> Markdown version of [/jobs/ext/3390783-iam-product-owner](https://www.wearedevelopers.com/jobs/ext/3390783-iam-product-owner). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IAM Product Owner - **Company:** MFA INC - **Location:** Brooklyn, OH, United States (Remote available) - **Experience:** Expert - **Salary:** $96,000.0 - $181,000.0 - **Contract:** Permanent contract - **Skills:** Agile Methodology, Audit Trail, User Authentication, Cyber Security, Identity and Access Management, OAuth, OpenID, Ping (Networking Utility), Security Assertion Markup Language (SAML), Okta, SailPoint - **Published:** September 10, 2026 - **Apply:** https://www.builtincolorado.com/job/iam-product-owner/11139447?handler=ApplyRedirect ## About the Role 5+ years in Product Owner, Product Manager, or IAM roles. Strong expertise in SSO and MFA technologies. Experience in Agile environments. Understanding of IAM ecosystems., Experience in regulated industries. Knowledge of SOX and PCI. Experience with platforms such as Okta, Entra ID, Ping, or SailPoint., Analytical thinking, stakeholder communication, data-driven decision-making, and ability to balance security with usability. ## Description The Product Owner for SSO (Single Sign-On) and MFA (Multi-Factor Authentication) is responsible for defining, prioritizing, and delivering identity authentication capabilities that secure enterprise access across workforce and customer platforms. This role owns the product lifecycle for authentication services-including federation, adaptive authentication, and strong authentication controls-ensuring alignment with security, compliance, and user experience objectives. Key Responsibilities1. Product Strategy & Roadmap Define and maintain the product roadmap for SSO and MFA capabilities (e.g., federation, conditional access, password less, adaptive authentication). Align roadmap to enterprise IAM strategy and Zero Trust architecture. Incorporate regulatory requirements (SOX, PCI, FFIEC) into product direction. 2. Backlog Ownership & Delivery Own and prioritize the product backlog for SSO/MFA platforms. Translate business, risk, and compliance needs into actionable user stories. Partner with engineering teams using Agile methodologies. Ensure features meet auditability and traceability requirements. 3. Authentication & Access Control Expertise Drive design and implementation of SSO (SAML, OIDC, OAuth), MFA (push, SMS, hardware tokens, FIDO2), adaptive authentication, and conditional access policies. Ensure integration with identity lifecycle and directory services. 4. Risk, Compliance & Audit Alignment Ensure authentication controls meet internal security standards and regulatory expectations. Partner with risk, audit, and cybersecurity teams. Maintain evidence for MFA enforcement, SSO policies, and access controls. 5. Stakeholder Management Act as the bridge between business units, IAM engineering, security architecture, and risk teams. Drive alignment on authentication standards and onboarding priorities. 6. Platform Adoption & Integration Lead onboarding of applications to SSO and MFA platforms. Define integration patterns and prioritize high-risk applications. 7. Metrics & Continuous Improvement Track KPIs such as MFA coverage, SSO adoption, and authentication success rates. Drive continuous improvement in security posture and user experience. ## Related Videos - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [Delegating the chores of authenticating users to Keycloak](https://www.wearedevelopers.com/videos/1558-delegating-the-chores-of-authenticating-users-to-keycloak) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) - [No More Post-its: Boost your login security with APIs](https://www.wearedevelopers.com/videos/1043-no-more-post-its-boost-your-login-security-with-apis) - [Advanced Cypress: custom assertions and tasks](https://www.wearedevelopers.com/videos/790-advanced-cypress-custom-assertions-and-tasks) - [Break the Chain: Decentralized solutions for today’s Web2.0 privacy problems](https://www.wearedevelopers.com/videos/928-break-the-chain-decentralized-solutions-for-today-s-web2-0-privacy-problems) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [ I Gave a Video Editor More Autonomy Than a Trading Bot. On Purpose.](https://www.wearedevelopers.com/magazine/773-i-gave-a-video-editor-more-autonomy-than-a-trading-bot-on-purpose) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship)