Cybersecurity Identity and Access Management Architect

Posted 2 Days Ago
Be an Early Applicant
Arden Hills, MN, USA
In-Office
85K-162K Annually
Senior level
Healthtech
The Role
Leads enterprise identity and access management strategy, architecture, governance, standards, and roadmap development. Designs and modernizes IGA, PAM, authentication, federation, secrets management, PKI, directory, cloud, and non-human identity capabilities. Conducts threat modeling, risk assessments, maturity reviews, and gap analyses while aligning controls with regulatory frameworks. Partners with cybersecurity, infrastructure, cloud, manufacturing, audit, privacy, quality, and regulatory teams, communicates risks and metrics to leadership, evaluates technologies, and mentors technical teams.
Summary Generated by Built In

Additional Location(s): US-MN-Arden Hills

Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance

At Boston Scientific, we’ll give you the opportunity to harness all that’s within you by working in teams of diverse and high-performing employees, tackling some of the most important health industry challenges. With access to the latest tools, information and training, we’ll help you in advancing your skills and career. Here, you’ll be supported in progressing – whatever your ambitions.       

About the role:

Boston Scientific was recognized as a Glassdoor Best Place to Work in 2026, ranking No. 15 on the Top 100 list, reflecting the culture our employees experience every day.

At Boston Scientific, cybersecurity is more than protecting systems. It is about enabling trust, safeguarding patient data, supporting regulatory compliance and protecting the technologies that help improve and save lives.

We are seeking a Cybersecurity Identity & Access Management Architect (IAM), to lead the strategy, architecture and evolution of enterprise identity security capabilities across our global medical device organization.

In this architecture role, you will define and mature enterprise identity security capabilities across identity governance and administration (IGA), privileged access management (PAM), authentication, federation, secrets management, public key infrastructure (PKI), directory services and non-human identities. You will combine deep technical expertise with strong business judgment, regulatory knowledge and the ability to influence enterprise strategy.

Identity is a critical security perimeter. In this role, you will help drive Zero Trust adoption, strengthen privileged access and identity governance, reduce cybersecurity risk, and enable compliant and resilient business growth. You will collaborate across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business teams.


Work model, sponsorship, relocation:

At Boston Scientific, we value collaboration and synergy. This role follows a hybrid work model requiring employees to be in our local office at least three days per week. This position is based in Arden Hills, Minnesota. Boston Scientific will not offer sponsorship or take over sponsorship of an employment visa for this position at this time. Relocation assistance is not available for this position at this time. 


Your responsibilities will include:

  • Define and drive the enterprise IAM strategy, architecture, standards, governance and multiyear roadmap.
  • Design and guide scalable enterprise capabilities for IGA, PAM, single sign-on (SSO), multifactor authentication (MFA), federation, secrets management, PKI, directory services, cloud identity and non-human identities.
  • Lead architecture reviews, modernization initiatives, design workshops and complex cross-functional workstreams.
  • Lead identity threat modeling, risk assessments, maturity reviews and gap analyses, and develop prioritized remediation roadmaps.
  • Align identity controls with applicable cybersecurity, privacy and regulatory frameworks and requirements, including NIST Cybersecurity Framework, NIST SP 800-53, NIST SP 800-63, NIST SP 800-207, ISO/IEC 27001, GDPR, FDA guidance, SOX and internal requirements.
  • Partner with Audit, Privacy, Regulatory Affairs, Quality, Governance, Risk and Compliance (GRC), and technology teams on control design, audit readiness and remediation.
  • Define meaningful IAM risk metrics, key performance indicators (KPIs) and objectives and key results (OKRs), and communicate recommendations, investment needs, risks and outcomes to leadership.
  • Evaluate emerging identity and cybersecurity technologies and recommend solutions that advance enterprise security capabilities and business objectives.
  • Mentor architects, engineers, analysts and product teams on secure-by-design practices and identity security architecture.
  • Partner across Cybersecurity, Infrastructure, Cloud, Manufacturing, Enterprise Architecture, Product Security, Quality, Privacy, Regulatory Affairs and other business functions to embed identity security into enterprise technology strategies and solutions.

Required qualifications:

  • Bachelor’s degree in cybersecurity, computer science, information technology, engineering or a related field, or equivalent practical experience.
  • Minimum of 7 years’ experience in cybersecurity, identity, engineering or security architecture.
  • Minimum of seven years’ experience designing, implementing or governing enterprise IAM capabilities.
  • Experience leading architecture workstreams, advising cross-functional teams and translating complex security requirements into practical, scalable solutions.
  • Experience working in a highly regulated industry, such as medical devices, health care, life sciences, pharmaceuticals or manufacturing.
  • Deep knowledge of identity governance, identity lifecycle management, access certification, role-based access control (RBAC), attribute-based access control (ABAC), segregation of duties and privileged access controls.
  • Expertise in Security Assertion Markup Language (SAML), OAuth 2.0, OpenID Connect, SSO, MFA, adaptive access, Zero Trust, and secure cloud and hybrid identity architecture patterns.
  • Experience with secrets management, service and machine identities, PKI, certificate lifecycle management, cryptographic key management, Active Directory and Microsoft Entra ID.
  • Demonstrated skills in architecture documentation, threat modeling, risk assessment, security control design, metrics and remediation prioritization.

Preferred qualifications:

  • Proven hands-on experience with enterprise identity and security platforms such as Saviynt or SailPoint; CyberArk, BeyondTrust or Delinea; Microsoft Entra ID, Active Directory, Okta or Ping Identity; HashiCorp Vault; and Microsoft Azure or Amazon Web Services (AWS).
  • Relevant professional certifications, such as Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Cloud Security Professional (CCSP), TOGAF, SABSA or ISO/IEC 27001 credentials, or vendor-specific identity and cloud certifications.
  • Demonstrated ability to influence senior stakeholders, navigate complex global organizations and translate cybersecurity risk into clear business recommendations.
  • Proven experience developing enterprise IAM roadmaps and advancing identity security capabilities within large, complex or global environments.

Requisition ID: 634091

Minimum Salary: $85000 

Maximum Salary: $161500 


The anticipated compensation listed above and the value of core and optional employee benefits offered by Boston Scientific (BSC) – see www.bscbenefitsconnect.com—will vary based on actual location of the position and other pertinent factors considered in determining actual compensation for the role. Compensation will be commensurate with demonstrable level of experience and training, pertinent education including licensure and certifications, among other relevant business or organizational needs. At BSC, it is not typical for an individual to be hired near the bottom or top of the anticipated salary range listed above.


Compensation for non-exempt (hourly), non-sales roles may also include variable compensation from time to time (e.g., any overtime and shift differential) and annual bonus target (subject to plan eligibility and other requirements).


Compensation for exempt, non-sales roles may also include variable compensation, i.e., annual bonus target and long-term incentives (subject to plan eligibility and other requirements).


For MA positions: It is unlawful to require or administer a lie detector test for employment. Violators are subject to criminal penalties and civil liability.


Boston Scientific transforms lives through innovative medical technologies that improve the health of patients around the world. As a global medical technology leader for more than 45 years, we advance science for life by providing a broad range of high-performance solutions that address unmet patient needs and reduce the cost of healthcare. Our portfolio of devices and therapies helps physicians diagnose and treat complex cardiovascular, respiratory, digestive, oncological, neurological and urological diseases and conditions. Learn more at www.bostonscientific.com and follow us on LinkedIn.


Boston Scientific Corporation has been and will continue to be an equal opportunity employer. To ensure full implementation of its equal employment policy, the Company will continue to take steps to assure that recruitment, hiring, assignment, promotion, compensation, and all other personnel decisions are made and administered without regard to race, religion, color, national origin, citizenship, sex, sexual orientation, gender identity, gender expression, veteran status, age, mental or physical disability, genetic information or any other protected class.


Please be advised that certain US based positions, including without limitation field sales and service positions that call on hospitals and/or health care centers, require acceptable proof of COVID-19 vaccination status.  Candidates will be notified during the interview and selection process if the role(s) for which they have applied require proof of vaccination as a condition of employment.  Boston Scientific continues to evaluate its policies and protocols regarding the COVID-19 vaccine and will comply with all applicable state and federal law and healthcare credentialing requirements.   As employees of the Company, you will be expected to meet the ongoing requirements for your roles, including any new requirements, should the Company’s policies or protocols change with regard to COVID-19 vaccination.

Skills Required

  • Bachelor's degree in cybersecurity, computer science, information technology, engineering, a related field, or equivalent practical experience
  • At least 7 years of experience in cybersecurity, identity, engineering, or security architecture
  • At least 7 years of experience designing, implementing, or governing enterprise IAM capabilities
  • Experience leading architecture workstreams and advising cross-functional teams
  • Experience translating complex security requirements into practical, scalable solutions
  • Experience working in a highly regulated industry such as medical devices, healthcare, life sciences, pharmaceuticals, or manufacturing
  • Deep knowledge of identity governance, identity lifecycle management, access certification, RBAC, ABAC, segregation of duties, and privileged access controls
  • Expertise in SAML, OAuth 2.0, OpenID Connect, SSO, MFA, adaptive access, Zero Trust, and secure cloud and hybrid identity architecture
  • Experience with secrets management, service and machine identities, PKI, certificate lifecycle management, cryptographic key management, Active Directory, and Microsoft Entra ID
  • Skills in architecture documentation, threat modeling, risk assessment, security control design, metrics, and remediation prioritization
  • Hands-on experience with Saviynt or SailPoint
  • Hands-on experience with CyberArk, BeyondTrust, or Delinea
  • Hands-on experience with Microsoft Entra ID, Active Directory, Okta, or Ping Identity
  • Hands-on experience with HashiCorp Vault and Microsoft Azure or Amazon Web Services
  • CISSP, CISM, CCSP, TOGAF, SABSA, ISO/IEC 27001, or vendor-specific identity and cloud certification
  • Ability to influence senior stakeholders and translate cybersecurity risk into business recommendations
  • Experience developing enterprise IAM roadmaps in large, complex, or global environments

Boston Scientific Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Boston Scientific and has not been reviewed or approved by Boston Scientific.

  • Healthcare Strength Healthcare coverage is positioned as comprehensive, spanning medical, dental, vision, life, and disability insurance alongside mental health resources. Family planning support and broader care navigation offerings further strengthen the health-related value of the package.
  • Retirement Support Retirement benefits stand out through a 401(k) match described as best-in-class and supported by profit sharing and an employee stock purchase plan. High participation in retirement programs is also highlighted as part of the overall financial benefits footprint.
  • Leave & Time Off Breadth Time off is described as generous, with reports of 20+ vacation days and up to four weeks in some roles, plus paid holidays and sick leave. Longer-term options such as extended unpaid family leave and a personal enrichment sabbatical expand flexibility beyond standard PTO.

Boston Scientific Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Marlborough, MA
52,374 Employees
Year Founded: 1979

What We Do

Boston Scientific transforms lives through innovative medical technologies that improve the health of patients around the world. As a global medical technology leader for more than 40 years, we advance science for life by providing a broad range of high-performance solutions that address unmet patient needs and reduce the cost of health care. Our portfolio of devices and therapies helps physicians diagnose and treat complex cardiovascular, respiratory, digestive, oncological, neurological and urological diseases and conditions. For more information, visit www.bostonscientific.com and connect with us on X, Instagram, and Facebook. At Boston Scientific, you will find purpose, a place to grow and opportunities to cultivate your passions. To search and apply for open positions, visit https://bostonscientific.eightfold.ai/careers. You may also review our social media guidelines at http://www.bostonscientific.com/social.

Similar Jobs

PwC Logo PwC

Managed Services - Data, Analytics & AI - Senior Associate

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
39 Locations
370000 Employees
77K-202K Annually

PwC Logo PwC

Pricing and Revenue Consulting Manager - TMT Sector

Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Hybrid
58 Locations
370000 Employees
99K-232K Annually
Remote or Hybrid
United States
1750 Employees

Cox Enterprises Logo Cox Enterprises

HR Data Security Sr. Analyst (Workday)

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
30000 Employees
81K-122K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account