Leads enterprise Identity and Access Management architecture, strategy, standards, roadmaps, and governance. Designs scalable identity solutions across cloud, hybrid, and on-premises environments, covering IGA, PAM, SSO, MFA, federation, and access governance. Partners with cybersecurity, infrastructure, application, cloud, compliance, and business teams to support Zero Trust objectives and regulatory requirements. Evaluates IAM technologies and vendors, guides architecture reviews, mentors technical staff, and advises senior leadership on identity modernization and security transformation.
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
Job Description Summary
The Principal IAM Architect serves as the senior technical authority for Identity and Access Management (IAM) architecture across the enterprise. This role is responsible for defining the strategic direction, architecture standards, and technology roadmap for identity services that protect critical business assets while enabling secure and efficient workforce, partner, and customer access. The Principal IAM Architect partners with cybersecurity, infrastructure, application development, cloud engineering, and business leaders to design scalable identity solutions that support business growth, regulatory compliance, and Zero Trust security objectives. Operating with significant autonomy, this role drives enterprise-wide identity transformation initiatives, establishes architectural standards, and serves as the organization's subject matter expert for modern identity technologies and access governance.
Key Responsibilities
Required Qualifications
Preferred Qualifications
Leadership Competencies
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora
Full time
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [email protected]. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated Companies
Affiliated Companies: AmerisourceBergen Services Corporation
Job Details
Job Description Summary
The Principal IAM Architect serves as the senior technical authority for Identity and Access Management (IAM) architecture across the enterprise. This role is responsible for defining the strategic direction, architecture standards, and technology roadmap for identity services that protect critical business assets while enabling secure and efficient workforce, partner, and customer access. The Principal IAM Architect partners with cybersecurity, infrastructure, application development, cloud engineering, and business leaders to design scalable identity solutions that support business growth, regulatory compliance, and Zero Trust security objectives. Operating with significant autonomy, this role drives enterprise-wide identity transformation initiatives, establishes architectural standards, and serves as the organization's subject matter expert for modern identity technologies and access governance.
Key Responsibilities
- Serves as the enterprise lead architect for Identity and Access Management (IAM), providing strategic and technical leadership for identity-related initiatives across the organization.
- Defines and maintains the enterprise IAM architecture roadmap, standards, reference designs, and implementation patterns supporting workforce, privileged, third-party, and customer identities.
- Designs scalable and secure identity solutions that align with business objectives, cybersecurity strategy, regulatory requirements, and operational needs.
- Leads architectural decisions related to Identity Governance and Administration (IGA), Privileged Access Management (PAM), Single Sign-On (SSO), Multi-Factor Authentication (MFA), Passwordless Authentication, Identity Federation, and Access Governance.
- Establishes enterprise identity architecture standards supporting cloud, hybrid, and on-premises environments, including Microsoft Entra ID, Active Directory, SaaS platforms, and business-critical applications.
- Partners with application owners, infrastructure teams, cybersecurity leadership, and enterprise architects to integrate identity controls into technology initiatives and business processes.
- Evaluates and recommends IAM technologies, platforms, and vendors to improve security, operational efficiency, user experience, and scalability.
- Leads architecture reviews for major projects and strategic initiatives, ensuring solutions adhere to established identity standards and security requirements.
- Provides expert guidance on authentication protocols and standards, including OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, Kerberos, and modern federation technologies.
- Supports the organization's Zero Trust strategy by designing identity-centric controls that enable secure access decisions based on risk, context, and continuous verification.
- Analyzes emerging cybersecurity threats, identity attack vectors, technology trends, and industry best practices to continuously improve the organization's IAM capabilities.
- Partners with risk management, audit, compliance, and governance teams to ensure identity architectures support regulatory and internal control requirements.
- Leads architecture governance processes, technical reviews, and design boards to ensure consistency across IAM implementations.
- Mentors IAM engineers, architects, and technical leaders while promoting best practices, knowledge sharing, and architectural excellence throughout the organization.
- Influences strategic investment decisions and provides senior leadership with technical recommendations regarding identity modernization and security transformation initiatives.
Required Qualifications
- Bachelor's degree in Computer Science, Information Technology, Information Security, Cybersecurity, Systems Engineering, or a related field, or equivalent professional experience.
- 8+ years of experience in Identity and Access Management, Cybersecurity Architecture, Security Engineering, Infrastructure Architecture, or a related technical discipline.
- Demonstrated experience designing and implementing enterprise IAM solutions across cloud and hybrid environments.
- Deep expertise in identity technologies including:
- Identity Governance and Administration (IGA)
- Privileged Access Management (PAM)
- Single Sign-On (SSO)
- Multi-Factor Authentication (MFA)
- Federation Services
- Directory Services
- Access Certification and Governance
- Strong knowledge of modern authentication and authorization standards, including OAuth 2.0, OpenID Connect (OIDC), SAML, SCIM, JWT, and FIDO2.
- Experience developing enterprise architecture standards, reference architectures, and technical governance processes.
- Proven ability to influence senior stakeholders and drive cross-functional alignment on complex technology initiatives.
Preferred Qualifications
- Master's degree in Cybersecurity, Information Technology, Computer Science, Systems Engineering, or a related field.
- Industry certifications such as:
- CISSP
- CCSP
- SABSA
- TOGAF
- Microsoft Cybersecurity Architect Expert
- SailPoint, Okta, CyberArk, or Microsoft Identity certifications
- Experience leading IAM modernization programs, cloud identity transformations, or Zero Trust initiatives.
- Experience within highly regulated industries such as healthcare, pharmaceutical, financial services, or critical infrastructure.
- Familiarity with DevSecOps, cloud security architecture, and API security frameworks.
Leadership Competencies
- Enterprise-wide strategic thinking.
- Strong architecture and systems design expertise.
- Executive-level communication and stakeholder management.
- Ability to influence without direct authority.
- Exceptional problem-solving and analytical skills.
- Mentorship and technical leadership capabilities.
- Strong understanding of balancing security, usability, compliance, and operational efficiency.
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora
Full time
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [email protected]. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated Companies
Affiliated Companies: AmerisourceBergen Services Corporation
Similar Jobs at Cencora
Healthtech • Logistics • Pharmaceutical
Leads enterprise cybersecurity architecture across cloud, infrastructure, applications, data, identity, AI, and cyber defense. Defines security principles, reference architectures, standards, roadmaps, and Zero Trust patterns; governs major technology decisions; and translates architecture into implementable engineering capabilities. Partners with engineering, enterprise architecture, risk, legal, and business teams on cloud security, DevSecOps, M&A integration, resilience, threat modeling, and emerging technologies. Evaluates security investments, reduces technology complexity, and guides modernization across complex enterprise environments.
Top Skills:
Amazon Web Services (Aws)APIsAttack-Path AnalysisAws Well-Architected FrameworkCcspCi/CdCis ControlsCisspCloud Security AllianceContainersDevsecopsGoogle Cloud Architecture FrameworkGoogle Cloud Platform (Gcp)HitrustIdentity And Access Management (Iam)Infrastructure-As-CodeIso/Iec 27001KubernetesAzureMicrosoft Azure Well-Architected FrameworkNist Cybersecurity FrameworkNist Sp 800-53OwaspSaaSSabsaServerlessSscpThreat ModelingZero Trust
Healthtech • Logistics • Pharmaceutical
Defines and governs enterprise cybersecurity architecture across cloud, infrastructure, applications, data, identity, AI, and cyber defense. Establishes security principles, reference architectures, Zero Trust patterns, technology standards, and multi-year roadmaps. Leads architecture decisions, technology evaluations, modernization, M&A integrations, and build-versus-buy assessments while partnering with engineering teams to implement scalable security capabilities. Requires strong cross-domain expertise, enterprise influence, cloud proficiency, and experience translating cyber risk and regulatory obligations into practical architectures.
Top Skills:
APIsAttack-Path AnalysisAWSAws Well-Architected FrameworkCi/CdCis ControlsCloud Security AllianceContainersDevsecopsDlpEncryptionGenerative AiGoogle Cloud Architecture FrameworkGoogle Cloud PlatformHitrustIdentity And Access ManagementInfrastructure-As-CodeIso/Iec 27001Key ManagementKubernetesMachine LearningAzureMicrosoft Azure Well-Architected FrameworkNist Cybersecurity FrameworkNist Sp 800-53Ot/IotOwaspRagSaaSServerlessThreat ModelingTokenizationZero Trust
Healthtech • Logistics • Pharmaceutical
Leads enterprise cybersecurity strategy, governance, and execution across acquisitions, divestitures, carve-outs, joint ventures, and investments. Directs cybersecurity due diligence, Day 1 readiness, post-close integration, separation, risk acceptance, regulatory alignment, remediation planning, and executive reporting. Manages global teams and third-party partners, translates cyber findings into deal, valuation, compliance, and operational impacts, and advises executives and the Board on transaction risk.
Top Skills:
Application SecurityCcspCis ControlsCisaCismCisspCloud SecurityCriscCybersecurityData ProtectionDscsaEndpoint SecurityGdprGovernance Risk And ComplianceGxpHipaaHitrustIdentity And Access ManagementIncident ResponseIso 27001Network SecurityNist CsfNist Sp 800-171Nist Sp 800-53Pci DssPmpSecurity OperationsSox It General ControlsThird-Party Risk ManagementVulnerability Management
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

