Technical Program Manager, Identity and Access Management
Technology
Job Description
Job DescriptionRole Summary
We are hiring a Technical Program Manager to own the identity and access management (IAM) domain across our platform. You will drive the programs that govern authentication, authorization, identity federation, and service identity, coordinating engineering, security, and product teams to deliver a coherent and auditable access model. This is a cross-functional leadership role for someone who can translate complex identity architecture into clear roadmaps, milestones, and delivery outcomes.
What You Will Do
- Own the end-to-end program for the IAM domain, covering authentication, authorization, identity brokering, and federation across multiple upstream identity providers.
- Build and maintain the IAM roadmap, sequencing dependencies across engineering, security, and product to hit committed delivery dates.
- Coordinate delivery of SSO, OIDC and SAML federation, SCIM provisioning, RBAC, and fine-grained authorization capabilities.
- Drive programs around service identity, secrets governance, and machine-to-machine authentication.
- Run the operating cadence: planning, standups, risk reviews, and executive status reporting for the IAM portfolio.
- Track and resolve cross-team dependencies, escalating blockers with clear options and recommendations.
- Partner with security and compliance to ensure identity controls meet audit, regulatory, and customer assurance requirements.
- Maintain program documentation, decision records, and architecture alignment so the access model stays consistent as it scales.
- Define and report on metrics for delivery health, adoption, and control coverage across the IAM domain.
What You Bring
- 5+ years in technical program management, with a track record shipping complex, cross-functional platform or infrastructure programs.
- Hands-on working knowledge of IAM concepts: authentication and authorization flows, OIDC, OAuth 2.0, SAML, SCIM, RBAC and ABAC, and identity federation across providers such as Entra ID, Okta, and Ping.
- Familiarity with identity brokering, single sign-on, token lifecycle, and session management.
- Understanding of service identity, secrets management, certificate and PKI concepts, and machine-to-machine authentication.
- Strong grasp of security and compliance drivers for access control, including audit and least-privilege principles.
- Proven ability to run structured delivery: roadmapping, dependency management, risk tracking, and executive communication.
- Excellent written and verbal communication, with the ability to make technical trade-offs legible to both engineers and executives.
Nice to Have
- Experience delivering IAM programs in a multi-tenant or regulated-customer environment.
- Exposure to zero-trust architecture and policy-based access enforcement.
- Familiarity with GitOps or declarative configuration models for identity and access policy.
- Background working alongside architecture and security functions on control design.
- Relevant certifications in program management, cloud, or security.
