Senior Manager, Identity & Access Management (IAM)
Leads IAM teams to build and operate enterprise identity, authentication, authorization, and governance systems at global scale. Requires 8-12+ years experience in security/identity engineering, deep IAM expertise, cloud architecture (AWS/GCP/Azure), and Zero Trust principles.
About the job
What You’ll Do
Strategic Leadership
- Define the long-term IAM strategy, roadmap, and operating model across the enterprise and product ecosystem.
- Build scalable identity foundations that support global growth, cloud expansion, and evolving business needs.
- Establish best practices for identity lifecycle management, authentication, authorization, provisioning, and governance.
Build and Lead High-Performing Teams
- Manage and grow IAM engineering and operations teams responsible for identity services, infrastructure, and tooling.
- Mentor technical leads and engineers; foster a high-performance and high-accountability culture.
- Develop effective team structures and prioritize workstreams aligned to business and security priorities.
IAM Architecture & Engineering
- Lead the design and implementation of IAM capabilities including:
- Single Sign-On (SSO), MFA, and federated identity
- Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC)
- Privileged Access Management (PAM)
- Identity lifecycle automation
- Directory services and identity stores
- Just-in-time access and least-privilege models
- Drive modernization of legacy systems and implementation of Zero Trust identity principles.
- Ensure scalability, high availability, and strong security controls across all identity platforms.
Governance, Compliance & Risk
- Own identity governance programs including access reviews, audit readiness, onboarding/offboarding controls, and policy enforcement.
- Partner with compliance, risk, and legal teams to meet regulatory requirements (SOC2, ISO, FedRAMP, SOX, GDPR, etc.).
- Ensure operational rigor, strong documentation, and sustainable controls that withstand audits and customer expectations.
Cross-Functional Partnership
- Work closely with IT, Product Security, Cloud Infrastructure, and Engineering to embed identity best practices throughout the organization.
- Collaborate with product teams to ensure customer-facing identity capabilities are secure, intuitive, and scalable.
- Build strong relationships with internal stakeholders and serve as a trusted advisor on identity issues.
What You Bring
- 8–12+ years of experience in security, identity engineering, or related technical fields
- Deep technical expertise in modern IAM technologies, directories, authentication protocols (SAML, OIDC, OAuth), and identity standards.
- Hands-on architecture or engineering experience within cloud environments (AWS/GCP/Azure).
- Experience implementing Zero Trust identity models and privileged access management frameworks.
- Strong understanding of identity governance, compliance requirements, and audit processes.
- Proven track record of leading high-performing teams and delivering complex, cross-functional programs.
- Excellent communication, influencing, and stakeholder management skills.
Skills
IAM, SSO, MFA, RBAC, Abac, Pam, SAML, OIDC, OAuth, Zero Trust
Similar jobs
Security Engineering jobsLeads a hands-on security engineering function spanning AI security, application and cloud security, detection and response, identity, and compliance controls. The role requires 8+ years of security engineering experience, deep AWS expertise, production code review ability, and experience operating in PCI DSS scope.
Owns production-edge security for enterprise financial-institution connectivity, including PKI, mTLS, AWS networking, webhook security, and vulnerability remediation. Requires 6+ years of hands-on platform, infrastructure, or network security engineering experience.
Leads interpretation and productization of federal compliance controls for Vanta’s public-sector platform, translating FedRAMP and related frameworks into technically testable guidance, automated detectors, mappings, and machine-readable authorization workflows. Requires 8–10+ years of hands-on federal compliance experience, especially FedRAMP program and SSP work.
Build secure, large-scale platforms, controls, monitoring, and AI-augmented pipelines that improve Snowflake’s cloud security posture across hundreds of millions of assets and multiple cloud providers. Requires 5+ years of software engineering experience and expertise in secure distributed systems.
Leads enterprise network architecture, cloud connectivity, security, operations, and incident response across corporate and manufacturing environments. Requires 10+ years of network engineering experience, people leadership, AWS networking expertise, and strong network security knowledge.