> Markdown version of [/jobs/ext/267045-sr-manager-identity-access-management](https://www.wearedevelopers.com/jobs/ext/267045-sr-manager-identity-access-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Manager - Identity & Access Management - **Company:** Daniel J. Edelman, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $136,700.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Business Software, RAID, Human Resources Information System (HRIS), Identity and Access Management, Microsoft Software, OAuth, OpenID, Azure Active Directory, Zero Trust Network Access, Runbook, Security Assertion Markup Language (SAML), User Environment Management, Enterprise Software Applications, Okta, Cyberark, Customer Identity Access Management, Restful APIs - **Published:** May 19, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9c16db769ebc2a69 ## About the Role As the Sr. Manager, Identity & Access Management (IAM), you will own the IAM roadmap and portfolio, drive cross-functional delivery through strong program management, and partner closely with Security, Infrastructure, End-User Computing, Application Owners, Product/Engineering, and GRC to standardize identity controls and enable secure, scalable workforce access. If you have a bachelor's degree in a related field (or equivalent experience) and 7+ years of related IAM experience, this may be the opportunity for you., * 7+ years of progressive IAM experience, including design, implementation, and operational support of enterprise IAM platforms. * 3+ years of people leadership experience, including building teams, mentoring engineers, and managing through influence across multiple stakeholders. * Demonstrated program and portfolio management capability (roadmaps, delivery planning, prioritization, executive communications, risk/issue management, and vendor management). * Hands-on experience across core IAM domains: Identity Services, IDLCM, ID Governance, SSO, MFA, and PIM/PAM. * Strong expertise with the following technologies (or equivalent): Active Directory, Microsoft Entra ID (Azure AD), Okta, and CyberArk. * Deep knowledge of IAM standards and protocols such as SAML 2.0, OIDC, OAuth 2.0, SCIM, and modern authentication methods (e.g., FIDO2/WebAuthn preferred). * Experience integrating IAM solutions with enterprise applications using REST APIs, connectors, and event-driven patterns; ability to troubleshoot complex authentication/authorization flows end-to-end. * Experience operating IAM services in regulated environments (e.g., SOC 2), including control design, evidence collection, and audit readiness. * Strong written and verbal communication skills, including the ability to write clear standards, runbooks, and executive-ready status reporting. * Bachelor's degree in a related field (or equivalent experience). * Preferred: Relevant certifications (e.g., CISSP, CISM, CIAM, Microsoft Identity, Okta, CyberArk) and experience with identity governance tooling and access certification campaigns. ## Description * Build, lead, and develop an IAM engineering and operations team (employees and managed partners), including hiring, onboarding, coaching, performance management, and succession planning. * Own the IAM strategy, operating model, and multi-quarter roadmap, translating business and security priorities into an executable plan with clear milestones, dependencies, and measurable outcomes. * Provide senior leadership for the design, implementation, and operations of core IAM domains, including Identity Services, Identity Lifecycle & Credential Management (IDLCM), Identity Governance (IDG), SSO, MFA, and PIM/PAM. * Drive the architecture and operational maturity of key technologies in these domains, including Active Directory (AD), Microsoft Entra ID (Azure AD), Okta, and CyberArk, ensuring secure configuration, scalability, reliability, and supportability. * Establish and manage program governance: intake/prioritization, delivery plans, RAID management, stakeholder communications, budget/vendor oversight, and executive reporting. * Lead identity lifecycle processes and automation (joiner/mover/leaver), access provisioning and deprovisioning, role/entitlement models, and integrations with HRIS, ITSM, and business applications. * Own SSO and federation standards and integrations (e.g., SAML/OIDC), ensuring a consistent end-user experience and secure access for workforce identities (employees, contractors) across enterprise applications. * Mature MFA and modern authentication controls, including policy design, conditional access patterns, and adoption/rollout plans that reduce friction while improving security posture. * Lead Privileged Identity / Access Management (PIM/PAM) outcomes: privileged account governance, vaulting, session controls, approvals/workflows, and operational processes to minimize standing privilege. * Define and manage service reliability for IAM platforms: SLAs/SLOs, capacity planning, resiliency, monitoring/alerting, incident/problem management, and runbooks. * Partner with Security/GRC to support SOC 2 and other audit/compliance activities; ensure IAM controls are documented, evidenced, and continuously improved. * Establish metrics and reporting for IAM effectiveness (e.g., access review completion, JML timeliness, MFA adoption, privileged access reduction, platform availability), and drive continuous improvement. * Collaborate with Infrastructure, Endpoint, and Application/Product teams to implement Zero Trust identity patterns and enforce least privilege and strong authentication across environments. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [Organizational Change Through The Power Of Why - DevSecOps Enablement](https://www.wearedevelopers.com/videos/478-organizational-change-through-the-power-of-why-devsecops-enablement) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Should Tech Managers Be Developers First? Pros and Cons](https://www.wearedevelopers.com/magazine/327-should-tech-managers-be-developers-first-pros-and-cons) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Now is the time for industrialized software development](https://www.wearedevelopers.com/magazine/601-now-is-the-time-for-industrialized-software-development) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer)