Lead Security Architect
B10 Wells Fargo Bank, N. A. · 142019-NC-300 South Brevard
$119,000–$206,000from the description
Jun 30, 2026
142019-NC-300 South Brevard
Jul 20, 2026
What this job asks for AI summary
A senior architecture role focused on enterprise Identity and Access Management, covering the full spectrum of identity lifecycle, authentication, authorization, and access provisioning across on-premises, cloud, and hybrid environments. The position involves setting architectural standards, leading design reviews, addressing audit findings, and guiding modernization efforts. It suits an experienced IAM architect comfortable influencing across security, engineering, risk, and business stakeholders.
Senior level · 5+ years · Charlotte-Concord-Gastonia, NC-SC · Full-time
Advertised as Staff, but the requirements read as Senior.
Posted 2 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
Why we read it this way (7)
The posting lists four work locations (Charlotte NC, Irving TX, Columbus OH, Minneapolis MN) with a hybrid schedule. Charlotte is used as the primary CBSA; the role is not remote.
The salary range spans $119,000–$206,000 across all locations; the posting presents the combined floor and ceiling as the overall range, which is reflected here.
SOC classification is a genuine judgment call: the role is primarily an enterprise architect designing IAM systems (15-1211 Computer Systems Analysts), but the heavy security-controls and risk-management focus makes 15-1212 Information Security Analysts a credible alternative.
The title 'Lead Systems Architect' maps to 'Staff' advertised seniority, but the actual requirements (5+ years architecture experience, no explicit org-wide or cross-divisional scope) support a Senior classification.
SailPoint, Active Directory, and HashiCorp Vault appear only under 'Desired Qualifications' and are marked preferred accordingly.
Several required skills (least privilege, segregation of duties, entitlement governance, identity lifecycle controls) are IAM principles rather than named tools; they are included because the JD explicitly gates on 'strong knowledge' of them as distinct competencies.
Ignored 4 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): IAM architecture, identity lifecycle management, access provisioning, entitlement governance.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.