aig
Enterprise IAM Architect, Global
At a Glance
- Location
- Dublin, Ireland
- Employment
- Full time
- Posted
- 2026-05-21
Key Requirements
Domain Knowledge
- Cybersecurity
Benefits & Perks
Rewards Program, a comprehensive benefits package that extends beyond time spent
Requirements
in depth experience in cybersecurity and/or identity architecture (IAM/CIAM), including enterprise-scale transformation
Proven experience defining enterprise IAM/CIAM strategy, target-state architecture, and roadmaps
Experience working effectively with PMO/program governance functions
Experience working with system integrators and consultancies, including architectural oversight and design authority engagement
Strong knowledge of workforce and/or customer identity platforms and controls—examples include Entra ID, hybrid AD, Intune, Windows Hello for Business, Okta, SailPoint IIQ, HYPR (or equivalent)
Knowledge of industry frameworks (NIST, ISO/IEC) and control-driven design in regulated environments
Compensation & Benefits
At AIG, our people are our greatest asset. We know how important it is to protect and invest in what’s most important to you. That is why we created our Total Rewards Program, a comprehensive benefits package that extends beyond time spent at work to offer benefits focused on your health, wellbeing and financial security—as well as your professional development—to bring peace of mind to you and your family.
Responsibilities
Identity & Access Architecture & Control Design
Define the workforce IAM and CIAM target state architectures, controls, standards, principles, and design patterns
Develop identity response strategies for emerging technologies, including IAM implications for Agentic AI and autonomous systems (e.g.
Authentication & Endpoint-Integrated Identity
Define and steer phishing-resistant and passwordless strategy (e.g., FIDO2/WebAuthn, device-bound authentication, platform authenticators)
Define endpoint-integrated trust models in partnership with endpoint/EUC teams (e.g., Intune device posture, compliant device enforcement, conditional access integration)