Apply now »

Security Architect, IAM

Company:  Ball Corporation
Location: 

Belgrade, RS, 11070

Date:  21 Jul 2026
Job Category:  IT Administration
Req ID:  50164

 

At Ball, integrity and trust are the foundation of who we are. Guided by our core values—"We Care. We Work. We Win.”—we create a culture where every voice matters and every idea drives progress.  
Further your career at Ball, a world leader in manufacturing sustainable aluminium packaging. Achieve extraordinary things when you join our team, and make a difference in your professional development, the community, and around the globe! 
Create a new future. Apply Today. 

 

Position overview:

 

 

The IAM Security Architect is responsible for designing and governing identity and access management (IAM) security architectures that protect Ball Corporation’s enterprise environments while enabling business operations, digital transformation, and manufacturing reliability requirements. This role ensures IAM controls and solutions are designed using secure‑by‑design and secure‑by‑default principles, aligned to enterprise security standards and risk management goals. 

Working under the direction of the Senior Manager of Identity & Access Management, the IAM Security Architect provides hands‑on architectural leadership for identity services, authentication, authorization, privileged access, identity lifecycle, and access governance capabilities, ensuring designs are scalable, interoperable, operationally sustainable, and measurable.

 

Key responsibilities include:

  • Develop and maintain IAM solution architectures aligned to enterprise security architecture strategy, principles, standards, and reference architectures, with a specific focus on identity and access controls
  • Define and enforce IAM architecture patterns for workforce identity, partner access, service identities, and application access
  • Establish and apply securebydesign patterns for authentication, authorization, identity lifecycle management, and access governance (including joiner/mover/leaver processes)
  • Design and govern privileged access management architectures, including privileged identity controls, administrative access pathways, and session governance
  • Provide architecture guidance and design oversight for IAM projects and programs, ensuring identity security requirements are represented and implemented consistently
  • Participate in technology evaluations and architecture reviews for IAM capabilities to ensure alignment with enterprise standards and risk management goals
  • Partner with IT, application owners, and business stakeholders to embed IAM architecture into transformation, modernization, cloud adoption, and M&A initiatives
  • Collaborate with Cybersecurity Defense Operations to ensure IAM architectures support monitoring, detection, and response through appropriate identity logging, alerting, and operational supportability requirements
  • Contribute to creation and maintenance of IAM architecture documentation, standards, and implementation guidance for delivery teams and identity operations
  • Support regional IAM deployments and integrations aligned to global standards while accommodating local operational constraints and regional business needs
  • Partner with regional IT teams and business leaders to address locationspecific identity and access challenges, including workforce access and plantadjacent access requirements
  • Ensure IAM architecture standards are applied consistently across regions and that any exceptions are documented and handled through appropriate governance processes

 

 

What are we looking for?

 

  • Bachelor’s degree in Computer Science, Engineering, Information Security, or a related discipline required
  • Minimum of 8–12 years of experience in cybersecurity, infrastructure, cloud, or technology architecture roles, including demonstrated identity and access architecture responsibilities
  • Experience designing IAM architectures in complex, global, and manufacturingcentric environments preferred
  • Strong architectural and systemsthinking capabilities with ability to translate business and risk requirements into practical IAM designs
  • Strong collaboration skills across IT, application teams, Digital, and business stakeholders to drive adoption of standardized identity patterns
  • Decisionmaking skills balancing risk reduction, cost, user experience, and operational impact (including manufacturing continuity considerations)
  • Clear communication skills for both technical and executive audiences, including the ability to explain identity risk and control intent
  • Ability to produce clear architecture documentation and implementation guidance that accelerates consistent delivery and reduces design variance
  • Familiarity with security architecture frameworks such as SABSA or TOGAF is a plus
  • Strong knowledge of identity and access security architecture across authentication, authorization, and identity lifecycle management
  • Understanding of access governance concepts, including role/entitlement models, periodic access reviews, and segregation of duties principles
  • Knowledge of privileged access concepts and patterns, including administrative boundary design and privileged account controls
  • Familiarity with identity logging, monitoring, and operational supportability requirements to enable effective detection and response
  • Understanding of how IAM architecture decisions impact resilience, operations, and risk exposure across enterprise and manufacturingadjacent environments
  • Fluent English language

 

 

Ball Corporation is an Equal Opportunity Employer. We actively encourage applications from everybody, regardless of gender, age, ethnicity, faith, ability, or orientation. Our products range from infinitely recyclable aluminium cans, cups to aerosol bottles solutions that enable our customers to contribute to a better world. 
Each of us has a deep commitment to diversity and inclusion which is the foundation of our culture of belonging. Everyone at Ball is making a difference by doing what we love. Because what we create may change, but what we will always make is a difference. 
Please note the advertised job title might vary from the job title on the contract due to local job title structure and global HR systems.

No agencies please.

Apply now »