Mgr, Identity & Access Mgmt
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+9 more
Job description
We are seeking a highly technical Manager of IAM Engineering to lead and mentor a global team of Identity Engineers at Royal Caribbean Group. This is not a traditional people-management role or a standard COTS implementation position. We require an engineering leader who will drive the architecture, development, and execution of complex identity services across a massive global enterprise. You will move us beyond out-of-the-box vendor configurations, architecting custom solutions within environments heavily reliant on Entra ID, PingIDM, and PingAM. Your mandate is to engineer scalable, API-first identity lifecycles, eliminate decentralized provisioning models, and drastically reduce standing privileges through advanced automation., * Technical Leadership & Mentorship: Lead, code alongside, and mentor a distributed team of IAM engineers. You will evaluate architecture, review code (PowerShell, Python, API scripts), and raise the technical baseline of the team.
- AI-Augmented Development: Drive the extensive use of AI coding assistants and generative models within the IAM engineering lifecycle to accelerate script development, automate complex policy generation, and optimize reconciliation logic.
- Custom Engineering over Configuration: Drive the engineering of custom SCIM endpoints, token exchange mechanisms, and complex reconciliation scripts to integrate disparate systems (including massive ERP environments like Oracle Fusion) into our centralized identity fabric.
- Centralized Provisioning & Compliance: Architect and enforce highly consistent, automated, and centralized access provisioning models. You will engineer out the human elements and decentralized processes that typically lead to SOX audit vulnerabilities.
- Advanced Privilege Engineering: Lead the technical transition away from static privileged access. You will oversee the engineering of Just-In-Time (JIT) elevation workflows within Entra ID and our PAM environments, targeting a near-zero standing privilege baseline.
- Platform Mastery: Manage and extend the technical capabilities of our core IAM platforms (Entra ID, Ping Identity suite). You will design solutions that push the boundaries of these tools rather than settling for standard deployments.
- Continuous Automation: Define and execute a strategy for modernizing IAM capabilities, leveraging advanced scripting, self-service workflows, and AI-driven intelligence for access risk analysis.
Requirements
- Engineering Foundation: 10+ years of progressive experience in Identity & Access Management with a mandatory background in software engineering, scripting, or systems architecture. You must be able to read, write, and review code.
- Technical Leadership: 5+ years of experience acting as an engineering lead or technical manager for highly skilled development/engineering teams. Pure people managers will not be considered.
- AI Security & Development: Proven experience utilizing AI to accelerate software development, coupled with a deep architectural understanding of securing AI workloads, managing workload identities, and protecting API endpoints for enterprise AI models.
- Core IAM Stack: Deep, hands-on architectural expertise with Microsoft Entra ID and the Ping Identity stack (PingAM, PingIDM).
- Protocol & Integration Mastery: High proficiency in engineering solutions utilizing federation and provisioning protocols (OIDC, SAML, SCIM, OAuth2, REST APIs).
- Automation: Extensive experience writing complex automation, reconciliation, and integration scripts using PowerShell, Python, or similar languages.
- Security & Compliance: Demonstrated ability to engineer automated SOX controls and architect Zero Trust principles into workforce IAM, specifically regarding JIT elevation and PAM integrations.
- Education: Bachelor’s degree in Computer Science, Software Engineering, Cybersecurity, or equivalent technical experience.
About the company
Journey with us! Combine your career goals and sense of adventure by joining our exciting team of employees. Royal Caribbean Group is pleased to offer a competitive compensation and benefits package, and excellent career development opportunities, each offering unique ways to explore the world.
We are proud to be the vacation-industry leader with global brands - including Royal Caribbean International, Celebrity Cruises and Silversea Cruises - the most innovative fleet and private destinations, and the best people. Together, we are dedicated to turning the vacation of a lifetime into a lifetime of vacations for our guests.
The Royal Caribbean Group’s Global Information Security Team has an exciting career opportunity for a full time Manager, Identity & Access Management reporting to the Director, Identity & Access Management ., It is the policy of the Company to ensure equal employment and promotion opportunity to qualified candidates without discrimination or harassment on the basis of race, color, religion, sex, age, national origin, disability, sexual orientation, sexuality, gender identity or expression, marital status, or any other characteristic protected by law. Royal Caribbean Group and each of its subsidiaries prohibit and will not tolerate discrimination or harassment.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Navigating the AI Shift
The Best X (Twitter) Accounts for Developers
How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again
Dev Digest 120 - Apple and peers