Technical Lead, Identity & Access Management
Applied Intuition4 months ago
Base Salary
$180k - $230k/yr
Responsibilities
- Define the long-term IAM strategy, roadmap, and operating model across the enterprise and product ecosystem.
- Assess and mature identity provider architecture for resilience and scalability.
- Drive identity systems toward Zero Trust principles.
- Automate identity lifecycle processes beyond traditional joiner-mover-leaver workflows.
- Implement and enforce RBAC and least-privilege policies for human and non-human identities.
- Centralize management of keys, tokens, and certificates across cloud and enterprise environments.
- Design and deliver privileged access management for enterprise IT and cloud engineering administrators.
- Implement scalable access management for AI agents and bots.
- Enable and enforce enterprise SSO in collaboration with IT applications and infrastructure teams.
- Own authentication protocol implementation and governance.
- Partner with engineering, security, IT, compliance, and product teams to deliver access-management capabilities and satisfy audit requirements.
- Translate identity requirements into technical plans and communicate tradeoffs to senior stakeholders.
Requirements
- 8–12+ years of experience in identity engineering, security engineering, or a closely related discipline.
- Hands-on architecture or engineering experience in cloud environments such as AWS, GCP, or Azure.
- Track record leading complex, cross-functional IAM programs from design through production.
- Deep expertise in directories, identity providers, federation, and SAML, OIDC, and OAuth 2.0.
- Practical experience implementing Zero Trust identity models and privileged access management frameworks.
- Strong understanding of identity governance, IGA tooling, and role lifecycle management.
- Hands-on experience with secrets management platforms such as HashiCorp Vault, AWS Secrets Manager, or GCP Secret Manager.
- Experience managing non-human and machine identities at scale.
- Experience building access controls for AI workloads, agents, or service accounts at scale.
- Familiarity with SCIM provisioning and automated IGA workflows.
- Excellent communication and influencing skills.
- Security certifications such as CISSP or GIAC are preferred.
- Knowledge of SOC 2, ISO 27001, NIST, or similar compliance frameworks and audit-support experience is preferred.
Benefits
- Primarily in-office work at an Applied Intuition office five days per week, with occasional remote-work flexibility.
- Comprehensive health, dental, vision, life, and disability insurance.
- 401(k) retirement benefits with employer match.
- Learning and wellness stipends.
- Paid time off.
- Potential equity compensation in the form of options or restricted stock units.