About The Position

Become a part of our caring community and help us put health first The Lead IGA Security Architect is the enterprise authority for Identity Governance & Administration (IGA) and serves as the strategic owner for how digital identities, access rights, and entitlements are governed across the organization. This role defines the architectural vision, standards, and integration patterns for the full identity ecosystem—with a particular emphasis on enterprise wide source application integrations, which are foundational to identity lifecycle automation, governance accuracy, and access risk reduction. This position plays a mission critical role in ensuring that identity data from HRIS, ERP, directories, cloud platforms, and business applications is accurately ingested, normalized, and governed. The Lead IGA Security Architect operates with broad autonomy, advising executives, influencing strategic direction, collaborating with cross functional teams, and solving complex identity challenges that have material impact on security, compliance, and operational efficiency. Architectural Strategy & Leadership Define the enterprise IGA strategy, reference architecture, and multi‑year roadmap. Establish standards for identity lifecycle processes (joiner/mover/leaver), birthright access, provisioning/deprovisioning, and entitlement governance. Lead architectural oversight of the IGA platform, ensuring scalability, reliability, and alignment with Zero Trust and broader cybersecurity strategy. Provide expert guidance to senior leadership on identity governance maturity, risk, gaps, and required investments. Enterprise Source System & Application Integration Ownership Serve as the primary architect responsible for all enterprise source system integrations that supply identity, access, and entitlement data into the IGA ecosystem—including HRIS platforms, ERP systems, custom business applications, directories, cloud services, and SaaS platforms. Develop integration patterns, data models, mapping standards, and authoritative source configurations that ensure high‑quality, accurate, and consistent identity data across the enterprise. Oversee the full lifecycle of integration design—from requirements gathering and data profiling to connector architecture, API development standards, SCIM usage, event‑driven identity flows, and validation of downstream provisioning. Ensure integration reliability, failover design, data quality checks, exception handling, and governance controls for all identity‑related data pipelines. Prioritize and manage integration onboarding at an enterprise scale, ensuring the IGA platform expands in pace with business, application, and cloud adoption. Partner with application owners, HR, IT operations, and engineering teams to ensure integrations meet compliance, risk, and architectural requirements. Identity Governance Design & Engineering Architect enterprise RBAC, ABAC, and policy‑based access models. Design access certification frameworks, segregation‑of‑duties controls, and entitlement governance standards. Oversee provisioning workflows, connector logic, identity data transformation, and workflow automation. Ensure identity policies are aligned with regulatory and audit requirements. Compliance, Audit, & Risk Management Ensure identity governance practices support SOX, HIPAA, PCI, ISO 27001, NIST, and internal controls requirements. Develop identity governance controls that reduce audit findings and enhance entitlement hygiene. Partner with Internal Audit and Risk to interpret regulatory expectations and translate them into IGA patterns and workflows.

Requirements

  • SailPoint Certified IdentityNow Engineer certification, demonstrating validated expertise in configuring, implementing, and supporting SailPoint Identity Security Cloud (ISC) solutions.
  • 5+ years of hands‑on experience in software engineering, identity implementation, or technical solution delivery, with the ability to design, build, and support identity and access‑related systems.
  • Direct, hands‑on experience with SailPoint Identity Security Cloud (ISC), including configuration, integration, lifecycle workflows, and identity governance capabilities.
  • Experience supporting enterprise customers or internal stakeholders, including leading implementations, managing platform maturity, and driving successful outcomes through structured reviews or engagement cycles.
  • Strong background in developing tools, utilities, or automation to support application onboarding, data migration, bulk import/export processes, or publishing workflows.
  • Proficiency with system and application integrations, including working with APIs, data mapping, and connector or integration‑focused engineering.
  • Experience managing code repositories and version‑control processes, including repository governance, build/publish workflows, or application/package oversight.
  • Ability to serve as the primary owner for internal systems or operational technologies, demonstrating accountability for system reliability, support, and cross‑team collaboration.
  • Strong independent problem‑solving ability, including analyzing complex technical challenges and determining appropriate architectural or engineering solutions with minimal oversight.
  • Excellent written and verbal communication skills, with the ability to collaborate effectively across engineering, operations, and business teams and translate technical concepts into clear, actionable guidance.

Nice To Haves

  • Advanced hands‑on experience with SailPoint Identity Security Cloud (ISC), including complex connector development, custom workflows, policy configuration, and lifecycle orchestration.
  • Experience designing or implementing IGA governance models, including RBAC, ABAC, birthright access policies, access certification campaigns, and separation‑of‑duties controls.
  • Background building or architecting enterprise‑scale identity integrations, including HR systems, ERP platforms, SaaS applications, and cloud environments such as Azure, AWS, or GCP.
  • Familiarity with identity standards and protocols such as SCIM, SAML, OAuth, OIDC, REST APIs, and event‑driven patterns.
  • Experience leading technical design sessions, integration workshops, or architecture reviews with cross‑functional teams.
  • Prior responsibility for establishing, governing, or optimizing identity data models, authoritative sources, and identity lifecycle processes.
  • Experience with DevOps practices related to identity platforms, including version control, CI/CD workflows, automated testing, or infrastructure‑as‑code related to IAM/IGA.
  • Professional certifications such as CISSP, CISM, Microsoft/Azure Security certifications, or SailPoint‑specific certifications.
  • Demonstrated ability to mentor engineering staff and influence standards, best practices, and long‑term architectural direction.

Responsibilities

  • Define the enterprise IGA strategy, reference architecture, and multi‑year roadmap.
  • Establish standards for identity lifecycle processes (joiner/mover/leaver), birthright access, provisioning/deprovisioning, and entitlement governance.
  • Lead architectural oversight of the IGA platform, ensuring scalability, reliability, and alignment with Zero Trust and broader cybersecurity strategy.
  • Provide expert guidance to senior leadership on identity governance maturity, risk, gaps, and required investments.
  • Serve as the primary architect responsible for all enterprise source system integrations that supply identity, access, and entitlement data into the IGA ecosystem—including HRIS platforms, ERP systems, custom business applications, directories, cloud services, and SaaS platforms.
  • Develop integration patterns, data models, mapping standards, and authoritative source configurations that ensure high‑quality, accurate, and consistent identity data across the enterprise.
  • Oversee the full lifecycle of integration design—from requirements gathering and data profiling to connector architecture, API development standards, SCIM usage, event‑driven identity flows, and validation of downstream provisioning.
  • Ensure integration reliability, failover design, data quality checks, exception handling, and governance controls for all identity‑related data pipelines.
  • Prioritize and manage integration onboarding at an enterprise scale, ensuring the IGA platform expands in pace with business, application, and cloud adoption.
  • Partner with application owners, HR, IT operations, and engineering teams to ensure integrations meet compliance, risk, and architectural requirements.
  • Architect enterprise RBAC, ABAC, and policy‑based access models.
  • Design access certification frameworks, segregation‑of‑duties controls, and entitlement governance standards.
  • Oversee provisioning workflows, connector logic, identity data transformation, and workflow automation.
  • Ensure identity policies are aligned with regulatory and audit requirements.
  • Ensure identity governance practices support SOX, HIPAA, PCI, ISO 27001, NIST, and internal controls requirements.
  • Develop identity governance controls that reduce audit findings and enhance entitlement hygiene.
  • Partner with Internal Audit and Risk to interpret regulatory expectations and translate them into IGA patterns and workflows.

Benefits

  • Humana provides medical, dental and vision benefits, 401(k) retirement savings plan, time off (including paid time off, company and personal holidays, volunteer time off, paid parental and caregiver leave), short-term and long-term disability, life insurance and many other opportunities.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service