Manager Identity and Access Management - Cyber Security & TSOC

FirstEnergy Corp.
Akron, OH, United States
1 day ago
Apply on www.jofdav.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$77,350.0 - $139,800.0
Working hours
Regular working hours
Job source

Tech stack

Data Analysis Application Lifecycle Management Authentication Protocols Microsoft Azure Cyber Security Information Systems Data Governance Information Leak Prevention Disaster Recovery Multi-Factor Authentication Identity and Access Management Intrusion Detection and Prevention
+13 more
OAuth Ping (Networking Utility) Role-Based Access Control Openid Connect Azure Active Directory Security Assertion Markup Language (SAML) Single Sign-On Enterprise Software Applications Okta Information Technology Operational Systems SailPoint Cyber Warfare

Job description

We’re looking for a strategic, technically skilled leader to shape the future of identity and access management platforms at FirstEnergy. In this role, you’ll lead a talented team of system administrators, driving innovation in identity, authorization and access mgmt for both internal and external users. The Mgr IAM is responsible for ensuring that Service Level Agreements are being met, as well as evaluating new technologies and processes for use within the five IAM pillars.

You’ll work closely with teams across Cybersecurity, IT, HR, Tx, Dx, Supply Chain and other key business stakeholders to deliver secure, scalable solutions in a hybrid environment., * Lead the Identity & Access Management (IAM) program, ensuring secure and efficient management of user identities, authentication, authorization, and access across enterprise systems.

  • Develop and execute IAM strategy, roadmap, and operating model aligned with cybersecurity, business, and regulatory requirements.
  • Manage a talented team responsible for identity lifecycle, including onboarding, transfers, role changes, and offboarding of employees, contractors; in coordination with HR and IT.
  • Maintain a high level of technical knowledge of platforms supported by attending webinars, conferences and workshops; reviewing professional publications and research and establishing personal networks
  • Responsible for managing staff performance by setting objectives, goals, priorities, tracking performance and providing feedback. Assists in personal growth of staff through individual development plans, mentoring, coaching and stretch assignments.
  • Oversee the management of the infrastructure, hardware and software including their SLAs required to support all aspects of the IAM pillars: Identity Governance, Access Mgmt, Privileged Access Mgmt, Password Mgmt and Identity Analytics and Intelligence.
  • Lead enterprise authentication services including Multi-Factor Authentication (MFA), Single Sign-On (SSO), Conditional Access, federation services, and passwordless authentication technologies.
  • Establish and enforce role-based access control (RBAC) and least privilege principles across information technology and operational technology environments.
  • Ensure compliance with regulatory standards.
  • Ensure adherence to cybersecurity, data governance and data loss prevention policies. Enforce role-based access control (RBAC) and multi-factor authentication (MFA). Monitor and enforce access controls and permissions.
  • Contribute to long-term technology roadmaps, budget planning, forecasting (both Labor and OTL), and resource allocation. Lead multiple projects simultaneously, ensuring timely delivery within scope and budget.
  • Lead investigations and resolve IAM related incidents. Implement corrective actions and continuous improvement measures, including updating procedures and processes. Provide off-hours support for major incidents and critical project activities as needed.
  • Integrate IAM controls with cyber operations, threat detection, and insider threat monitoring capabilities.
  • Support secure remote access, vendor access management, and privileged access controls for operational technology (OT) and critical infrastructure environments.
  • Maintain strong segregation of duties between IAM operations, access governance, and compliance oversight functions.
  • Serve as the senior IAM leader during regulatory audits, compliance assessments, and cybersecurity reviews.
  • Provide input to contract negotiations for required software, hardware and consulting, to stay within budget.
  • Partner with Cyber Operations, Infrastructure, HR, Compliance, Internal Audit, and business stakeholders to ensure identity controls support business objectives while reducing cyber risk.
  • Champion FE’s Core Values and Behaviors through coaching and by personal example.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, Engineering, or a related technology field.
  • MBA is preferred.
  • Minimum of 7 years experience in cyber security, IT infrastructure or application project roles, with demonstrated leadership experience.
  • Deep knowledge of Identity & Access Management Technologies including but not limited to: Microsoft Entra ID, Azure B2C, Okta, Ping Identity, SailPoint, OneIdentity, PAM Solutions, Token Management Platforms, IT Service Mgmt Platforms, and various Certificate Lifecycle Management platforms
  • Experience with authentication Protocols: SAML, OAuth, OpenID Connect is required.
  • Experience with compliance activities such as: SOX, CIP.
  • Preferred certifications: CISSP, CISM, or IAM-specific certifications.
  • Strong communication (both written and verbal) and interpersonal skills
  • Proven ability to collaborate across departments and influence stakeholders
  • Strategic mindset with a focus on innovation and continuous improvement
  • Ability to effectively manage a large, budgeted portfolio, forecast and re-forecast dollars for both Labor and OTL.
  • Ability to work with all levels of management throughout the organization.
  • Strong knowledge of core architectural design principles to achieve optimal availability and disaster recovery availability.
  • Ability to communicate complex and technical issues to a diverse population, orally and in writing, in an easily understood, authoritative and actionable manner.
  • Demonstrated understanding of best practices in system and application management encompassing strategies, policies, principles, procedures and standards.

About the company

FirstEnergy at a Glance

We are a forward-thinking electric utility powered by a diverse team of employees committed to making customers’ lives brighter, the environment better and our communities stronger.

FirstEnergy (NYSE: FE) is dedicated to safety, reliability, and operational excellence. Headquartered in Akron, Ohio, FirstEnergy includes one of the nation’s largest investor-owned electric systems, more than 24,500 miles of transmission lines that connect the Midwest and Mid-Atlantic regions, and a regulated generating fleet with a total capacity of 3,780 megawatts.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.jofdav.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

4:37 min

Architecting single sign-on flows across multiple application domains

Gift Egwuenu · World Congress 2023

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:08 min

Managing complex structures and corporate guidelines

Alexandra Petri · World Congress 2023

Videos

See all

Related articles

See all