> Markdown version of [/jobs/ext/1397407-saas-enablement-governance-lead](https://www.wearedevelopers.com/jobs/ext/1397407-saas-enablement-governance-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SaaS Enablement & Governance Lead - **Company:** Legora, Inc. - **Location:** New York, NY, United States - **Experience:** Expert - **Salary:** $215,000.0 - $254,000.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Business Systems, Software as a Service, Data Retention, Identity and Access Management, IT Management, Python (Programming Language), Netsuite, OpenID, Procurement Software, Security Assertion Markup Language (SAML), Systems Integration, Enterprise Software Applications, Okta, Large Language Models, Coupa Procurement, Human in the Loop, Workday, Servicenow - **Published:** July 23, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=56b3ef476799b7ea ## About the Role * 5+ years in software/SaaS asset management, IT vendor management, business systems, IT/enterprise applications, or IT procurement, with clear ownership of license and vendor work. * Cost optimization: a track record of license rightsizing, renewal negotiation, tool consolidation, and measurable savings. * Commercial fluency: comfortable owning negotiations and reading licensing models, including consumption/usage-based and AI pricing, true-ups, and contract terms. * Portfolio tooling: has run SaaS discovery, utilization, and license management at scale (commercial platform, pipelines they built, or both), with grounded opinions on when to buy and when to build. * Automation & integration: builds with LLM/agent workflows, iPaaS, and scripts against SaaS APIs (e.g., Python), and uses AI tools daily in their own work. * Identity governance: SSO/SAML/OIDC and SCIM (Okta or Entra) and how access drives license consumption. * AI-era judgment: has evaluated and governed AI tools and can read AI-vendor data terms. * Analytical & cross-functional: builds utilization and forecast models, and partners credibly with Finance, Procurement, Security, and tool owners. Nice to have * Experience at a legal, financial, or otherwise regulated / high-trust company. * Has stood up a FinOps practice; exposure to procurement and finance systems (Zip, Coupa, NetSuite, Workday/Adaptive). * Built process and tooling from scratch at a fast-scaling company. * Certifications: ITIL, FinOps Certified Practitioner, or ServiceNow CIS-SAM. ## Description We are hiring our first SaaS Enablement & Governance Lead to own the lifecycle of Legora's entire SaaS and AI portfolio, from enterprise platforms down to the tail of team-level and expensed purchases: intake, renewal, decommissioning, and everything between. You'll be based in our New York office, reporting to the Head of IT. Procurement works the strategic head of spend. This role is the oversight layer across all of it: the ~90% of applications that never reach a sourcing process are where risk and sprawl accumulate, and they are yours. We build AI for lawyers, and we hold our own software estate to the bar our customers hold us to. You'll partner with FP&A, Procurement, and Security, and run the function the way an AI-native company should: agents and automation do the repetitive work, your time goes to judgment. Whether that runs on a commercial platform or tooling you build with LLMs and agents is your call to make and defend. What You'll Do Software & AI asset management * Own the single source of truth for every SaaS and AI application: licenses, entitlements, owners, integrations, and dependencies, kept current by automated discovery. Security's supply-chain-risk program builds its dependency and criticality map from this record, one inventory, two lenses. * Track utilization against entitlements, reclaim inactive and duplicate licenses, and rightsize the portfolio against explicit cost-avoidance targets. * Hunt down shadow IT and shadow AI, expense-report purchases, self-serve signups, free-tier tools, and bring each one under management with an owner, a risk posture, and a renewal date. * Manage usage- and token-based pricing, and forecast the volatile AI spend that per-seat license counts miss. AI tool governance * Own the commercial and governance substrate for AI tools, the sanctioned-vs-restricted catalog, licensing, and spend. AI Enablement drives adoption and training; Corporate Security enforces the technical guardrails. * Enforce AI vendor terms commercially, training-on-data, data retention, confidentiality, and model-change clauses in contracts and renewals, with risk and compliance review owned by Security and Legal. * Build agentic workflows for the function itself (discovery, license reclamation, renewal tracking, provisioning), with a human in the loop where judgment demands it. Anything manual twice a quarter gets automated. Vendor management * Own software and SaaS vendor relationships as an engineering-level partner: roadmap input, escalations, SLAs, and performance reviews. (Hardware, AV, and physical-site vendors sit with Workplace Technology.) * Build and run a single front door for software and AI requests: paved paths that encode security, privacy, and spend policy, so the sanctioned route is also the fastest one. Risk assessment routes to Security's supply-chain-risk program, whose requirements gate adoption. Renewals, cost optimization & FinOps * Own the renewals calendar across the full portfolio; forecast and surface renewals well ahead of deadlines so nothing auto-renews by default. * Partner with Procurement on strategic, high-spend negotiations; own commercial terms and true-ups across the long tail yourself. * Run FinOps for software and AI spend: consolidate overlapping tools, retire what isn't used, and execute decommissioning, contract wind-down, license teardown, access removal, with Security verifying risk closure on critical vendors. Configuration, integration & identity * Manage SaaS configuration as code where possible, auditable and version-controlled, remediating operational drift, with security posture findings owned by Corporate Security. * Build integrations against SaaS APIs where they serve the governance loop: discovery, utilization data, reclamation, and provisioning. * Onboard every application to SSO and SCIM as part of intake, and drive license reclamation from joiner/mover/leaver signals, on the identity platform Corporate Security owns, supplying the data for access reviews that Security runs. Governance, security, compliance & reporting * Own SaaS-related SOC 2 evidence and third-party application governance as the system owner. * Report utilization, savings, renewal pipeline, AI spend, and compliance to IT leadership and Finance, one number set that FP&A, Procurement, and Security all work from. ## Related Videos - [My Lawyer Merged My PR: Automating OSS Compliance at Scale](https://www.wearedevelopers.com/videos/100181-my-lawyer-merged-my-pr-automating-oss-compliance-at-scale) - [Destigmatizing the Workplace: Building Real Inclusion](https://www.wearedevelopers.com/videos/1492-destigmatizing-the-workplace-building-real-inclusion) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Our GitOps approach for deploying an Identity Provider and an API Gateway in a SaaS company](https://www.wearedevelopers.com/videos/776-our-gitops-approach-for-deploying-an-identity-provider-and-an-api-gateway-in-a-saas-company) - [WeAreDevelopers LIVE - How DevRel Makes Tech More Human](https://www.wearedevelopers.com/videos/2149-wearedevelopers-live-how-devrel-makes-tech-more-human) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) ## Related Articles - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [13 AI Tools You Have to Try](https://www.wearedevelopers.com/magazine/219-13-ai-tools-you-have-to-try) - [Dev Digest 137 - AI'm not sure about this](https://www.wearedevelopers.com/magazine/485-dev-digest-137-ai-m-not-sure-about-this) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Future of Open Source: A Deep Dive - Scott Chacon at WeAreDevelopers World Congress 2024](https://www.wearedevelopers.com/magazine/471-the-future-of-open-source-a-deep-dive-scott-chacon-at-wearedevelopers-world-congress-2024)