Cybersecurity Identity Architect
Collaborate with Innovative 3Mers Around the World
The Impact You’ll Make in this Role
Cybersecurity Identity Architect
Key Responsibilities
Architect and design
scalable IAM solutions including SSO, MFA, identity federation, IDV, IGA and privileged access management
- Develop and maintain
identity architecture blueprints
, standards, and roadmaps
- Collaborate with engineering, compliance, and business teams to translate
security requirements
into technical designs, including authorization mappings
- Collaborate with detection and response teams and the scaling of ITDR services
- Lead
technical evaluations
of IAM tools and platforms, and oversee their integration
- Partner with cybersecurity engineers and architects on integrating IAM into the IT and cybersecurity tooling ecosystem (e.g. SOC, Data Security, AI, Network, etc.)
- Ensure new identity solutions align with
zero trust principles
, data protection policies, and compliance frameworks (e.g., NIST, ISO, GDPR)
- When required, provide
technical leadership
to incident response and identity-related threat mitigation
- Stay current with emerging IAM technologies, trends, and threats
- Evaluate and incorporate emerging technologies such as passwordless authentication, continuous adaptive trust, or AI-driven access decisions while creating and optimizing associated process with associated teams
- Manage vendor relationships
- Define KPIs and metrics with IAM Program lead to measure IAM program effectiveness
Your Skills and Expertise
To set you up for success in this role from day one, 3M requires (at a minimum) the following qualifications:
- Bachelor’s degree in Cybersecurity, Computer Science, or related field (completed and verified prior to start)
- Ten (1 0) years experience in enterprise identity management in a private, public, government or military environment
Additional qualifications that could help you succeed even further in this role include:
- Certified Identity and Access Manager (CIAM)
- Experience operating in a multi-national and large enterprise
- Deep understanding of identity protocols (SAML, OAuth, OpenID Connect, LDAP, Kerberos, etc.)
- Ability to design and articulate identity, authentication, authorization, and lifecycle management
solutions for
systems
(APIs, containers, agentic agents, etc.)
- Deep understanding of non-human identities, including service accounts, machine identities, AI agents, and delegated (on-behalf-of) authentication flows.
- Understanding of API gateways (mTLS, SPIFFE/SPIRE), and token management
- Experience with IAM platforms (e.g., Azure AD / Entra, Saviynt, CyberArk, etc.)
- Strong knowledge of cloud identity (AWS, Azure, GCP) and hybrid environments
- Familiarity with regulatory and compliance standards (HIPAA, SOX, PCI-DSS)
- Excellent written communication and stakeholder engagement skills
- Excellent ability to document complex technical solutions for consumption at a variety of levels
- Additional qualifications that could help you succeed even further in this role include:
- CISSP, CISM, or similar
- Microsoft Certified: Identity and Access Administrator Associate
- Experience supporting a manufacturing company with IT and OT
- Experience integrating identity into larger cybersecurity systems and workflows
Work location
- This role follows an on-site working model, requiring the employee to work at least four days a week at the 3M Center in Maplewood, MN or Austin, TX locations.
Travel
Supporting Your Well-being
Chat with Max
3M Global Terms of Use and Privacy Statement
Not included in the source posting: about the role, benefits.
Skills
Who can apply
The employer didn't state any visa, work authorization, citizenship or clearance requirements in this posting. Confirm with the employer before applying.
Read automatically from the employer's posting text. Always confirm with the employer — requirements can change after a job is published.