About the Role
As a member of our Consulting Business Unit within the Cybersecurity market platform, you will collaborate with experienced U.S.-based leaders to deliver high-quality cybersecurity and identity and access management services. We are seeking a Manager – Identity and Access Management Architect to join our Cybersecurity team. In this role, you will partner with client stakeholders and Crowe leadership to define and drive identity and access management (IAM) strategy, architecture, and roadmaps across complex environments. This role combines strategic leadership with hands-on solution design, engineering and client engagement, enabling organizations to secure identities, support business objectives, and enhance user experience. The ideal candidate brings a strong understanding of emerging identity technologies and leading practices, with the ability to translate business needs into scalable, integrated IAM solutions while contributing to broader cybersecurity and risk initiatives.
Responsibilities
- Lead IAM strategy development, roadmap creation, and reference architecture design aligned to client business objectives.
- Define and deliver enterprise IAM architecture, including authentication, authorization, identity lifecycle management, and privileged access management.
- Advise clients on Zero Trust principles and identity-centric security strategies.
- Present IAM strategies, architectures, and findings to technical and executive stakeholders, including C-suite leadership.
- Design and implement IAM solutions across cloud (Azure, AWS, GCP), on-premises, and hybrid environments.
- Architect and integrate IAM platforms with enterprise applications, directories, APIs, and DevOps pipelines.
- Provide guidance on modern authentication and authorization approaches (e.g., SSO, MFA, passwordless, RBAC, ABAC).
- Lead or support implementation of modern identity and authorization platforms, including fine-grained authorization and entitlement visibility solutions.
- Design and guide API-driven integrations between IAM platforms and enterprise systems, leveraging REST-based services and identity data flows.
- Lead or support implementation efforts, including identity governance, provisioning, access reviews, and privileged access controls.
- Partner with clients to accelerate onboarding and adoption of IAM and authorization capabilities, including requirements gathering, solution design, and enablement.
- Conduct IAM risk assessments, threat modeling, and control evaluations; support remediation and continuous improvement.
- Support regulatory compliance and alignment with frameworks such as NIST, ISO, CIS, and industry-specific requirements.
- Apply IAM expertise within the context of enterprise cybersecurity programs, collaborating across domains such as GRC, cloud security, and data protection.
- Contribute to broader cybersecurity engagements, including risk assessments, IT control evaluations, and security program maturity assessments, as needed to support client delivery and practice growth.
- Collaborate with cross-functional teams including security, cloud, application development, and risk/compliance.
Requirements
- Bachelor’s degree in Information Systems, Computer Science, Cybersecurity, Engineering, or related field.
- 7+ years of experience in IAM, cybersecurity architecture, or related roles (consulting or industry).
- Proven experience designing and implementing enterprise IAM solutions across cloud and hybrid environments.
- Strong knowledge of authentication and federation standards (OAuth2, OIDC, SAML, SCIM, LDAP).
- Experience with identity governance, privileged access management, and identity lifecycle processes.
- Hands-on experience with leading IAM tools such as Entra ID (Azure AD), SailPoint, Saviynt, CyberArk, Ping Identity, Okta, or similar.
- Broad understanding of cybersecurity domains (e.g., risk management, IT controls, cloud security, or compliance frameworks).
- Familiarity with Zero Trust principles and modern identity security approaches (e.g., MFA, passwordless, RBAC/ABAC).
- Experience with API-based integrations and identity data flows (e.g., REST APIs, JSON, or similar patterns).
- Familiarity with scripting or automation (e.g., Python, SQL, or similar) to support identity integrations or data analysis.
- Experience supporting or leading IAM implementations, transformations, or program development efforts.
- Understanding of non-human identities (e.g., service accounts, APIs, workloads, AI agents) and emerging identity considerations for AI/automation, including governance of machine and agent-based access.
- Strong analytical, problem-solving, and stakeholder management skills.
- Strong communication skills with the ability to translate technical concepts into business terms and engage with senior stakeholders.
- Professional certifications such as CISSP, CISM, CRISC, or IAM/vendor-specific certifications.
- Experience in regulated industries (e.g., financial services, healthcare, government).
- Familiarity with AI/automation in cybersecurity or identity governance.
- Familiarity with workflow and governance platforms (e.g., ServiceNow), including support for identity-related processes such as access requests, approvals, and risk/compliance workflows.
- Uphold Crowe’s values of Care, Trust, Courage, and Stewardship.
- Act ethically and with integrity at all times.
- Verify identity and eligibility to work in the United States and complete the required employment eligibility verification form upon hire.
- Consideration for employment will be given to all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws.
Skills
- Identity and Access Management (IAM)
- Cybersecurity Architecture
- Authentication
- Authorization
- Identity Lifecycle Management
- Privileged Access Management
- Zero Trust Principles
- Cloud Security (Azure, AWS, GCP)
- API Integration
- DevOps Pipelines
- SSO
- MFA
- Passwordless Authentication
- RBAC
- ABAC
- REST APIs
- JSON
- Python
- SQL
- Risk Assessment
- Threat Modeling
- Regulatory Compliance (NIST, ISO, CIS)
- GRC
- Data Protection
- OAuth2
- OIDC
- SAML
- SCIM
- LDAP
- Entra ID (Azure AD)
- SailPoint
- Saviynt
- CyberArk
- Ping Identity
- Okta
- ServiceNow
Location
- United States
Work Type
- Full-time
- Consulting
Experience Level
- Manager
- 7+ years of experience
Education Level
- Bachelor’s degree
Salary/Compensations
- $104,500.00 - $213,800.00 per year
Benefits
- Comprehensive total rewards package
- Career Coach guidance
About the Company
- Crowe is one of the largest public accounting, consulting and technology firms in the United States.
- Crowe uses its deep industry expertise to provide audit services to public and private entities while also helping clients reach their goals with tax, advisory, risk and performance services.
- Crowe is recognized by many organizations as one of the country's best places to work.
- Crowe serves clients worldwide as an independent member of Crowe Global, one of the largest global accounting networks in the world.
- The network consists of more than 200 independent accounting and advisory services firms in more than 130 countries around the world.
Equal Opportunity
- Crowe LLP provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, sexual orientation, gender identity or expression, genetics, national origin, disability or protected veteran status, or any other characteristic protected by federal, state or local laws.
- Crowe will consider for employment all qualified applicants, including those with criminal histories, in a manner consistent with the requirements of applicable state and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, Los Angeles County Fair Chance Ordinance, San Francisco Fair Chance Ordinance, and the California Fair Chance Act.
- We are committed to a merit-based hiring process, evaluating all candidates consistently using objective, job-related criteria such as relevant experience, demonstrated skills, measurable impact, and alignment with the role’s responsibilities, and making employment decisions in a fair and inclusive manner free from discrimination.
