Principal Cybersecurity Architect-IAM
Listed on 2026-01-13
-
IT/Tech
Cybersecurity
Take your engineering expertise to new heights by joining a team of exceptionally talented professionals and solidify your place among top performers in the industry.
As a Principal Cybersecurity Architect at JPMorgan Chase within the Cybersecurity and Tech Controls, you will lead the strategic design, implementation, and governance of enterprise-wide Identity and Access Management (IAM) solutions. The position demands extensive hands‑on experience with leading IAM technologies, deep knowledge of security architecture, and a proven ability to drive cross‑functional collaboration. This role is critical in ensuring the organization’s digital assets are protected through robust authentication, authorization, and risk management practices.
Jobresponsibilities
- Define and drive the IAM strategy, architecture, and roadmap to support business objectives and regulatory requirements.
- Architect, implement, and oversee large‑scale IAM systems using tools such as Entra , Forge Rock, Ping, ADFS, SailPoint, Okta, Active Directory, and Veza.
- Lead the design and deployment of Public Key Infrastructure (PKI) solutions, including ACME protocol integration and certificate management.
- Conduct advanced threat modeling and risk assessments to identify vulnerabilities and recommend mitigation strategies.
- Develop and maintain comprehensive security architecture documentation, including IAM design patterns, technical standards, and best practices.
- Implement and manage IAM protocols and standards such as RBAC, OAuth
2.0, SCIM, Authentication, WebAuthN, Authorization, OPA, and PBAC. - Partner with engineering, application, infrastructure, and business teams to ensure IAM solutions are aligned with organizational goals and integrated seamlessly.
- Apply advanced security principles, including encryption, data security, and risk management, to all IAM solutions and processes.
- Stay abreast of emerging IAM technologies and security trends, recommending and implementing improvements to enhance security posture.
- Produce clear, detailed documentation and communicate complex technical concepts effectively to both technical and non‑technical stakeholders.
- Formal training or certification on security concepts and 10+ years applied experience with a focus on IAM architecture and implementation.
- Demonstrated success in leading large-scale IAM projects in complex environments.
- Extensive hands‑on experience with IAM tools:
Entra , Forge Rock, Ping, ADFS, SailPoint, Okta, Active Directory, Veza. - Strong background in PKI development and ACME protocol.
- Proficient in threat modeling and risk assessment methodologies.
- Deep understanding of encryption, data security, and risk management.
- Expertise in IAM principles: RBAC, OAuth
2.0, SCIM, Authentication, WebAuthN, Authorization, OPA, PBAC. - Proven ability to lead and influence cross‑functional teams.
- Experience mentoring and guiding junior architects and engineers.
- Exceptional verbal and written communication skills.
- Strong documentation skills for technical and business audiences.
- Relevant certifications (e.g., CISSP, CISM, or vendor‑specific IAM certifications)
- Strategic thinker with a proactive approach to problem‑solving.
- Strong organizational and project management skills.
- Commitment to continuous learning and professional development.
#CTC
JPMorgan
Chase, one of the oldest financial institutions, offers innovative financial solutions to millions of consumers, small businesses and many of the world’s most prominent corporate, institutional and government clients under the J.P. Morgan and Chase brands. Our history spans over 200 years and today we are a leader in investment banking, consumer and small business banking, commercial banking, financial transaction processing and asset management.
We offer a competitive total rewards package including base salary determined based on the role, experience, skill set and location. Those in eligible roles may receive commission‑based pay and/or discretionary incentive compensation, paid in the form of cash and/or forfeitable equity, awarded in recognition of individual…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).