Favicon of METRO.digital

SailPoint Architect - IAM/IGA

at METRO.digital

As a Senior IGA Architect specializing in SailPoint Identity Security Cloud (ISC), you will shape and advance the global identity governance architecture. This role blends strategic architecture ownership with a hands-on, delivery-oriented mindset. You will define target architectures and standards, guide technical implementation, and support complex integrations across the enterprise. Your work ensures that architectural decisions are scalable, secure, and aligned with long-term business and technology strategies.

You will design sustainable architectures for hybrid and cloud environments, ensure consistency across IGA initiatives, and translate strategic IAM/IGA roadmaps into actionable architectural patterns. Collaboration with Enterprise Architecture, Security, HR IT, and various business functions is central to driving the global identity landscape forward.

Strategy, Architecture & Governance

  • Evolve and maintain the global IGA/IAM architecture strategy, aligned with Enterprise Architecture and Security.
  • Define architectural principles, standards, and target-state models for Identity Governance (SailPoint ISC), Access Management (Entra ID), and Privileged Access Management (PAM).
  • Design scalable, cloud-ready IAM/IGA architectures for hybrid environments.
  • Develop and maintain architectural blueprints, reference architectures, and technical guidelines.
  • Ensure architectural consistency across programs, projects, and regional deployments.

Architectural Control & Integration

  • Provide architectural leadership for IAM/IGA-related initiatives, with a focus on SailPoint ISC integrations.
  • Ensure adherence to architectural, security, and compliance standards.
  • Evaluate new requirements for architectural fit, scalability, and governance impact.
  • Support complex integrations (HR systems, directories, applications, PAM tools) from design through implementation.
  • Oversee onboarding of new systems into the IGA ecosystem, including connector design, lifecycle automation, and policy enforcement.
  • Assist with troubleshooting, root-cause analysis, and technical decision-making.
  • Work closely with engineering teams to ensure sustainable, maintainable implementations.

Identity Governance & Business Alignment

  • Advance identity governance models and access frameworks (RBAC, ABAC, business roles, access certifications).
  • Support integration of IGA into business processes across the identity lifecycle (Joiner, Mover, Leaver).
  • Incorporate regulatory requirements (SOX, ISO 27001, GDPR) and audit findings into architectural design.
  • Ensure alignment between business needs, security requirements, and technical capabilities.

Stakeholder Management & Innovation

  • Advise IT, business stakeholders, and leadership on strategic IAM/IGA decisions.
  • Conduct architectural reviews, design workshops, and technical deep dives.
  • Communicate complex technical concepts clearly to non-technical audiences.
  • Evaluate emerging technologies, trends, and best practices in IGA.
  • Mentor engineers to strengthen internal IAM/IGA capability.

Requirements

  • Degree in (Business) Informatics or equivalent qualifications.
  • 8+ years of experience in IAM/IGA.
  • Proven experience designing and implementing enterprise-scale IGA solutions, ideally with SailPoint ISC or IdentityIQ.
  • Strong understanding of Entra ID, directory services, and identity lifecycle automation.
  • Experience integrating complex enterprise systems into IGA platforms.
  • Ability to alternate between high-level architecture and hands-on technical work.
  • Deep knowledge of IAM/IGA standards and protocols: AD, LDAP, SAML, OAuth, OIDC.
  • Expertise with SailPoint ISC (or IIQ), including identity lifecycle automation, access request workflows, role modeling, connector frameworks, and policy and certification models.
  • Understanding of modern cloud architecture (Azure, AWS, GCP).
  • Familiarity with regulatory frameworks (SOX, ISO 27001, GDPR).
  • Excellent English skills.

Preferred Qualifications

  • Experience with Zero Trust architecture.
  • Manufacturer certifications (SailPoint, Microsoft, etc.).
  • Experience in global transformation programs or international environments.
  • Professional certifications such as CISSP, CISM, and CCSP.

**Soft Skills **

  • Strong conceptual and analytical thinking.
  • Ability to communicate complex topics clearly and in a structured manner.
  • High degree of independence, ownership, and accountability.
  • Team-oriented, pragmatic, and solution-driven working style.
Required Skills:
Azure AD / Entra IDSailPointSAMLOAuth 2.0OpenID Connect (OIDC)LDAPActive DirectoryZero Trust ArchitectureRole-Based Access Control (RBAC)Attribute-Based Access Control (ABAC)
Certifications:
Certified Information Systems Security Professional (CISSP)

Share:

Promote
  • Location


    Pune, IN
  • Job Type


    Full Time
  • Work Mode


    Hybrid
  • Experience


    Senior Level
  • Posted


    Jun 15, 2026
Ad
Favicon

 

  
 
Visit METRO.digital

Command Menu