> Markdown version of [/jobs/ext/1319468-authentication-services-leader-cybersecurity-identity-access-management](https://www.wearedevelopers.com/jobs/ext/1319468-authentication-services-leader-cybersecurity-identity-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Authentication Services Leader - Cybersecurity Identity & Access Management - **Company:** 3M - **Location:** Maplewood, MN, United States - **Experience:** Expert - **Salary:** $164,612.0 - $201,193.0 - **Contract:** Permanent contract - **Skills:** Microsoft Access, Active Directory, Active Directory Federation Services, Domain Controllers, Amazon Web Services, User Authentication, Authentication Protocols, Microsoft Azure, Cyber Security, Multi-Factor Authentication, Identity and Access Management, Python (Programming Language), Lightweight Directory Access Protocols (LDAP), OAuth, OpenID, PCI Data Security Standards, Public Key Infrastructure, Windows PowerShell, Azure Active Directory, Zero Trust Network Access, Security Assertion Markup Language (SAML), Single Sign-On, SQL Databases, SSL Certificate Management, Google Cloud, Customer Identity Access Management, Information Technology, Cloud Migration - **Published:** July 17, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=0319db932d663f3f ## About the Role * High School Diploma (verified and completed prior to start) and 8 years of experience in Information Technology, Computer Science, IAM Engineering, or Information Security in a private, public, government, or military environment. OR * Bachelor's degree or higher (verified and completed prior to start) and Six (6) years of experience in Information Technology, Computer Science, IAM Engineering, or Information Security, in a private, public, government, or military environment. AND * Three (3) years of experience in a leadership or managerial role Additional qualifications that could help you succeed even further in this role include: * Expert-level experience in Active Directory design, architecture, and optimization * Deep expertise in Microsoft Identity technologies including Entra ID, Active Directory, LDAP, and ADFS * Strong understanding of federation protocols such as SAML, OAuth, and OIDC * Relevant certifications (e.g., CISSP, CISM, Microsoft Certified: Identity and Access Administrator Associate) * Strong understanding of cloud identity management (AWS, Azure, GCP) * Experience implementing Zero Trust architectures * Proficiency in scripting and automation (PowerShell, Python, SQL) * Familiarity with CIAM, PKI, and certificate management * Strong communication, stakeholder engagement, and project management skills * Ability to translate complex technical concepts into strategic business outcomes ## Description As the Authentication Services Leader within our Cybersecurity Identity & Access Management (IAM) team, you will be responsible for shaping and executing the strategic vision for authentication services across the enterprise. You will lead a team of IAM professionals, drive innovation in authentication technologies, and ensure secure, scalable, and compliant access to systems and applications. In this role, you will: * Lead and develop a high-performing IAM team, fostering a culture of innovation, accountability, and continuous improvement. * Define and execute the strategic roadmap for authentication services, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Active Directory architecture. * Serve as a technical authority on authentication technologies, with deep expertise in Microsoft's Identity stack, including: + Microsoft Entra ID (formerly Azure AD): tenant configuration, hybrid identity, conditional access, identity protection, and seamless SSO. + Active Directory (AD): expert-level design, architecture, optimization, group policy management, replication, and domain controller operations. + Microsoft Entra ID Governance: access reviews, entitlement management, lifecycle workflows, and privileged identity management (PIM). + Microsoft Entra External ID: B2B and B2C federation and external user collaboration. * Provide expert-level guidance on directory services, including Active Directory, LDAP, and ADFS, ensuring secure and efficient identity resolution and authentication. * Drive adoption of modern federation and authentication protocols, including SAML, OAuth, and OIDC, across internal and external platforms. * Collaborate with senior leadership and cross-functional teams to integrate IAM strategies with enterprise architecture, cloud transformation, and Zero Trust initiatives. * Ensure compliance with regulatory frameworks (SOX, HIPAA, PCI-DSS, ISO 27001) through effective access controls and audit practices. * Evaluate emerging technologies and trends, recommending enhancements to authentication infrastructure and user experience. * Mentor and coach team members, promoting technical excellence and career growth. * Manage vendor relationships and contracts related to IAM platforms and services., All US-based 3M full time employees will need to sign an employee agreement as a condition of employment with 3M. This agreement lays out key terms on using 3M Confidential Information and Trade Secrets. It also has provisions discussing conflicts of interest and how inventions are assigned. Employees that are Job Grade 7 or equivalent and above may also have obligations to not compete against 3M or solicit its employees or customers, both during their employment, and for a period after they leave 3M. Learn more about 3M's creative solutions to the world's problems at www.3M.com or on Instagram, Facebook, and LinkedIn @3M. Responsibilities of this position include that corporate policies, procedures and security standards are complied with while performing assigned duties. Safety is a core value at 3M. All employees are expected to contribute to a strong Environmental Health and Safety (EHS) culture by following safety policies, identifying hazards, and engaging in continuous improvement. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Going Beyond Passwords: The Future of User Authentication](https://www.wearedevelopers.com/videos/714-going-beyond-passwords-the-future-of-user-authentication) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Get started with securing your cloud-native Java microservices applications](https://www.wearedevelopers.com/videos/123-get-started-with-securing-your-cloud-native-java-microservices-applications) - [MFA? Game over! Watch your protection collapse – live](https://www.wearedevelopers.com/videos/100322-mfa-game-over-watch-your-protection-collapse-live) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [From developer to manager – what does it take to become an engineering manager?](https://www.wearedevelopers.com/magazine/42-from-developer-to-manager-what-does-it-take-to-become-an-engineering-manager) - [The top 200 passwords of 2024 can be cracked in less than a second](https://www.wearedevelopers.com/magazine/502-the-top-200-passwords-of-2024-can-be-cracked-in-less-than-a-second)