IAM Product Owner

KeyCorp Insurance Agency USA Inc.
Cleveland, OH, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$96,000.0 - $181,000.0
Working hours
Regular working hours
Job source

Tech stack

Agile Methodology Cyber Security Multi-Factor Authentication Identity and Access Management OAuth OpenID Ping (Networking Utility) Zero Trust Network Access Security Assertion Markup Language (SAML) Single Sign-On Okta SailPoint

Job description

The Product Owner for SSO (Single Sign-On) and MFA (Multi-Factor Authentication) is responsible for defining, prioritizing, and delivering identity authentication capabilities that secure enterprise access across workforce and customer platforms. This role owns the product lifecycle for authentication services-including federation, adaptive authentication, and strong authentication controls-ensuring alignment with security, compliance, and user experience objectives., Define and maintain the product roadmap for SSO and MFA capabilities (e.g., federation, conditional access, password less, adaptive authentication). Align roadmap to enterprise IAM strategy and Zero Trust architecture. Incorporate regulatory requirements (SOX, PCI, FFIEC) into product direction., Drive design and implementation of SSO (SAML, OIDC, OAuth), MFA (push, SMS, hardware tokens, FIDO2), adaptive authentication, and conditional access policies. Ensure integration with identity lifecycle and directory services., Act as the bridge between business units, IAM engineering, security architecture, and risk teams. Drive alignment on authentication standards and onboarding priorities.

Requirements

5+ years in Product Owner, Product Manager, or IAM roles. Strong expertise in SSO and MFA technologies. Experience in Agile environments. Understanding of IAM ecosystems., Experience in regulated industries. Knowledge of SOX and PCI. Experience with platforms such as Okta, Entra ID, Ping, or SailPoint., Analytical thinking, stakeholder communication, data-driven decision-making, and ability to balance security with usability., Qualified individuals with disabilities or disabled veterans who are unable or limited in their ability to apply on this site may request reasonable accommodations by emailing HR_Compliance@keybank.com.

Benefits & conditions

This position is eligible to earn a base salary in the range of $96,000.00 - $181,000.00 annually. Placement within the pay range may differ based upon various factors, including but not limited to skills, experience and geographic location. Compensation for this role also includes eligibility for incentive compensation which may include production, commission, and/or discretionary incentives.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:52 min

Implementing IAM with Keycloak and OpenID Connect

Thomas Südbröcker · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

4:35 min

Setting up passwordless federated identity configuring OpenID Connect patterns

Marcel Lupo · LIVE

2:22 min

Adapting OpenID Connect for decentralized data sharing

Adam Larter Adam Larter · World Congress 2024

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all