About The Position

The Security Architect collaborates extensively with architecture, development, product, and additional teams across the organization to embed security considerations throughout the solution lifecycle, from initial design to final deployment. In this capacity, this role maintains close partnerships with Customer IAM, Workforce IAM, and application teams to design secure IAM workflows and enhance API authorization, among other responsibilities. The Security Architect is accountable for defining security requirements, conducting comprehensive security design assessments, and offering remediation and mitigation guidance—particularly with respect to workforce and customer identity and access.

Requirements

  • Experience with OAuth 2.0, OIDC, SAML, and federation patterns.
  • Ability to translate business requirements into secure, scalable identity designs.
  • Solid grasp of provisioning and attribute flows (e.g., SCIM) and how they intersect with authorization policy.
  • Working knowledge of token design (scopes/claims), mTLS/JWT validation patterns, token exchange, and session/security handling across SPs/IdPs.
  • Demonstrated depth in IAM security and 1 other security domains such as: API security, data security, network security, etc.
  • 5+ years' experience in information technology experience.
  • 1+ years' experience in an information security architectural role or equivalent engineering experience.
  • Strong writing and communication skills.
  • Equivalent experience required in lieu of a degree.

Nice To Haves

  • Familiarity with legacy federation stacks (e.g., ISAM) and migration to modern patterns.
  • Familiarity with Security life cycle, design review across concept, development through deployment.
  • Experience with threat models (all 7 layers), security analysis.
  • GIAC GDSA, SABSA or equivalent; IAM and/or AI related certs a plus.
  • Cloud security certs (AWS/Azure/OCI/ CCSP) helpful.

Responsibilities

  • Embed security considerations throughout the solution lifecycle, from initial design to final deployment.
  • Maintain close partnerships with Customer IAM, Workforce IAM, and application teams to design secure IAM workflows and enhance API authorization.
  • Define security requirements.
  • Conduct comprehensive security design assessments.
  • Offer remediation and mitigation guidance, particularly with respect to workforce and customer identity and access.
  • Communicate clearly in writing and verbally.
  • Influence cross-functional teams and executives.
  • Execute autonomously and manage time effectively.
  • Produce consumable technical docs (security requirement documents, security design patterns, reference architectures).
  • Present recommendations to diverse audiences.
  • Drive architecture into product groups and suppliers.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service