Technology Architect for Security, Identity and Resilience

Hi3G Access AB Stockholm, Stockholms län, Sverige Publicerat 18 september 2026
contractonsitesenior
For our client we are looking for a Technology Architect for Security, Identity and Resilience – Identity Access Management We are seeking a senior IAM Architect to provide immediate architecture leadership for an enterprise IAM transformation. The assignment combines enterprise-wide IAM direction with authorization architecture for a major transformation program. The consultant will establish the target state, resolve priority architecture questions and leave behind decisions, standards and roadmaps that delivery teams can apply. Assignment objectives Create a clear view of the current IAM landscape, material risks, dependencies and priority gaps. Define an enterprise IAM target architecture, supporting principles, reference patterns and an actionable roadmap. Lead authorization architecture for a major transformation program, covering roles, permissions, service identities and API access. Provide practical direction for identity lifecycle management, access governance and privileged access. Enable consistent application and platform onboarding through reusable architecture criteria and patterns. Prepare architecture decisions and recommendations for the relevant governance forums. Scope of responsibility Workforce, partner and external identity across Microsoft Entra ID, Active Directory and hybrid environments. Authentication and federation, including Single Sign-On, Multi-Factor Authentication and Conditional Access. Authorization models using role-based and attribute-based access control for applications, APIs and non-human identities. Identity Governance and Administration, including joiner, mover and leaver processes, access certification, access reviews, role lifecycle and compliance reporting. Privileged Access Management, including administrative access, emergency accounts, just-in-time access, service accounts, credentials and secrets. Alignment with Zero Trust, secure-by-design, auditability, resilience and applicable NIS2 requirements. Key interfaces and role boundaries The architect will work with enterprise architecture, cybersecurity, infrastructure, cloud platform, data, domain, solution and engineering stakeholders. The role is accountable for architecture direction, standards, patterns and decision support. Implementation, product ownership and operational IAM service ownership remain with the relevant delivery, platform and service-owning teams. Contractor deliverables and priorities Early assignment priorities Current-state IAM assessment and prioritized gap analysis. Target IAM architecture and transition roadmap. Authorization and enterprise role-model framework. Identity governance target model and lifecycle principles. Privileged-access strategy and service-account governance direction. Application onboarding standard, reference patterns and architecture decision records. Expected value from the assignment Faster and more consistent IAM decisions across strategic initiatives. Clear ownership boundaries for identity, authorization and access governance. Reduced risk of applications and teams implementing incompatible access models. Architecture guidance that can be translated into platform and engineering backlogs. A prioritized basis for future IAM investment and capability development. Contractor profile Senior experience in enterprise architecture, cybersecurity or IAM, including substantial focus on IAM architecture. Demonstrated delivery in large-scale IAM, cloud or security transformations. Deep experience with Microsoft Entra ID, Active Directory and hybrid identity. Practical knowledge of OAuth 2.0, OpenID Connect, SAML, SCIM, RBAC, ABAC, PAM, PIM, PKI, API security and secrets management. Experience with identity governance, access lifecycle automation, privileged access and non-human identities. Ability to convert strategic direction into clear decisions, standards, roadmaps and implementable reference patterns. Strong facilitation and stakeholder communication across business, security, architecture, platform and engineering teams. Important positioning This is an architecture assignment, not ownership of all IAM operations and not a substitute for cybersecurity, platform engineering, product ownership or solution delivery. Success depends on close collaboration and on clearly assigned implementation owners Startdatum: ASAP Slutdatum: Q1 2027, ca 6 månader Omfattning: 100% Ort: Stockholm Språk: Svenska och Engelska Vi offererar löpande och ärendet kan komma att stängas ner innan satt deadline. Under uppdraget kommer Ework Services (0,9%) att dras av från det totala fakturerade beloppet. Vänligen ansök direkt via vårt system med: - uppdaterat CV - timpris (inkl. omkostnader) - information kring tillgänglighet för att påbörja uppdraget

Findigo hittar jobben och fyller i ansökan. Du klickar Skicka.

Visa jobbet och ansök

Ursprunglig annons: app.verama.com