Staff Technical Architect, Workforce Identity and Access Management

USAA

Confirmed live today High trust
Closes in 2 days Hybrid

Quick summary

Work type
Hybrid
Location
San Antonio, TXPlano, TXPhoenix, AZColorado Springs, COCharlotte, NC
Salary
$143,320–$273,930 / yr
Employment
Full-time
Posted
5 days ago
Freshness
Confirmed live today
Closes
Oct 7, 2026 (soon)

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $206k
This role $209k
$128k most similar roles pay here $290k

This role pays more than 51% of similar roles. Most pay $176,372–$235,812 — the shaded band above. At the midpoint, this role pays about $209k versus about $206k for comparable roles.

Based on 240 similar postings.

Employer

About USAA

USAA (United Services Automobile Association) is a San Antonio-based Fortune 500 financial services company founded in 1922, dedicated to providing insurance, banking, and investment solutions exclusively to U.S. military members, veterans, and their families.

USAA currently has 43 open roles on FindRole.

Listed pay typically runs $142,820–$273,930 across 28 roles with salary data.

Most-posted roles

View all roles at USAA

At a glance

TL;DR · Staff Technical Architect, Workforce Identity and Access Management

Technical Architect Staff - Workforce Identity and Access Management will set the technology strategy and direction for workforce Identity and Access Management across a hybrid environment. Working with security, infrastructure, application, and engineering teams, this individual will design secure identity solutions, modernize authentication capabilities, and lead transformation initiatives to strengthen access controls and reduce risk. The role involves creating architecture artifacts, defining standards, performing risk assessments, and providing technical mentorship. Key technologies and skills include experience in hybrid environments, Identity Governance and Administration, Identity Provider tooling, Directory Services, and Privileged Access Management. Specific expertise is required in SAML 2.0, OIDC, OAuth 2.0, and SCIM, along with managing non-human identities like service accounts and API keys. The role addresses the critical business problem of securing workforce access within a complex, multi-platform infrastructure to ensure robust organizational security.

What you'll do

  • Set the technology strategy and direction for workforce Identity and Access Management (IAM) across a hybrid environment.
  • Design secure identity solutions and modernize authentication and access capabilities to reduce risk.
  • Define and document architecture standards for the IAM domain to ensure compliance of all technical solutions.
  • Evaluate application architectures to identify risks and provide security guidance to business owners.
  • Use risk assessment methodologies to draft, evaluate, and approve or reject waivers to architectural standards.
  • Provide technical mentorship and leadership to architects, engineers, and other IT community colleagues.
  • Manage the lifecycle of non-human identity systems including service accounts, API keys, and certificates.
  • Maintain architecture documentation and ensure the timely completion of all required project deliverables.

What we're looking for

  • Bachelor's degree; OR 4 years of relevant education and/or experience.
  • 8 years of experience in the Information Technology field including at least 2 years in a technical leadership role.
  • 4 years of experience in the Identity and Access Management technology domain.
  • Experience in application development, infrastructure and operational implementation, and/or security engineering.
  • Experience producing and maintaining technical security standards and guidance documents for a large enterprise.
  • Experience working in hybrid environments with on-premise systems and cloud systems.
  • 2+ years’ experience acting as a security architect in a large federally regulated enterprise environment (preferred).
  • Experience with threat modeling, IAM tooling, and protocols like SAML 2.0, OIDC, OAuth 2.0, or SCIM (preferred).

More like this

Similar roles

Enterprise Identity & Access Management Architect

State Street

Quincy, MA +3 85 days ago $120,000–$202,500
Identity & Access Management (IAM) Privileged Access Management (PAM) Zero Trust Single Sign-On (SSO) Multi-Factor Authentication (MFA) Federated Identity Microsoft Entra ID SailPoint Saviynt CyberArk Okta Ping Identity ForgeRock SaaS Security Architecture
10+ yrs exp Hybrid

Systems Architect, Identity & Access Management

T-Mobile

Overland Park, KS +2 46 days ago $90,850–$163,990
Identity and Access Management SAML 2.0 OIDC OAuth 2.0 SCIM Microsoft Entra ID Azure AWS GCP SailPoint SQL Teradata Oracle SQL Server Python PowerShell Microsoft Graph Claude GitHub Copilot Zero Trust Agile
3+ yrs exp

Lead Infrastructure Engineer, IAM

T. Rowe Price

Owings Mills, MD 12 days ago $122,000–$209,000
Identity and Access Management Microsoft Entra ID AWS Active Directory Zero Trust PAM PKI SAML OAuth MFA ADFS MIM LDAP Kerberos DNS Certificate Services Access Governance
8+ yrs exp Hybrid

Staff Identity Governance and Access Engineer

Okta Inc

Bellevue, WA +2 30 days ago $161,000–$221,000
Okta IGA PAM ISPM RBAC SAML OIDC OAuth 2.0 SCIM Workday Okta Workflows REST APIs JSON Crowdstrike Falcon Jira ServiceNow SOX SOC 2 ISO 27001 HIPAA GDPR
4+ yrs exp

Staff Identity Governance and Access Engineer

Okta Inc

Bellevue, WA +2 30 days ago $161,000–$221,000
Okta IGA PAM ISPM RBAC SAML OIDC OAuth 2.0 SCIM Workday Okta Workflows REST APIs JSON Crowdstrike Falcon Jira ServiceNow SOX SOC 2 ISO 27001 HIPAA GDPR
4+ yrs exp