Reinsurance Group of America Logo

Reinsurance Group of America

Principal IAM Architect

Posted 4 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in Missouri
151K-225K Annually
Senior level
Remote
Hiring Remotely in Missouri
151K-225K Annually
Senior level
The Principal IAM Architect is responsible for leading the design and improvement of enterprise-wide identity management systems, ensuring security integration across environments and collaborating with various teams to elevate security maturity while meeting regulatory requirements.
The summary above was generated by AI

You desire impactful work.
 

You’re RGA ready

RGA is a purpose-driven organization working to solve today’s challenges through innovation and collaboration. A Fortune 200 Company and listed among its World’s Most Admired Companies, we’re the only global reinsurance company to focus primarily on life- and health-related solutions. Join our multinational team of intelligent, motivated, and collaborative people, and help us make financial protection accessible to all.

The Principal Security Architect, IAM & Zero Trust is a strategic and technical leader responsible for designing, governing, and continuously improving enterprise-wide architecture. This role ensures security is embedded throughout the system and product development lifecycles, applying secure-by-design and zero trust principles across hybrid, cloud-native, and on-premises environments. The Identity Access Management Architect proactively anticipates evolving threats, translates complex risks into actionable strategies, and operationalizes controls that are scalable, resilient, and measurable. Through deep collaboration with engineering, business, and infrastructure teams, this role elevates the organization’s security maturity and enables adaptive defenses that support business growth and regulatory compliance.

Principal Duties

  • Define and maintain the enterprise IAM strategy, ensuring alignment with cyber security, zero-trust, and regulatory requirements.

  • Design end-to-end identity architectures, including authentication, authorization, directory services, privileged access, and lifecycle management.

  • Lead implementation of IAM technologies, such as SSO, MFA, PAM, IGA, federation, and identity governance platforms.

  • Establish identity standards and reference architectures, covering protocols like SAML, OAuth, OpenID Connect, SCIM, LDAP, Kerberos.

  • Ensure security integration of applications within cloud, on premise, and hybrid, int enterprise identity services

  • Drive identity lifecycle processes, ensuring proper onboarding, role provisioning, separation of duties, and time de-provisioning.

  • Conduct architecture reviews and threat modeling for identity-related risks, including account compromise, session hijacking, and privilege escalation.

  • Partner with security engineering, cloud, and app teams to embed IAM security controls into development and deployment pipelines.

  • Oversee identity governance and compliance, ensuring adherence to RGA policies, standards, and local laws, regulations, and adopted security frameworks.

  • Evaluate and recommend IAM tools, vendors, and emerging technologies, ensuring they meet RGAs enterprise standards.

  • Provide technical leadership and guidance to fellow architects and engineers.

  • Monitor identity threat landscape and guide adoption of modern defenses such as conditional access, continuous authentication, and identity threat detection and response.

Required Qualifications

  • 8+ years of experience in cybersecurity, with at least 6+ years focused on IAM architecture, engineering, or operations.

  • Expert knowledge of identity standards and protocols, including SAML 2.0, OAuth 2.0, OpenID Connect, SCIM, LDAP, Kerberos, and PKI.

  • Hands-on experience with major IAM platforms, such as Azure AD / Entra ID, Okta, SailPoint, CyberArk, etc.

  • Strong understanding of Zero Trust principles, identity governance, privileged access, and modern access control models (RBAC, ABAC, PBAC, JIT).

  • Proven ability to design enterprise‑scale IAM architectures across cloud (AWS/Azure/GCP), on‑prem, and hybrid environments.

  • Deep knowledge of enterprise directory services, identity lifecycle automation, and group/role modeling.

  • Experience integrating applications (SaaS, custom, legacy, APIs, microservices) into centralized identity systems.

  • Solid understanding of regulatory frameworks such as SOX, HIPAA, PCI-DSS, ISO 27001, and NIST 800‑53, and how they apply to identity controls.

  • Strong background in threat modeling, particularly around authentication, authorization, credential management, and session security.

  • Proficiency in scripting or automation (PowerShell, Python, REST APIs) for identity lifecycle and governance operations.

  • Experience implementing MFA, conditional access, password-less authentication, and identity threat detection.

  • Excellent communication and leadership skills, with the ability to influence technical and non‑technical stakeholders.

  • Bachelor’s in Computer Science, Cybersecurity, Information Systems, or related field, or equivalent experience. Master's and/or relevant certifications preferred (CISSP, CISM, CCSP, GIAC, Azure/AWS security, Okta or SailPoint certifications).

#LI-CW1

#LI-Remote

What you can expect from RGA:

  • Gain valuable knowledge from and experience with diverse, caring colleagues around the world.

  • Enjoy a respectful, welcoming environment that fosters individuality and encourages pioneering thought.

  • Join the bright and creative minds of RGA, and experience vast, endless career potential.

We’re excited to get to know you and connect your unique skills with our global opportunities. To create a modern and seamless experience, we use artificial intelligence (AI) in parts of our preliminary screening process. This technology helps us personalize job recommendations, automate interview scheduling, evaluate candidates based solely on experience—without considering name, gender, or other personal details—and provide real-time answers through our chatbot. AI is used only during early screening and never makes hiring decisions. Your RGA recruiter will work closely with you every step of the way to ensure the process feels personal, thoughtful, and focused on you.

Compensation Range:

$150,770.00 - $224,640.00 Annual

Base pay varies depending on job-related knowledge, skills, experience and market location. In addition, RGA provides an annual bonus plan that includes all roles and some positions are eligible for participation in our long-term equity incentive plan. RGA also maintains a full range of health, retirement, and other employee benefits.

RGA is an equal opportunity employer. Qualified applicants will be considered without regard to race, color, age, gender identity or expression, sex, disability, veteran status, religion, national origin, or any other characteristic protected by applicable equal employment opportunity laws.

Top Skills

Azure Ad
Cyberark
Iam
Iga
Kerberos
Ldap
Mfa
Oauth
Okta
Openid Connect
Pam
Pki
Powershell
Python
Rest Apis
Sailpoint
SAML
Scim
Sso

Similar Jobs

3 Hours Ago
Remote
United States
200K-250K Annually
Expert/Leader
200K-250K Annually
Expert/Leader
Artificial Intelligence • Edtech • Machine Learning • Natural Language Processing • Social Impact
Lead end-to-end finance operations for a growth-stage SaaS company, overseeing accounting, FP&A, revenue recognition, cash and liquidity planning, compliance, and auditing. Partner with CEO and cross-functional leaders on strategy, pricing, HR/PeopleOps and RevOps, build financial models, KPIs, and dashboards, and scale finance processes and team members to support rapid growth.
3 Hours Ago
Remote
United States
180K-210K Annually
Senior level
180K-210K Annually
Senior level
Software • Defense
Lead and sustain Onebrief's governance, risk, and compliance program: manage NIST RMF lifecycle, maintain authorization packages, automate control testing and evidence collection, coordinate assessments and audits, advise on secure architecture, conduct risk and supply-chain assessments, and develop employee cybersecurity training.
Top Skills: Automated Evidence Collection/TestingCloud-NativeDod Cloud Computing Security Requirements GuideEmassFedramp HighGrc PlatformsIso 27001Nist RmfNist Sp 800-171Stigs
3 Hours Ago
Easy Apply
Remote
United States
Easy Apply
Senior level
Senior level
Enterprise Web • Mobile • Professional Services • Software
As an Account Director at Dscout, you'll drive new business, expand client relationships, and secure renewals through consultative sales, aiming for long-term growth.

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account