IAM Architect Brooklyn NY

ESRhealthcare and EXEC STAFF RECRUITERSNew York, NY
Onsite

About The Position

We are seeking an experienced IAM Architect to join our team in Brooklyn, NY. This is a long-term position focused on designing, engineering, administering, and operating Identity and Access Management solutions. The role requires deep expertise in directory services, PKI, and modern authentication protocols, with a strong emphasis on Active Directory, Entra ID, and Microsoft PKI. The ideal candidate will also have experience in security roadmap development, risk assessment, and compliance, along with excellent documentation and communication skills.

Requirements

  • 12 years in IAM architect, engineering, administration and operations with focus on directory services and PKI.
  • Deep expertise in Active Directory (on-prem and hybrid), Entra ID, and eDirectory.
  • Hands-on experience in designing and operating Microsoft PKI, including certificate authority management, certificate lifecycle, and automation.
  • Solid understanding of modern authentication/authorization protocols (OAuth, SAML, Kerberos, etc.).
  • Experience with security roadmap development, risk assessment, and compliance (NIST, ISO, SOX or PCI-DSS).
  • Strong documentation, communication, and stakeholder management skills.

Nice To Haves

  • Experience with cloud PKI services.
  • Familiarity with Entra ID Governance, Conditional Access Policy, and modern security controls.
  • Experience automating PKI workflows (API/script-based certificate management).
  • Multi-forest, multi-tenant IAM architecture expertise.
  • Prior experience working with NYC agency.
  • Working knowledge of enterprise ITSM, change management, and project management methodologies.

Responsibilities

  • Architect, engineer, administer, and operate Identity and Access Management (IAM) solutions.
  • Focus on directory services and Public Key Infrastructure (PKI).
  • Design and operate Microsoft PKI, including certificate authority management, certificate lifecycle, and automation.
  • Develop security roadmaps, conduct risk assessments, and ensure compliance with relevant standards (NIST, ISO, SOX, PCI-DSS).
  • Manage documentation, communication, and stakeholder relationships.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service