About this role
IAM Cyber Architect
Columbus, Ohio, United States of America Alpharetta, Georgia, United States of America Berkeley Heights, New Jersey, United States of America Coral Springs, Florida, United States of America Frisco, Texas, United States of America
Job ID: R-10398797 Category: Technology Onsite
Job Title IAM Cyber Architect
Cybersecurity Architect – Identity & Access Management
Multiple Fiserv locations | Cyber Architecture Team
Calling all innovators – find your future at Fiserv.
We're Fiserv, a global leader in Fintech and payments, and we move money and information in a way that moves the world. We connect financial institutions, corporations, merchants, and consumers to one another millions of times a day – quickly, reliably, and securely. Any time you swipe your credit card, pay through a mobile app, or withdraw money from the bank, we're involved. If you want to make an impact on a global scale, come make a difference at Fiserv.
About your role:
Most IAM architect roles are about implementing identity solutions. This one is different. Every cybersecurity initiative at Fiserv passes through architecture, and our team is small, selective, and highly influential by design – which means every architect has a real voice in how security is shaped for the entire company. As our Cybersecurity Architect for Identity & Access Management, you won't be one of dozens of architects; you'll be one of a select few setting the security standards, patterns, and long-term roadmap for a company that processes millions of transactions a day.
The focus is identity, but the work reaches well beyond it – Zero Trust, cloud security across AWS, Azure, and GCP, workforce and customer identity, and the fast-moving world of AI security. You'll work alongside a tight-knit group of specialists across identity, network, cloud, and AI, and you'll bring real-world architectural judgment – not just theory – to some of the most consequential security decisions in fintech. If you've come up through engineering or analyst roles, know how things actually work in production, and want your decisions to shape strategy rather than just execute it, this is the seat.
What you’ll do
- Design, review, and govern enterprise identity and access management architecture for both workforce and customer identity, setting the standards, patterns, and long-term roadmap that identity teams across Fiserv build against.
- Define how identity anchors a Zero Trust strategy, including continuous verification, least-privilege and conditional access, federation, SSO, MFA, and risk-based access controls at the scale of a company that processes millions of transactions a day.
- Extend identity architecture across AWS, Azure, and GCP and into the rapidly evolving AI landscape, including identity controls for AI tools and agents.
- Produce formal architecture documentation, including Architecture Decision Records (ADRs) and Architecture Requirement Documents (ARDs), that translate business needs into secure, scalable designs.
- Partner with engineering teams to translate architectural concepts into clear, actionable engineering specifications, and weigh the trade-offs behind every tool and platform decision rather than simply configuring them.
- Help protect Fiserv from AI-driven attacks while enabling secure adoption of tools such as Copilot, Cloud Cowork, and ChatGPT.
- Provide specialty and backup coverage alongside a small team of architects spanning network, cloud, AI, and security operations.
- Communicate architecture decisions, trade-offs, and risk in terms both technical teams and business leaders can act on.
- Responsibilities listed are not intended to be all-inclusive and may be modified as necessary.
Experience you’ll need to have:
- 8+ years of cybersecurity and technology experience, with progression from analyst or engineer into architecture (10–12+ years for senior-level architecture roles).
- Deep identity and access management experience across workforce identity, customer identity, or both, including authentication and authorization models, MFA, SSO, federation, and identity lifecycle management.
- Demonstrated enterprise architecture experience, including producing formal architecture documents such as ADRs or ARDs, and the ability to explain why a design was chosen, not just how it was configured.
- Working knowledge of Zero Trust principles and of cloud security across AWS, Azure, and/or GCP, with the range to speak across network, cloud, and AI security.
- Strong business acumen and the ability to translate technical risk into recommendations business and technology leaders can act on.
- Excellent written and verbal communication skills, with the ability to answer questions succinctly rather than at length.
- A genuinely curious mindset and track record of staying current with fast-changing technology, especially AI.
- Bachelor's degree in computer science, Information Security, or a related field, or equivalent professional/military experience.
Experience that would be great to have:
- Experience covering both workforce and customer identity within a single identity and access management program.
- Hands-on exposure to identity platforms such as SailPoint, Okta, Microsoft Entra, CyberArk, or Ping, with the architectural perspective to look beyond any single product.
- Hands-on exposure to AI protection and enablement, including securing tools such as Copilot, Cloud Cowork, or ChatGPT.
- Experience in financial services or another highly regulated industry.
- Relevant certifications such as CISSP, CISM, or domain-specific credentials (e.g., SailPoint, CCIE Security).
- Experience mentoring engineers or leading cross-functional architecture reviews.
How you’ll work:
- This role is on-site Monday through Friday and can be based at any Fiserv cybersecurity hub, including Alpharetta, GA; Columbus, OH; Berkeley Heights, NJ; Frisco, TX; Coral Springs, FL; or Omaha, NE. Fiserv considers in-person collaboration essential to onboarding, mentorship, and stronger productivity.
Travel:
- Approximately 10% travel off-site or to other office locations is expected.
Sponsorship:
-
You must currently possess valid and unrestricted U.S. work authorization to be considered for this role. Individuals with temporary visas including, but not limited to, F-1 (OPT, CPT, STEM), H-1B, H-2, or TN, or any candidate requiring sponsorship, now or in the future, will not be considered.
-
Fiserv is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, national origin, gender, gender identity, sexual orientation, age, disability, protected veteran status, or any other category protected by law.
-
Note to agencies: Fiserv does not accept resume submissions from agencies outside of existing agreements. Please do not send resumes to Fiserv associates. Fiserv is not responsible for any fees associated with unsolicited resume submissions.
-
Warning about fake job posts: Please be aware of fraudulent job postings that are not affiliated with Fiserv. Fraudulent job postings may be used by cyber criminals to target your personally identifiable information and/or to steal money or financial information. Any communications from a Fiserv representative will come from a legitimate Fiserv email address.
-
Salary Range
-
$127,500.00 - $204,000.00
-
These pay ranges apply to employees in New Jersey and New York. Pay ranges for employees in other states may differ.
-
It is unlawful to discriminate against a prospective employee due to the individual's status as a veteran.