Top 100 Best Employers is voted by people like you.

Contribute with your review until October 15!

Lead Architect - IAM Transformation - EPAM Romania
Apply externally

Lead Architect - IAM Transformation

Published 30.09.2025 | Expires 14.11.2025

Job description

EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.

We are seeking a Lead Solution Architect specializing in identity and access management (IAM) to define and govern the IAM architecture for the BeSEE region.

You will ensure alignment with enterprise principles while supporting security and business requirements. This role involves guiding the design and integration of IAM capabilities into a transformed IT landscape and leading the migration from legacy systems to new IAM solutions. You will collaborate with various stakeholders to deliver scalable and compliant IAM implementations. If you have expertise in Microsoft Azure and IAM technologies and enjoy leading complex architectural programs, we encourage you to apply.

Responsibilities

  • Own and maintain the IAM architectural vision and roadmap for the BeSEE region ensuring alignment with global IAM strategies
  • Define target architectures and principles for Microsoft Entra ID, identity governance, privileged access management, and access provisioning
  • Provide architectural leadership to ensure consistency in IAM designs and integrations across workstreams
  • Design solutions to replace legacy custom and Saviynt-based authorization mechanisms
  • Develop migration strategies for applications managed through custom IAM profiles
  • Implement secure and auditable management solutions for generic non-personal accounts
  • Conduct technical inventory and map legacy IAM components including APIs and sync jobs
  • Translate legacy entitlement logic into sustainable IAM constructs using workflows and lifecycle events
  • Standardize connector onboarding and provisioning through reusable templates and kits
  • Guide development of custom connectors using Java, PowerShell, SCIM, and related technologies
  • Review provisioning workflows and access request logic with code-level precision
  • Package IAM artifacts for CI/CD pipelines promoting secure-by-design practices
  • Collaborate with transformation office, security architects, engineers, and business leads to align architecture
  • Support project teams in architectural decision making ensuring future-state alignment
  • Lead definition of IAM solution blueprints, patterns, and guardrails for scalable and compliant implementations
  • Review solution designs from vendors and internal teams and identify architectural risks and mitigation strategies
  • Contribute to architecture governance processes and key documentation including diagrams and roadmaps

Requirements

  • 2+years of relevant experience in solution architecture with a focus on identity and access management
  • Proven leadership experience in managing IAM architecture projects at a regional level
  • Background in designing and implementing Microsoft Azure and Microsoft Entra ID solutions
  • Skills in privileged access management, identity governance, and access provisioning
  • Expertise in migration strategies from legacy IAM systems to modern, scalable solutions
  • Strong knowledge of GDPR and security compliance requirements related to IAM
  • Proficiency in IAM integration technologies, including custom connector development
  • Capability to translate complex business and security requirements into architecture models
  • Experience collaborating with cross-functional teams, including security, engineering, and business stakeholders
  • Familiarity with CI/CD pipelines and secure software development practices
  • English language proficiency at an advanced level for effective communication

We offer

  • We believe that the greatest strength of the company is its people. EPAM is fully committed to help its employees to reach their full potential and achieve their professional goals through continues learning. With this in mind, we would like to introduce to you few of the many opportunities and services which we believe will help you expand your current knowledge:
  • Full access to cutting-edge tools and technologies
  • Competitive compensation depending on experience and skills
  • All-around Social package: professional & soft skills training, medical & family care programs, sports
  • Relocation opportunities
  • Free English classes
  • Unlimited access to LinkedIn learning solutions
  • Continuous experience exchange with experts and professionals worldwide
  • Friendly team and comfortable working environment
  • Engineering, corporate, and social events within and outside the Company
  • Flexible working schedule
  • Opportunities for self-realization
EPAM Romania

EPAM Romania

77 active ads

4.21

120 reviews

Career opportunities

Salary package

Work-life balance

Management

Procedures and values

Job criteria

Employee Medium level (2-5 years)
Type of job Full-time
Cities Bucharest