Cybersecurity Identity Architect
Choosing where to start and grow your career has a major impact on your professional and personal life. At 3M, you’ll collaborate with curious, creative 3Mers across global locations, technologies, and products. This position provides an opportunity to transition from private, public, government, or military experience to a 3M career.
About the Role
With 3M’s continued commitment to security and its path toward modernization and improvement, we are seeking a strategic and technically skilled Cybersecurity Identity Architect to lead the design and implementation of enterprise identity and access management (IAM) solutions. This role will define the architecture for identity governance, authentication, authorization, and privileged access across cloud and on-prem environments, ensuring alignment with business goals and regulatory requirements. The architect is also responsible for coordinating and integrating IAM into other IT, Cybersecurity, and business solutions.
Responsibilities
- Architect and design scalable IAM solutions including SSO, MFA, identity federation, IDV, IGA, and privileged access management
- Develop and maintain identity architecture blueprints, standards, and roadmaps
- Collaborate with engineering, compliance, and business teams to translate security requirements into technical designs, including authorization mappings
- Collaborate with detection and response teams and the scaling of ITDR services
- Lead technical evaluations of IAM tools and platforms, and oversee their integration
- Partner with cybersecurity engineers and architects on integrating IAM into the IT and cybersecurity tooling ecosystem (e.g., SOC, Data Security, AI, Network, etc.)
- Ensure new identity solutions align with zero trust principles, data protection policies, and compliance frameworks (e.g., NIST, ISO, GDPR)
- Provide technical leadership to incident response and identity-related threat mitigation when required
- Stay current with emerging IAM technologies, trends, and threats
- Evaluate and incorporate emerging technologies such as passwordless authentication, continuous adaptive trust, or AI-driven access decisions while optimizing associated processes with relevant teams
- Manage vendor relationships
- Define KPIs and metrics with the IAM Program lead to measure IAM program effectiveness
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, or related field (completed and verified prior to start)
- Ten (10) years of experience in enterprise identity management in a private, public, government, or military environment
Skills
- Certified Identity and Access Manager (CIAM) (preferred)
- Experience operating in a multi-national and large enterprise
- Deep understanding of identity protocols (SAML, OAuth, OpenID Connect, LDAP, Kerberos, etc.)
- Ability to design and articulate identity, authentication, authorization, and lifecycle management solutions for modern IT systems (APIs, containers, agentic agents, etc.)
- Deep understanding of non-human identities, including service accounts, machine identities, AI agents, and delegated (on-behalf-of) authentication flows
- Understanding of API gateways (mTLS, SPIFFE/SPIRE), and token management
- Experience with IAM platforms (e.g., Azure AD / Entra, Saviynt, CyberArk, etc.)
- Strong knowledge of cloud identity (AWS, Azure, GCP) and hybrid environments
- Familiarity with regulatory and compliance standards (HIPAA, SOX, PCI-DSS)
- Excellent written communication and stakeholder engagement skills
- Excellent ability to document complex technical solutions for consumption at a variety of levels
- CISSP, CISM, or similar certifications (preferred)
- Microsoft Certified: Identity and Access Administrator Associate (preferred)
- Experience supporting a manufacturing company with IT and OT (preferred)
- Experience integrating identity into larger cybersecurity systems and workflows (preferred)
Schedule
This role follows an on-site working model, requiring the employee to work at least four days a week at the 3M Center in Maplewood, MN or Austin, TX locations. Travel may include up to 5%.
Pay
The expected compensation range for this position is $221,591 - $270,834, which includes base pay plus variable incentive pay, if eligible. The specific compensation offered may vary based on factors including relevant knowledge, training, skills, work location, and experience.
Benefits
- Medical, Dental, and Vision coverage
- Health Savings Accounts (HSA)
- Health Care and Dependent Care Flexible Spending Accounts (FSA)
- Disability Benefits
- Life Insurance
- Voluntary Benefits
- Paid Absences
- Retirement Benefits
Additional information is available at 3M Benefits.