Lead Engineer, IAM Platform Engineering
Cencora
- Location
- Conshohocken, Pennsylvania, United States of America
- Work model
- On-Site
- Level
- Senior
- Posted
- Aug 27, 2026
Skills
About this role
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
Job Description Summary Leads the architecture, automation strategy, and modernization of enterprise Identity and Access Management (IAM) platforms to deliver secure, scalable, and highly automated identity services across the organization. Drives the adoption of AI-enabled capabilities, intelligent automation, and identity orchestration solutions that improve operational efficiency, strengthen security controls, and enhance user experiences. Designs and implements advanced IAM architectures, automated workflows, and Zero Trust security frameworks that support hybrid cloud and SaaS environments. Serves as a strategic advisor to technology and security leadership on identity innovation, automation opportunities, and emerging AI technologies that can transform identity governance, access management, privilege management, and threat detection.
Key Responsibilities
Leads the strategic design, implementation, and continuous evolution of enterprise IAM platforms supporting workforce, privileged, third-party, and customer identities. Architects and delivers automation solutions that streamline identity lifecycle management, access provisioning, deprovisioning, certification campaigns, privileged access controls, and compliance reporting. Designs and develops API-driven integrations, identity orchestration workflows, and Infrastructure-as-Code (IaC) capabilities to reduce manual effort and improve operational scalability. Evaluates and implements AI and machine learning capabilities within IAM processes to support intelligent access recommendations, anomaly detection, automated role mining, access analytics, and identity risk scoring. Partners with security operations, enterprise architecture, cloud engineering, and application teams to integrate automated identity controls into enterprise technology ecosystems. Leads the development of self-service identity solutions that improve user experience while maintaining strong governance and security controls. Designs automation frameworks leveraging scripting, workflow engines, low-code/no-code platforms, and AI-powered tools to accelerate onboarding, access requests, and operational support processes. Analyzes identity telemetry, authentication patterns, privileged access activity, and behavioral analytics to identify security risks and opportunities for automation. Advises senior technology leadership on emerging trends in Identity Threat Detection and Response (ITDR), AI for cybersecurity, identity analytics, and intelligent identity governance. Leads architecture decisions involving Identity Governance and Administration (IGA), Privileged Access Management (PAM), Single Sign-On (SSO), Multi-Factor Authentication (MFA), Passwordless Authentication, and Zero Trust security architectures. Develops enterprise standards, architecture patterns, and reusable automation frameworks that improve consistency and accelerate platform delivery. Designs resilient identity solutions that support cloud-first technologies, digital transformation initiatives, and evolving regulatory requirements. Mentors engineers and architects on automation best practices, AI adoption, secure development principles, and modern identity architecture patterns. Evaluates emerging IAM, automation, and AI technologies to influence strategic investments and long-term platform modernization initiatives. This job profile description is a standardized, non-contractual reference description and global reference tool provided for organizational consistency and talent architecture purposes across Cencora. It does not alter actual job duties,