About The Position

What’s Unique About You Is What Makes Us Better! Diversity is our strength and competitive advantage. Bring your flavor to the Papa John's team today! Job Summary The Senior Manager, Identity and Access Management (IAM) Architecture is the enterprise leader responsible for designing, guiding, and helping implement a secure, resilient, and scalable identity infrastructure within a Microsoft-centric environment. This role owns architectural direction across Microsoft Entra ID, on-premises Active Directory, Privileged Access Management (PAM), SSO, MFA, identity governance, and modern authentication services. As a hybrid leadership and technical execution position, this role will both direct the work of IAM engineers/architects and roll up their sleeves to execute hands-on engineering and design tasks when needed. The Senior Manager plays a critical part in advancing Zero Trust identity principles, securing privileged access, and modernizing identity services across the enterprise. Duties and Responsibilities (other duties as assigned) Identity Architecture Leadership Lead the development and evolution of IAM architecture across Microsoft Entra ID, on-premises AD, hybrid identity, and associated platforms. Define and maintain IAM architectural standards, reference architectures, and roadmaps aligned with Zero Trust and enterprise security goals. Provide deep technical expertise in identity protocols, directory design, federation, conditional access, and authentication modernization. Partner with Enterprise Architecture to align identity services with overall technology strategy. Hands-On Technical Execution Architect and implement identity modernization solutions including SSO, MFA, passwordless, Conditional Access, Identity Governance, and lifecycle automation. Lead or support engineering implementation of identity integrations with SaaS, custom apps, and third-party systems. Perform hands-on configuration, troubleshooting, and optimization of identity services where needed. Oversee and contribute to AD hardening, identity baselining, and Tier-0 security enforcement. Privileged Access & Zero Trust Identity Controls Architect and lead implementation of Privileged Access Management programs, including Entra PIM and on-prem PAM tools (CyberArk, BeyondTrust, etc.). Drive segmentation and protection of Tier-0 assets, domain controllers, and identity infrastructure. Ensure strong monitoring, logging, and detection capabilities around identity threats and privileged access. Team & Cross-Functional Leadership Lead and mentor IAM architects and engineers, providing guidance, oversight, and technical direction. Collaborate closely with security, cloud, infrastructure, and application teams to ensure aligned identity practices. Drive project execution, ensuring architectural quality, security, and operational readiness. Serve as the escalation point for complex identity issues. Governance, Risk, & Compliance Ensure IAM architecture aligns with risk, compliance, and audit requirements (for example—SOX, PCI-DSS, CIS). Establish and enforce identity lifecycle governance, access review processes, and identity data quality standards. Stay current on emerging technologies, industry trends, and Microsoft identity advancements. Everybody loves pizza, which means they also love the people who are behind the scenes working to deliver it. This is complex and challenging work – but let’s face it – it’s also pizza! If you want a fulfilling career with a company that’s always moving forward, we’re the right place. Papa John's is a Federal Contract employer who participates in E-Verify to confirm employment eligibility for each new team member. For more information please view the following PDFs: E-Verify Poster (English) - Right to Work Poster (English) - E-Verify Poster (Spanish) - Right to Work Poster (Spanish) Papa John's is an Affirmative Action and Equal Opportunity Employer. For more information please click on the following PDF. See terms & conditions for site use. At Papa John's, we LOVE pizza. It brings people together and brings out the best in all of us. Just like our ingredients and toppings, we combine in unique ways to deliver a truly tantalizing result. Here, you're a valued team member right from the start. We want you to contribute your best ideas, collaborate and keep building your skills.

Responsibilities

  • Lead the development and evolution of IAM architecture across Microsoft Entra ID, on-premises AD, hybrid identity, and associated platforms.
  • Define and maintain IAM architectural standards, reference architectures, and roadmaps aligned with Zero Trust and enterprise security goals.
  • Provide deep technical expertise in identity protocols, directory design, federation, conditional access, and authentication modernization.
  • Partner with Enterprise Architecture to align identity services with overall technology strategy.
  • Architect and implement identity modernization solutions including SSO, MFA, passwordless, Conditional Access, Identity Governance, and lifecycle automation.
  • Lead or support engineering implementation of identity integrations with SaaS, custom apps, and third-party systems.
  • Perform hands-on configuration, troubleshooting, and optimization of identity services where needed.
  • Oversee and contribute to AD hardening, identity baselining, and Tier-0 security enforcement.
  • Architect and lead implementation of Privileged Access Management programs, including Entra PIM and on-prem PAM tools (CyberArk, BeyondTrust, etc.).
  • Drive segmentation and protection of Tier-0 assets, domain controllers, and identity infrastructure.
  • Ensure strong monitoring, logging, and detection capabilities around identity threats and privileged access.
  • Lead and mentor IAM architects and engineers, providing guidance, oversight, and technical direction.
  • Collaborate closely with security, cloud, infrastructure, and application teams to ensure aligned identity practices.
  • Drive project execution, ensuring architectural quality, security, and operational readiness.
  • Serve as the escalation point for complex identity issues.
  • Ensure IAM architecture aligns with risk, compliance, and audit requirements (for example—SOX, PCI-DSS, CIS).
  • Establish and enforce identity lifecycle governance, access review processes, and identity data quality standards.
  • Stay current on emerging technologies, industry trends, and Microsoft identity advancements.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Education Level

No Education Listed

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service