Manager, CIAM

Optimum

Bethpage (NY)

On-site

USD 134,000 - 220,000

Full time

16 hours ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Optimum in New York is seeking an experienced Manager of CIAM to define and execute the customer identity strategy, oversee day-to-day operations, and modernize authentication across the enterprise.

You will guide standards such as SSO, MFA, and passwordless, ensure regulatory compliance, and partner with Product, Security, and DevOps to deliver scalable identity solutions across digital products.

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field.
  • 7+ years of experience in Identity & Access Management, cybersecurity, or a related field.
  • 3+ years of experience leading or managing technical teams.
  • Hands-on experience with CIAM platforms and modern identity standards (OAuth2, OIDC, SAML, SCIM, FIDO2/WebAuthn).
  • Proven experience leading large-scale identity or authentication modernization initiatives.
  • Ability to translate complex IAM concepts into clear guidance for technical and non-technical stakeholders.
  • Experience operating high-availability systems, including SLO management and incident response.
  • Familiarity with compliance frameworks such as SOX, SOC 2, and PCI-DSS.

Responsibilities

  • Own and operate the enterprise customer identity platform, including IDP configuration, directory management, and user lifecycle processes.
  • Define and enforce identity standards across protocols such as OAuth2, OpenID Connect, SAML, and SCIM.
  • Design and maintain authentication policies, including adaptive and risk-based controls.
  • Oversee identity workflows for provisioning and de-provisioning across systems.
  • Ensure platform reliability and performance with SLOs, incident response, and continuous improvement.
  • Lead enterprise transition from legacy authentication to modern CIAM solutions.
  • Establish scalable authentication patterns (SSO, MFA, passwordless, federated identity).
  • Develop migration frameworks, playbooks, and reusable integration patterns for app teams.
  • Track adoption KPIs and report roadmap updates to senior leadership.
  • Evaluate capabilities like passkeys and device trust and align with security strategy.
  • Serve as IAM advisor to application teams on secure identity integrations.
  • Provide architectural guidance on authentication flows, token management, and session design.
  • Create developer resources and onboarding support.

Skills

IAM leadership
7+ years IAM
3+ years leading teams
OAuth2/OIDC/SAML/SCIM
CIAM platform experience
Identity & Access Management
High availability/SLOs
SOX/SOC 2/PCI-DSS

Education

Bachelor’s degree in CS/IS/Cybersecurity

Tools

CIAM platforms
AWS/Azure/GCP
Cloud IAM services
Passkeys/WebAuthn
SIEM integration
SDK review (Go/Java/Python/Node.js)

Job description

Are you looking to Optimize your life? Start your exciting path to a rewarding career today!

We are Optimum, a leader in the fast-paced world of connectivity, and we're seeking driven and enthusiastic professionals to join our team, empower lives, fuel businesses, and drive innovation. Connectivity is now longer a luxury, but a necessity. A career at Optimum means you'll be enabling progress and enhancing lives by providing reliable, high-speed connectivity solutions that keep the world connected. Our successes, now and in the future, are powered by our amazing product, a commitment to our people and culture, and the connections we make in our communities.

Job Summary

We are seeking an experienced and forward-thinking Manager of Customer Identity and Access Management (CIAM) to lead our enterprise identity practice. In this role, you will define and execute the strategy for our customer identity platform while overseeing day-to-day operations. You will play a critical role in modernizing authentication across the organization, transitioning from legacy approaches to secure, scalable, standards-based identity solutions. This role combines strategic direction, architectural oversight, and team leadership. Your work will directly impact the security posture, regulatory compliance, and customer experience of our digital products.

Responsibilities
CIAM Platform Ownership & Governance
  • Own and operate the enterprise customer identity platform, including IDP configuration, directory management, and user lifecycle (Joiner/Mover/Leaver) processes.
  • Define and enforce identity standards across protocols such as OAuth2, OpenID Connect (OIDC), SAML, and SCIM.
  • Design and maintain authentication policies, including adaptive and risk-based controls, to balance security and user experience.
  • Oversee identity workflows for provisioning, de-provisioning, and orchestration across systems.
  • Ensure platform reliability and performance, including service-level objectives (SLOs), incident response, and continuous improvement.
Authentication Modernization & Engineering Enablement
  • Lead the enterprise transition from legacy authentication approaches to modern CIAM solutions.
  • Establish scalable authentication patterns, including SSO, MFA, passwordless, and federated identity.
  • Develop migration frameworks, playbooks, and reusable integration patterns for application teams.
  • Track adoption progress, define KPIs, and communicate roadmap updates, risks, and outcomes to senior leadership.
  • Evaluate emerging capabilities (e.g., passkeys, device trust) and align adoption with the enterprise security strategy.
Application Partnership & Developer Enablement
  • Serve as the primary IAM advisor to application development teams, guiding secure and scalable identity integrations.
  • Provide architectural guidance on authentication flows, token management, and session design.
  • Build developer enablement resources, including documentation, reference implementations, and onboarding support.
  • Establish engagement models (e.g., office hours, communities of practice) to promote self-service adoption.
  • Partner with platform engineering, DevOps, and API teams to integrate identity into CI/CD pipelines and modern architectures.
Security, Risk & Compliance
  • Ensure CIAM platform compliance with regulatory and contractual requirements (e.g., SOX, PCI-DSS, SOC 2) through embedded controls and audit readiness.
  • Partner with Security, GRC, and SOC teams on identity risk management, including access reviews and threat detection.
  • Define and monitor identity security signals (e.g., account takeover, credential abuse) and support SIEM integration.
  • Oversee vulnerability management and security posture of identity systems and supporting services.
Team Leadership & Organizational Development
  • Lead, mentor, and grow a high-performing IAM engineering team.
  • Define team structure, roles, and capabilities aligned to enterprise identity strategy.
  • Foster a culture of accountability, continuous learning, and psychological safety.
  • Build strong cross-functional partnerships with Product, Security, Legal, Privacy, and Customer Experience teams.
  • Manage vendor relationships and operating budget for CIAM platforms, tooling, and services.
Qualifications
Required
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (or equivalent experience)
  • 7+ years of experience in Identity & Access Management, cybersecurity, or a related field
  • 3+ years of experience leading or managing technical teams
  • Hands‑on experience with CIAM platforms and modern identity standards (OAuth2, OIDC, SAML, SCIM, FIDO2/WebAuthn)
  • Proven experience leading large‑scale identity or authentication modernization initiatives
  • Ability to translate complex IAM concepts into clear guidance for technical and non‑technical stakeholders
  • Experience operating high‑availability systems, including SLO management and incident response
  • Familiarity with compliance frameworks such as SOX, SOC 2, and PCI‑DSS
Preferred
  • Certifications in consumer identity platforms
  • Experience with Customer Identity and Access Management (CIAM) patterns: progressive profiling, social login, consent management, and customer‑facing MFA enrollment UX
  • Familiarity with at least one modern programming language (Go, Java, Python, Node.js) sufficient to review integration code and guide teams on SDK usage
  • Experience with cloud‑native infrastructure (AWS, Azure, or GCP) and integrating consumer identity platforms with cloud IAM services
  • Exposure to Zero Trust architecture principles and practical implementation via CIAM platform or Device Trust policies
  • Working knowledge of SIEM integration for identity telemetry

At Optimum, every action and interaction we take part in, is driven by our three Guiding Principles: Do What’s Right, Drive One Optimum, and Make It Happen. These aren’t just words, they help us build trust, create real community, and embrace new ways of thinking. Our employees are empowered to do the right thing for our customers and co‑workers and to recognize and reward these behaviors when we see them. It’s all part of the bigger picture of “Be The Difference” where each employee knows they have the power to enact real change, share new ideas, and understand that learning never stop.

If you have the drive to succeed and are ready to embark on a thrilling career, seize this opportunity today, and join our winning team. Together, we'll shape the future of connectivity.

All job descriptions and required skills, qualifications and responsibilities for a particular position are subject to modification by the Company from time to time, in the Company’s discretion based on business necessity.

We are an Equal Opportunity Employer committed to recruiting, hiring and promoting qualified people of all backgrounds regardless of gender, race, color, creed, national origin, religion, age, marital status, pregnancy, physical or mental disability, sexual orientation, gender identity, military or veteran status, or any other basis protected by federal, state, or local law.

The Company collects personal information about its applicants for employment that may include personal identifiers, professional or employment related information, photos, education information and/or protected classifications under federal and state law. This information is collected for employment purposes, including identification, work authorization, FCRA‑compliant background screening, human resource administration and compliance with federal, state and local law.

Applicants for employment with The Company will never be asked to provide money (even if reimbursable) as part of the job application or hiring process. Please review our Fraud FAQ for further details.

Pay is competitive and based on a number of job‑related factors, including skills and experience. The starting pay rate/range at time of hire for this position in New York is 133,661.00 - 219,586.00 / year. For other locations, please inquire with your recruiter. The rates/ranges provided herein are the anticipated pay at the time of hire, and do not reflect future job opportunity.

We appreciate your interest in this opportunity. Applicants must be authorized to work for ANY employer in the U.S. Please note that at this time, we do not provide visa sponsorship for employment.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer, CIAM
Engineer, CIAM

Optimum • Bethpage (NY)

On-site
USD 83,538 - 137,241
Senior Identity Application Architect, CIAM/IAM
Senior Identity Application Architect, CIAM/IAM

AHEAD • Chicago (IL)

On-site
USD 140,000 - 200,000
Medical Insurance
Dental Insurance
Vision Insurance
+4
Sr. Manager, Identity and Access Management Platform
Sr. Manager, Identity and Access Management Platform

Hyundai Capital America • Irvine (CA)

Hybrid
USD 152,000 - 236,000
Hybrid flexibility - 4 days in office,
Vehicle perks - monthly vehicle  
Comprehensive health coverage
+7
Senior Identity Application Architect, CIAM/IAM
Senior Identity Application Architect, CIAM/IAM

AHEAD • United States

On-site
USD 145,000 - 175,000
Medical, Dental, Vision Insurance
401(k)
Paid holidays
+2
Staff Identity Engineer
Staff Identity Engineer

United States Digital Space LLC • Washington

On-site
USD 161,000 - 221,000
Equity
Health insurance
Dental & Vision insurance
+1
Senior CIAM Architect & Security Leader
Senior CIAM Architect & Security Leader

Optimum • Bethpage (NY)

On-site
USD 100,000 - 165,000
Cybersecurity Engineer
Cybersecurity Engineer

SSA Marine • Seattle (WA)

Hybrid
USD 130,000 - 160,000
Medical insurance
Dental insurance
Vision insurance
+11
Senior Identity Application Architect, CIAM/IAM
Senior Identity Application Architect, CIAM/IAM

AHEAD • Northern (KY)

Hybrid
USD 145,000 - 175,000
Medical Insurance
401(k)
Paid holidays
+2
CIAM Engineer: Identity & Access Platform Expert
CIAM Engineer: Identity & Access Platform Expert

Optimum • Bethpage (NY)

On-site
USD 83,000 - 138,000
Lead IAM Engineer
Lead IAM Engineer

Blue Cross and Blue Shield of Massachusetts, Inc. • Boston (MA)

On-site
USD 163,000 - 200,000
Paid time off
Medical insurance
Dental insurance
+2