest quality services to our clients while allowing our employees to reach their full potential.  We are proud to be an equal opportunity employer.  All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veterans’ status, or any other characteristic protected by federal, state, or local laws.  </i></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>Reasonable accommodations are available for candidates during all aspects of the selection process. Please advise the talent acquisition team if you require accommodations during the application or interview process. </i></span></p><p><span style="font-family:arial , helvetica , sans-serif;font-size:12.0pt;"><i>#LI-Remote</i></span></p>

Back to blog