We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Identity and Access Management Architect- Manager

Crowe
A reasonable estimate of the current range is $104,500.00 - $213,800.00 per year.
United States, New York, New York
488 Madison Avenue (Show on map)
Jul 21, 2026

Your Journey at Crowe Starts Here:

At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you're trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and leadership. Over our 80-year history, delivering excellent service through innovation has been a core part of our DNA across our audit, tax, and consulting groups. That's why we continuously invest in innovative ideas, such as AI-enabled insights and technology-powered solutions, to enhance our services. Join us at Crowe and embark on a career where you can help shape the future of our industry.

Job Description:

Your Journey at Crowe Starts Here

At Crowe, you can build a meaningful and rewarding career. With flexibility, mobility, and significant growth opportunities, we empower our people to shape their own professional journeys. As a member of our Consulting Business Unit within the Cybersecurity market platform, you will collaborate with experienced U.S.-based leaders to deliver high-quality cybersecurity and identity and access management services.

We are seeking a Manager - Identity and Access Management Architect to join our Cybersecurity team. In this role, you will partner with client stakeholders and Crowe leadership to define and drive identity and access management (IAM) strategy, architecture, and roadmaps across complex environments. This role combines strategic leadership with hands-on solution design, engineering and client engagement, enabling organizations to secure identities, support business objectives, and enhance user experience. The ideal candidate brings a strong understanding of emerging identity technologies and leading practices, with the ability to translate business needs into scalable, integrated IAM solutions while contributing to broader cybersecurity and risk initiatives.

Job Description

As an IAM Architect, you will serve as a strategic and technical leader helping organizations design, implement, and mature enterprise IAM programs. You will work with clients across industries to modernize identity capabilities, strengthen security posture, and enable digital transformation across cloud, on-premises, and hybrid environments.

This role is ideal for professionals who thrive in a fast-paced consulting environment, enjoy solving complex enterprise challenges, and are passionate about delivering practical, high-impact identity solutions.

As part of a growing IAM practice, this role may also support broader cybersecurity and risk engagements. This provides the opportunity to expand exposure across domains such as IT risk, security assessments, and regulatory compliance while helping build and scale Crowe's identity capabilities.

Key Responsibilities

* Lead IAM strategy development, roadmap creation, and reference architecture design aligned to client business objectives.

* Define and deliver enterprise IAM architecture, including authentication, authorization, identity lifecycle management, and privileged access management.

* Advise clients on Zero Trust principles and identity-centric security strategies.

* Present IAM strategies, architectures, and findings to technical and executive stakeholders, including C-suite leadership.

* Design and implement IAM solutions across cloud (Azure, AWS, GCP), on-premises, and hybrid environments.

* Architect and integrate IAM platforms with enterprise applications, directories, APIs, and DevOps pipelines.

* Provide guidance on modern authentication and authorization approaches (e.g., SSO, MFA, passwordless, RBAC, ABAC).

* Lead or support implementation of modern identity and authorization platforms, including fine-grained authorization and entitlement visibility solutions.

* Design and guide API-driven integrations between IAM platforms and enterprise systems, leveraging REST-based services and identity data flows.

* Lead or support implementation efforts, including identity governance, provisioning, access reviews, and privileged access controls.

* Partner with clients to accelerate onboarding and adoption of IAM and authorization capabilities, including requirements gathering, solution design, and enablement.

* Conduct IAM risk assessments, threat modeling, and control evaluations; support remediation and continuous improvement.

* Support regulatory compliance and alignment with frameworks such as NIST, ISO, CIS, and industry-specific requirements.

* Apply IAM expertise within the context of enterprise cybersecurity programs, collaborating across domains such as GRC, cloud security, and data protection.

* Contribute to broader cybersecurity engagements, including risk assessments, IT control evaluations, and security program maturity assessments, as needed to support client delivery and practice growth.

* Collaborate with cross-functional teams including security, cloud, application development, and risk/compliance.

Qualifications

Required Experience

* Bachelor's degree in Information Systems, Computer Science, Cybersecurity, Engineering, or related field.

* 7+ years of experience in IAM, cybersecurity architecture, or related roles (consulting or industry).

* Proven experience designing and implementing enterprise IAM solutions across cloud and hybrid environments.

* Strong knowledge of authentication and federation standards (OAuth2, OIDC, SAML, SCIM, LDAP).

* Experience with identity governance, privileged access management, and identity lifecycle processes.

* Hands-on experience with leading IAM tools such as Entra ID (Azure AD), SailPoint, Saviynt, CyberArk, Ping Identity, Okta, or similar.

* Broad understanding of cybersecurity domains (e.g., risk management, IT controls, cloud security, or compliance frameworks).

* Familiarity with Zero Trust principles and modern identity security approaches (e.g., MFA, passwordless, RBAC/ABAC).

* Experience with API-based integrations and identity data flows (e.g., REST APIs, JSON, or similar patterns).

* Familiarity with scripting or automation (e.g., Python, SQL, or similar) to support identity integrations or data analysis.

* Experience supporting or leading IAM implementations, transformations, or program development efforts.

* Understanding of non-human identities (e.g., service accounts, APIs, workloads, AI agents) and emerging identity considerations for AI/automation, including governance of machine and agent-based access.

* Strong analytical, problem-solving, and stakeholder management skills.

* Strong communication skills with the ability to translate technical concepts into business terms and engage with senior stakeholders.

* Professional certifications such as CISSP, CISM, CRISC, or IAM/vendor-specific certifications.

Preferred Qualifications

* Experience in regulated industries (e.g., financial services, healthcare, government).

* Familiarity with AI/automation in cybersecurity or identity governance.

* Familiarity with workflow and governance platforms (e.g., ServiceNow), including support for identity-related processes such as access requests, approvals, and risk/compliance workflows.

We expect the candidate to uphold Crowe's values of Care, Trust, Courage, and Stewardship. These values define who we are. We expect all of our people to act ethically and with integrity at all times.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification form upon hire. Crowe is not sponsoring for work authorization at this time.

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Crowe, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $104,500.00 - $213,800.00 per year.

Our Benefits:
Your exceptional people experience starts here. At Crowe, we know that great peopleare what makes a great firm. We care about our people and offer employees a comprehensive total rewards package. Learn more about what working at Crowe can mean for you!

How You Can Grow:
We will nurture your talent in an inclusive culture that values diversity. You will have the chance to meet on a consistent basis with your Career Coach that will guide you in your career goals and aspirations. Learn more about where talent can prosper!

More about Crowe:
Crowe (www.crowe.com) is one of the largest public accounting, consulting and technology firms in the United States. Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services. Crowe is recognized by many organizations as one of the country's best places to work. Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world. The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.

Crowe LLP provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.

Crowe LLP does not accept unsolicited candidates, referrals or resumes from any staffing agency, recruiting service, sourcing entity or any other third-party paid service at any time. Any referrals, resumes or candidates submitted to Crowe, or any employee or owner of Crowe without a pre-existing agreement signed by both parties covering the submission will be considered the property of Crowe, and free of charge.

Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles' Fair Chance Initiative for Hiring Ordinance, Los Angeles County Fair Chance Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act.

Please visit our webpage to see notices of the various state and local Ban-the-Box laws and Fair Chance Ordinances, where applicable.

We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role's responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.

If you are interested in applying for employment with Crowe and are in need of an accommodation or require special assistance to navigate our website or to complete your application, please visit our Applicant Assistance and Accommodations page for more information: https://careers.crowe.com/crowe-applicant-assistance-and-accommodation

Applied = 0

(web-77cf7d65c7-jdxdg)