bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesArctiqLead IAM Specialist - Remote Contract

Lead IAM Specialist - Remote Contract

Arctiq · Remote · Active · BambooHR

Job facts

FieldValue
CompanyArctiq
TitleLead IAM Specialist - Remote Contract
Normalized title-
Department / teamDelivery - Staff Aug
LocationPhiladelphia, PA, United States
Work modelRemote / Remote
Employment typeContract
Salary-
Statusactive
ATS providerBambooHR
Posted / first seen2026-06-01 / 2026-05-30
Changed / last seen2026-06-02 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Arctiq.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through BambooHR.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in Philadelphia.Open
Department jobsActive postings in Delivery - Staff Aug.Open
Work model jobsActive Remote postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyArctiq
Source2f82a7e0-da20-4cf6-a6e6-e2cf69266ed6
ATS providerBambooHR

Description

Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking & Connected Experiences, Cybersecurity, Data & AI, Autonomous Operations & Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries. We are seeking a highly experienced Lead IAM Specialist to architect, lead, and operationalize our client’s enterprise identity and access management program across a multi-cloud environment (AWS, Azure, and GCP). This senior role combines deep technical expertise in cloud-native IAM, zero trust security architecture, and policy-as-code with the strategic leadership needed to define team structure, drive secure-by-default platform engineering, and embed identity governance into every layer of our cloud operations and CI/CD pipelines. The ideal candidate brings hands-on mastery of AWS multi-account governance, zero trust frameworks, CIEM, secure microservices development, and CSPM tooling (Wiz), and has a proven track record of leading large-scale IAM cloud programs from strategy through execution. This is a remote, contract opportunity for one of Arctiq’s clients. Key Responsibilities Enterprise IAM Architecture & Multi-Cloud Governance Design and enforce IAM least-privilege models across AWS Organizations, Landing Zones, and Service Control Policies (SCPs), with parity controls extended to Azure and GCP. Lead zero trust initiatives end-to-end: verify-explicitly policies, Just-in-Time (JIT) / Just-Enough-Access (JEA) provisioning, CIEM integration, and identity platform governance. Define and maintain approved access patterns for services and users, aligned to predefined roles (Reader, Contributor, Administrator) and documented as policy-as-code. Implement and govern OAuth/OIDC flows, service mesh identity controls, and federated identity across cloud and on-prem environments. Inventory & Cloud Security Posture Management Maintain a comprehensive inventory of all approved AWS and Azure services, cataloging IAM resources and differentiating between control plane (roles, policies) and data plane (user/key/role/policy/group) resources. Manage credentials for local data plane resources in vaults; ensure resource policies are applied consistently across services. Utilize Wiz (CSPM) for cloud asset inventory, compliance reporting, evidence collection, and correlation to AWS/Azure/GCP documentation. Identify and govern external dependencies including secrets, keys, and cross-account policies. Metadata Strategy & Module Development Develop a comprehensive metadata tagging strategy mapped to application service lines (ASL), environments, and repository associations. Design and build reusable IAM modules for each service access pattern, published to the service registry with consistent enforcement of naming conventions, metadata, and parameters. Customize module policies to accommodate unique use cases while maintaining governance guardrails. Establish methods to correlate modules with service resource policies and user roles/policies. Policy-as-Code & Secure IaC/CI-CD Integration Embed IAM guardrails and policy-as-code controls natively into IaC templates (Terraform, CloudFormation) and CI/CD pipelines for secure-by-default provisioning. Develop methodologies and criteria for pre-approved service registry modules deployable via pipelines vs. those requiring manual review. Define and enforce controls pertinent to IAM and cloud security standards across all services; implement a shift-left strategy to proactively address IAM cloud operations. Secure Microservices & Application Security Guide and contribute to secure microservices development in Python and Go on AWS, Azure, and GCP, including async and event-driven architectures. Establish secure coding standards and review processes for service identity, inter-service authentication, and least-privilege service accounts. Oversee network and data security controls: segmentation, KMS/encryption strategies, and cloud-native logging and detection pipelines. Documentation, Procedures & SDLC Document IAM configurations for pipelines, repositories, and all cloud services; develop and maintain IAM SDLC documentation. Formulate request and approval processes for new IAM modules, including pre-approval pipeline design and approval authority definition. Document manual review procedures and escalation paths for non-standard access patterns. Strategy, Leadership & Team Development Develop a comprehensive IAM Cloud program strategy, defining its functions, roadmap, and maturity model. Provide recommendations on team structure, roles, skillsets, and resourcing needs across Service Desk, Global Command Center, Cloud Operations, and Cloud Engineering. Mentor and guide junior IAM engineers; act as the subject matter expert and escalation point for complex identity and access challenges. Required Qualifications 10+ years of experience in IAM, cloud security, or identity engineering roles with demonstrated progression. Proficiency with CSPM tooling, specifically Wiz, for inventory, reporting, and compliance evidence collection. Deep expertise in AWS multi-account governance: Organizations, Landing Zones, SCPs, and IAM least-privilege design patterns. Proven experience leading zero trust initiatives including JIT/JEA provisioning, CIEM platforms, OAuth/OIDC, and service mesh identity. Hands-on experience with policy-as-code tooling and embedding IAM guardrails into IaC (Terraform / CloudFormation) and CI/CD pipelines. Experience securing microservices architectures (Python, Go) in async and event-driven environments across AWS, Azure, and GCP. Strong command of network and data security controls: segmentation, KMS/encryption, cloud-native logging, and detection. Proficiency in metadata tagging strategies, service access pattern development, and credential vault management. Strong documentation, process development, and communication skills with the ability to influence cross-functional teams. Preferred Qualifications Relevant cloud security certifications: AWS Security Specialty, CCSP, CISSP, or equivalent Azure/GCP security certifications. Experience implementing and managing enterprise-scale cloud infrastructure security programs. Familiarity with identity governance and administration (IGA) platforms and PAM solutions. Experience with service mesh technologies (Istio, Envoy) for service-to-service authentication. Strong project management skills with experience leading cross-functional security initiatives. Why Join Us This is a high-impact, senior individual contributor and leadership role at the intersection of cloud security architecture, identity engineering, and platform governance. You will have the opportunity to shape our enterprise IAM strategy from the ground up, influence how identity is embedded into every cloud workload, and build a best-in-class program that scales with our growth.

Full job record

Job ID7bb02b7ac5ed4a2a6a089dfab448b86104257acf
Org IDb647bc2a-4113-41af-b777-291fe19fbd61
Source ID2f82a7e0-da20-4cf6-a6e6-e2cf69266ed6
Board ID2f82a7e0-da20-4cf6-a6e6-e2cf69266ed6
Providerbamboohr
Provider Job Key262
TitleLead IAM Specialist - Remote Contract
Normalized Title
Statusactive
Activeyes
Location Text
DepartmentDelivery - Staff Aug
Team
Employment Typecontract
Workplace Typeremote
Remote Policyremote
CountryUnited States
RegionPA
CityPhiladelphia
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://arctiq.bamboohr.com/careers/262
Apply URLhttps://arctiq.bamboohr.com/careers/262
First Seen At2026-05-30 05:46:05Z
Last Seen At2026-06-06 10:25:19Z
Last Checked At2026-06-06 10:25:19Z
Last Changed At2026-06-02 10:34:35Z
Inactive At
Source Posted At2026-06-01 00:00:00Z
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=bamboohr/board=arctiq/date=2026-06-06/2026-06-06T10-25-16-771Z-82f3a0b2747a5fb4464358acb84416a78afb9d60d79ae0cbe83246702d11cdf4.json
Event Fields
{
  "content_hash": "8b782a23248c7e271082f2e6d22126a13ddc38c9a20669ac5aafd8aca142ede2",
  "source_hash": "59591a34e1cc8b31e6d3fc2caf61255ab148e80e4f3493e7fd249ad576a77db2",
  "last_changed_at": "2026-06-02T10:34:35.645Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "Philadelphia, Pennsylvania, United States",
    "city": "Philadelphia",
    "region": "PA",
    "country": "United States",
    "is_remote": true,
    "confidence": 0.8
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T10:25:19.674Z",
  "launch_scope": {
    "reason": "bamboohr_production_catalog",
    "included": true,
    "location": {
      "raw": "Philadelphia, Pennsylvania, United States",
      "city": "Philadelphia",
      "region": "PA",
      "country": "United States",
      "is_remote": true,
      "confidence": 0.8
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": "remote",
  "salary_period": null,
  "workplace_type": "remote",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "list_job": {
    "id": "262",
    "isRemote": null,
    "location": {
      "city": null,
      "state": null
    },
    "atsLocation": {
      "city": "Philadelphia",
      "state": "Pennsylvania",
      "country": "United States",
      "province": null
    },
    "departmentId": "18918",
    "locationType": "1",
    "jobOpeningName": "Lead IAM Specialist - Remote Contract",
    "departmentLabel": "Delivery - Staff Aug",
    "employmentStatusLabel": "Contractor"
  },
  "detail_errors": [],
  "detail_job_opening": {
    "location": {
      "city": null,
      "state": null,
      "postalCode": null,
      "addressCountry": null
    },
    "datePosted": "2026-06-01",
    "atsLocation": {
      "city": "Philadelphia",
      "state": "Pennsylvania",
      "country": "United States",
      "countryId": "1"
    },
    "description": "<p><span>Arctiq is a global, intelligence-driven technology services company delivering professional and managed services across Hybrid Cloud Infrastructure, Networking &amp; Connected Experiences, Cybersecurity, Data &amp; AI, Autonomous Operations &amp; Intelligence, and Enterprise Service Management. We help organizations operate, secure, and modernize complex environments by unifying infrastructure, networking, data, security, automation, and observability under a single, integrated operating model. Our work focuses on helping customers reduce operational friction, improve resilience, and make better, faster decisions as their environments evolve. Arctiq builds on decades of industry expertise and a customer-centric ethos to deliver exceptional value to clients across diverse industries.</span></p>\n<p><br><br></p>\n<p>We are seeking a highly experienced Lead IAM Specialist to architect, lead, and operationalize our client’s enterprise identity and access management program across a multi-cloud environment (AWS, Azure, and GCP). This senior role combines deep technical expertise in cloud-native IAM, zero trust security architecture, and policy-as-code with the strategic leadership needed to define team structure, drive secure-by-default platform engineering, and embed identity governance into every layer of our cloud operations and CI/CD pipelines.</p>\n<p>The ideal candidate brings hands-on mastery of AWS multi-account governance, zero trust frameworks, CIEM, secure microservices development, and CSPM tooling (Wiz), and has a proven track record of leading large-scale IAM cloud programs from strategy through execution.</p>\n<p> </p>\n<p><span style=\"text-decoration: underline\">This is a remote, contract opportunity for one of Arctiq’s clients.</span></p>\n<p><br></p>\n<p><span style=\"font-size: 14pt\">Key Responsibilities</span></p>\n<p><br></p>\n<p><span style=\"font-weight: bold\">Enterprise IAM Architecture &amp; Multi-Cloud Governance</span></p>\n<ul>\n<li>Design and enforce IAM least-privilege models across AWS Organizations, Landing Zones, and Service Control Policies (SCPs), with parity controls extended to Azure and GCP.</li>\n<li>Lead zero trust initiatives end-to-end: verify-explicitly policies, Just-in-Time (JIT) / Just-Enough-Access (JEA) provisioning, CIEM integration, and identity platform governance.</li>\n<li>Define and maintain approved access patterns for services and users, aligned to predefined roles (Reader, Contributor, Administrator) and documented as policy-as-code.</li>\n<li>Implement and govern OAuth/OIDC flows, service mesh identity controls, and federated identity across cloud and on-prem environments.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Inventory &amp; Cloud Security Posture Management</span></p>\n<ul>\n<li>Maintain a comprehensive inventory of all approved AWS and Azure services, cataloging IAM resources and differentiating between control plane (roles, policies) and data plane (user/key/role/policy/group) resources.</li>\n<li>Manage credentials for local data plane resources in vaults; ensure resource policies are applied consistently across services.</li>\n<li>Utilize Wiz (CSPM) for cloud asset inventory, compliance reporting, evidence collection, and correlation to AWS/Azure/GCP documentation.</li>\n<li>Identify and govern external dependencies including secrets, keys, and cross-account policies.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Metadata Strategy &amp; Module Development</span></p>\n<ul>\n<li>Develop a comprehensive metadata tagging strategy mapped to application service lines (ASL), environments, and repository associations.</li>\n<li>Design and build reusable IAM modules for each service access pattern, published to the service registry with consistent enforcement of naming conventions, metadata, and parameters.</li>\n<li>Customize module policies to accommodate unique use cases while maintaining governance guardrails.</li>\n<li>Establish methods to correlate modules with service resource policies and user roles/policies.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Policy-as-Code &amp; Secure IaC/CI-CD Integration</span></p>\n<ul>\n<li>Embed IAM guardrails and policy-as-code controls natively into IaC templates (Terraform, CloudFormation) and CI/CD pipelines for secure-by-default provisioning.</li>\n<li>Develop methodologies and criteria for pre-approved service registry modules deployable via pipelines vs. those requiring manual review.</li>\n<li>Define and enforce controls pertinent to IAM and cloud security standards across all services; implement a shift-left strategy to proactively address IAM cloud operations.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Secure Microservices &amp; Application Security</span></p>\n<ul>\n<li>Guide and contribute to secure microservices development in Python and Go on AWS, Azure, and GCP, including async and event-driven architectures.</li>\n<li>Establish secure coding standards and review processes for service identity, inter-service authentication, and least-privilege service accounts.</li>\n<li>Oversee network and data security controls: segmentation, KMS/encryption strategies, and cloud-native logging and detection pipelines.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Documentation, Procedures &amp; SDLC</span></p>\n<ul>\n<li>Document IAM configurations for pipelines, repositories, and all cloud services; develop and maintain IAM SDLC documentation.</li>\n<li>Formulate request and approval processes for new IAM modules, including pre-approval pipeline design and approval authority definition.</li>\n<li>Document manual review procedures and escalation paths for non-standard access patterns.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-weight: bold\">Strategy, Leadership &amp; Team Development</span></p>\n<ul>\n<li>Develop a comprehensive IAM Cloud program strategy, defining its functions, roadmap, and maturity model.</li>\n<li>Provide recommendations on team structure, roles, skillsets, and resourcing needs across Service Desk, Global Command Center, Cloud Operations, and Cloud Engineering.</li>\n<li>Mentor and guide junior IAM engineers; act as the subject matter expert and escalation point for complex identity and access challenges.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-size: 14pt\">Required Qualifications</span></p>\n<ul>\n<li>10+ years of experience in IAM, cloud security, or identity engineering roles with demonstrated progression.</li>\n<li>Proficiency with CSPM tooling, specifically Wiz, for inventory, reporting, and compliance evidence collection.</li>\n<li>Deep expertise in AWS multi-account governance: Organizations, Landing Zones, SCPs, and IAM least-privilege design patterns.</li>\n<li>Proven experience leading zero trust initiatives including JIT/JEA provisioning, CIEM platforms, OAuth/OIDC, and service mesh identity.</li>\n<li>Hands-on experience with policy-as-code tooling and embedding IAM guardrails into IaC (Terraform / CloudFormation) and CI/CD pipelines.</li>\n<li>Experience securing microservices architectures (Python, Go) in async and event-driven environments across AWS, Azure, and GCP.</li>\n<li>Strong command of network and data security controls: segmentation, KMS/encryption, cloud-native logging, and detection.</li>\n<li>Proficiency in metadata tagging strategies, service access pattern development, and credential vault management.</li>\n<li>Strong documentation, process development, and communication skills with the ability to influence cross-functional teams.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-size: 14pt\">Preferred Qualifications</span></p>\n<ul>\n<li>Relevant cloud security certifications: AWS Security Specialty, CCSP, CISSP, or equivalent Azure/GCP security certifications.</li>\n<li>Experience implementing and managing enterprise-scale cloud infrastructure security programs.</li>\n<li>Familiarity with identity governance and administration (IGA) platforms and PAM solutions.</li>\n<li>Experience with service mesh technologies (Istio, Envoy) for service-to-service authentication.</li>\n<li>Strong project management skills with experience leading cross-functional security initiatives.</li>\n</ul>\n<p> </p>\n<p><span style=\"font-size: 14pt\">Why Join Us</span></p>\n<p>This is a high-impact, senior individual contributor and leadership role at the intersection of cloud security architecture, identity engineering, and platform governance. You will have the opportunity to shape our enterprise IAM strategy from the ground up, influence how identity is embedded into every cloud workload, and build a best-in-class program that scales with our growth.</p>",
    "compensation": null,
    "departmentId": "18918",
    "locationType": "1",
    "seekPromoted": false,
    "jobCategoryId": null,
    "jobOpeningName": "Lead IAM Specialist - Remote Contract",
    "departmentLabel": "Delivery - Staff Aug",
    "jobOpeningStatus": "Open",
    "minimumExperience": "Experienced",
    "jobOpeningShareUrl": "https://arctiq.bamboohr.com/careers/262",
    "employmentStatusLabel": "Contractor"
  }
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/7bb02b7ac5ed4a2a6a089dfab448b86104257acf?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/b647bc2a-4113-41af-b777-291fe19fbd61JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/2f82a7e0-da20-4cf6-a6e6-e2cf69266ed6JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/7bb02b7ac5ed4a2a6a089dfab448b86104257acf/eventsJSON