Senior Identity Architect
TC EnergyAbout the role
Determined, imaginative, curious—if these are some of the ways you describe yourself, we want to learn more about you!
At TC Energy, we are proud to connect the world to the energy it needs. Guided by our values of safety in every step, personal accountability, one team and active learning, we deliver the critical energy that North America and the world rely on while balancing reliability, affordability and sustainability.
The Opportunity
We are seeking a highly experienced Senior Identity Architect to provide strategic and technical leadership for enterprise Identity and Access Management (IAM) capabilities across hybrid and multi-cloud environments. As the senior architect for identity security, you will define enterprise identity architecture standards, reference patterns, and target-state designs that enable secure, seamless access to enterprise resources while supporting business objectives, regulatory requirements, and Zero Trust principles.
In this role, you will leverage deep expertise across Identity Governance and Administration (IGA), Privileged Access Management (PAM), Identity Providers (IdP), Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), Privileged Access Workstations (PAWs), Non-Human Identity (NHI), Identity Threat Detection and Response (ITDR), and emerging Identity for AI capabilities. You will establish identity standards, architectural principles, and governance frameworks while designing scalable, enterprise-level identity solutions that balance security, user experience, operational efficiency, and compliance requirements.
Working closely with security, infrastructure, cloud, application, and enterprise architecture teams, you will assess identity risks, develop practical controls, and design secure access models for complex enterprise ecosystems spanning workforce, third-party, privileged, machine, and AI identities. As a hands-on architect, you will lead architecture workshops, facilitate decision-making among technical and business stakeholders, and provide clear guidance on modern identity strategies and implementation approaches across Azure, AWS, SaaS, on-premises, and hybrid environments.
This role will play a key part in shaping the organization’s long-term identity strategy by partnering with architects, engineers, leadership teams, and business stakeholders to develop future-state architectures and multi-year transformation roadmaps. Success in this role requires strong analytical and problem-solving capabilities, exceptional communication skills, and the ability to influence enterprise technology decisions without direct authority. You will evaluate emerging technologies, identify opportunities for innovation, and incorporate new capabilities into the organization’s identity strategy to strengthen security, improve operational efficiency, and reduce enterprise risk.
This position is ideal for a collaborative and forward-thinking identity leader who brings deep technical credibility, a strategic mindset, and a passion for building secure, scalable identity services that support the evolving needs of the enterprise.
What You'll Do
Define and maintain enterprise identity architecture principles, standards, reference architectures, and design patterns
Design enterprise-scale IAM solutions across hybrid and multi-cloud environments, including Azure and AWS
Lead architecture and design activities across: Identity Governance and Administration (IGA), Privileged Access Management (PAM), Identity Providers (IdP), Multi-Factor Authentication (MFA), Privileged Identity Management (PIM), Privileged Access Workstations (PAWs), Non-Human Identity (NHI), Access Management and Federation, as well as Identity Threat Detection and Response (ITDR)
Develop conceptual, logical, physical, and integration architecture artifacts and diagrams
Create solution architectures, security patterns, and implementation blueprints that align with enterprise security objectives
Design Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), and Policy-Based Access Control (PBAC) models
Define privileged access strategies including least privilege, Just-in-Time (JIT) access, privileged session controls, and administrative isolation
Design and govern identity controls for employees, contractors, third parties, service accounts, APIs, workloads, and machine identities
Collaborate with enterprise, security, cloud, and application architects to establish secure identity integrations and access models
Partner with internal architecture teams to develop and maintain multi-year IAM and Zero Trust Identity roadmaps
Conduc
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s