JobsSr. Enterprise Identity Architect
KLA logo

Sr. Enterprise Identity Architect

KLA

Location

Milpitas, CA

Type

Full-time

Posted

5/10/2026

Compensation

$137,800 - $234,300 per year

Undergraduate with 5+ Years of Experience
Approval 97.8%·Filings 803·New hires 321·
💎 Strong Sponsor
·FY 2025

Job description

The Sr. Enterprise Identity Architect at KLA will lead the design and modernization of enterprise identity security across on-prem and cloud environments. This role focuses on Identity & Access Management (IAM), Identity Governance & Administration (IGA), and Privileged Identity Management (PIM). The architect will define enterprise identity architecture and drive Zero Trust initiatives while collaborating with cross-functional teams. The position requires deep technical expertise and strategic direction to implement secure and compliant identity solutions.

Requirements

  • Minimum eight years of proven experience in large enterprise companies.
  • Minimum five years of proven experience architecting and designing enterprise grade solutions.
  • Hands-on experience in IAM systems like Ping or Okta or Azure EntraID.
  • Experience working with IGA tools like SailPoint, Savyint, and PIM tools like CyberArk or BeyondTrust.
  • Experience with multi-cloud identity (AWS, GCP).
  • Knowledge of regulatory frameworks like SOX, HIPAA, PCI, ISO 27001, or NIST.
  • Certifications in Identity and Security areas are a huge plus.

Responsibilities

  • Develop and maintain the enterprise identity architecture blueprint across IAM, IGA, SSO, PIM, and cloud identity services.
  • Establish identity standards, patterns, and reference architectures for on-premises and cloud environments.
  • Define and drive Zero Trust identity strategy, modern authentication roadmap, and identity lifecycle transformation.
  • Assess identity risk posture and recommend controls aligned with business and compliance requirements.
  • Architect and implement identity lifecycle and governance solutions including role modeling, access certification, and automated provisioning/deprovisioning.
  • Integrate IGA platforms with HR systems, AD/Entra ID, cloud applications, and SaaS platforms.
  • Define RBAC/ABAC frameworks and enforce least privilege across the enterprise.
  • Design and oversee PIM and privileged access architectures including just-in-time access, privileged session management, and secure admin tiering.
  • Align privileged access models across AD, Entra ID, cloud workloads, servers, databases, and network systems.
  • Provide architectural oversight for privileged access tools and secure credential management.
  • Architect SSO integrations using SAML, OAuth, OIDC, WS-Fed, and modern authentication protocols.
  • Define centralized authentication patterns for cloud and on-prem applications.
  • Implement effective MFA, Conditional Access, and continuous authentication strategies.
  • Provide architecture direction for Active Directory tiers, domain services, Group Policy structure, and identity security hardening.
  • Lead hybrid identity design involving Entra ID, AAD Connect, federation, and modern authentication migration.
  • Optimize identity infrastructure for scalability, resilience, and security.
  • Architect cloud identity solutions across Azure, multicloud, and SaaS platforms.
  • Guide modern identity adoption including passwordless, FIDO2, device identity, workload identity, and identity segmentation.
  • Integrate cloud identity controls into enterprise identity governance and access workflows.
  • Act as the senior subject matter expert for identity architecture across security, cloud, application, and infrastructure teams.
  • Lead evaluation and adoption of new IAM, IGA, SSO, and PIM technologies.
  • Provide architecture governance, design reviews, and mentorship to engineering teams.
  • Partner with compliance and risk teams to support audits, certification processes, and regulatory reporting.

Benefits

  • Employees at KLA are often offered competitive pay with bonuses, a 401(k) match, an employee stock purchase program, and financial perks like student-debt assistance, planning support, and group insurance discounts. Health and lifestyle benefits typically include medical/dental/vision, life and other voluntary coverages, paid time off and holidays, family leave, backup care, wellness rewards, gym discounts, and community-volunteering opportunities. Employees also get strong growth support through tuition reimbursement, KLA’s corporate learning center, education awards, and engineering certification programs.

Is this posting expired or inaccurate?