Manager, Identity and Access Management

NMC2

Dallas, Northern (TX, KY)

On-site

USD 140,000 - 190,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

NorthMark Compute & Cloud (NMC²) seeks a Manager of Identity and Access Management to lead a team of IAM engineers and drive the enterprise identity program across on‑prem and cloud environments.

You will shape the strategic direction for trust, identity governance, and workload identity using SPIFFE/SPIRE, PKI, and zero trust principles, partnering with Platform Engineering and IT leadership.

Qualifications

  • 6+ years of experience in identity and access management or security engineering.
  • 2–3+ years of experience leading or managing an IAM or security engineering team.
  • Deep expertise in Microsoft Entra ID (Azure AD) and conditional access.
  • Hands-on experience with SPIFFE/SPIRE or workload identity frameworks.
  • Strong command of PKI fundamentals and certificate lifecycle management.
  • Experience designing mTLS architectures for service-to-service communication.

Responsibilities

  • Lead and mentor IAM engineers to set priorities and grow their skills.
  • Own strategy and roadmap for enterprise identity programs including RBAC and PAM.
  • Drive design and operation of workload and service identity programs via SPIFFE/SPIRE.
  • Oversee PKI strategy and certificate lifecycle management across the enterprise.
  • Lead adoption of mTLS for service-to-service communication across microservices and clouds.
  • Advance zero trust identity across on-prem and cloud environments.
  • Integrate IAM controls into CI/CD, IaC, and platform architecture.
  • Establish identity governance including access reviews and least-privilege enforcement.
  • Translate identity risks and metrics into clear reporting for security leadership.

Skills

IAM leadership
RBAC
PAM
Zero Trust
SPIFFE/SPIRE
mTLS
PKI
Entra ID

Tools

SPIFFE/SPIRE
PKI
Microsoft Entra ID
mTLS

Job description

NorthMark Compute & Cloud (NMC²) is backed by dedicated leadership and investment, with a clear mission as it operates at the bleeding edge of technology. Its goal is to scale and enhance the high-performance computing (HPC) and cloud infrastructure that supports its clients’ research, production, and delivery, enabling breakthroughs that shape the industries of tomorrow. Its engineers build critical infrastructure to eliminate friction in scientific research, simulations, analysis, and decision-making, accelerating discovery and driving faster innovation.

The Position

The Identity and Access Management team sits within NMC²'s Security organization and is responsible for ensuring that every human, service, and workload interacting with NMC²'s platforms is verifiably identified, appropriately authorized, and continuously validated. In an environment where HPC workloads, cloud services, and distributed systems operate at massive scale, identity is the foundational control plane.

As the Manager of Identity and Access Management, you will lead a team of engineers responsible for the full spectrum of identity from enterprise identity and access governance to workload and service identity using cryptographic attestation via SPIFFE/SPIRE, mTLS, and PKI. You will set the strategic direction for how NMC² establishes trust across its human and non-human identity landscape, drive the maturation of the organization's zero trust posture, and serve as the primary IAM partner to Platform Engineering, DevOps, and IT leadership. This role demands both deep technical fluency across modern identity protocols and the leadership capability to build a high-performing team and drive identity-first thinking across the organization.

Responsibilities

Lead, mentor, and develop a team of IAM engineers, setting clear priorities, fostering technical growth, and cultivating a collaborative, high-performing team culture

Own the strategy and roadmap for NMC²'s enterprise identity program, including identity lifecycle management, role-based access control (RBAC), privileged access management (PAM), and access governance across Microsoft Entra ID and connected systems

Drive the design, implementation, and operation of workload and service identity programs using SPIFFE/SPIRE, ensuring cryptographically verifiable identity for services, workloads, and infrastructure components across HPC and cloud environments

Oversee the organization's PKI strategy and certificate lifecycle management program, ensuring the integrity, availability, and scalability of certificate issuance, rotation, and revocation across the enterprise

Lead the adoption and enforcement of mTLS for service-to-service communication, partnering with Platform Engineering and DevOps teams to embed mutual authentication into the fabric of NMC²'s distributed systems

Drive NMC²'s zero trust identity strategy, ensuring continuous validation of user, device, and workload identity as the primary access control mechanism across on-premises and cloud environments

Partner with Platform Engineering, DevOps, and IT leadership to integrate IAM controls into CI/CD pipelines, IaC workflows, and platform architecture, ensuring identity is never bolted on as an afterthought

Establish and maintain identity governance frameworks, including access reviews, entitlement management, and least-privilege enforcement across both human and non-human identities

Translate complex identity risks, program metrics, and strategic initiatives into clear, concise reporting for security leadership and executive stakeholders

Stay current on emerging identity threats, standards, and technologies — including evolving SPIFFE/SPIRE ecosystem developments, certificate transparency, and zero trust frameworks — continuously maturing the team's capabilities

Requirements

6+ years of experience in identity and access management or security engineering, with hands-on depth across both enterprise and workload identity domains

2–3+ years of experience leading or managing an IAM or security engineering team, with demonstrated ability to develop talent and drive team performance

Deep expertise in Microsoft Entra ID (Azure AD), including conditional access, identity governance, privileged identity management (PIM), and enterprise application integration

Hands-on experience with SPIFFE/SPIRE or equivalent workload identity frameworks, and a strong understanding of cryptographic identity attestation in distributed and containerized environments

Strong command of PKI fundamentals, including certificate authority design, certificate lifecycle management, and certificate issuance patterns for large-scale environments

Experience designing and enforcing mTLS architectures for service-to-service communication across microservices, container orchestration platforms, and cloud-native environments

Familiarity with zero trust architecture principles and experience applying them across a hybrid enterprise and cloud-native environment

Experience with privileged access management solutions and least-privilege enforcement strategies across both human and service accounts

Excellent communication skills with the ability to translate complex identity concepts and risks into clear reporting and recommendations for engineering peers and executive leadership

Nice to Have

Experience with secrets management platforms such as HashiCorp Vault, with integration into PKI and workload identity workflows

Background working in HPC, research computing, or highly regulated environments where identity assurance requirements are exceptionally stringent

Familiarity with certificate transparency logs and emerging standards in machine identity management

Relevant certifications such as CISSP, CISM, Microsoft Certified: Identity and Access Administrator, or equivalent

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager, Identity and Access Management
Manager, Identity and Access Management

NorthMark Strategies LLC • Dallas (TX)

On-site
USD 140,000 - 180,000
Manager, Identity and Access Management
Manager, Identity and Access Management

NorthMark Strategies • Town of Texas (WI)

On-site
USD 120,000 - 190,000
Company lunch stipend
100% employer-paid medical, dental, & 
Life insurance
+3
Manager, Identity and Access Management
Manager, Identity and Access Management

NorthMark Compute & Cloud • Dallas (TX)

On-site
USD 180,000 - 240,000
Lunch stipend
Medical benefits for employees and the
Parental leave
+2
Sr. Identity and Access Management Analyst
Sr. Identity and Access Management Analyst

CB&I • The Woodlands (TX)

On-site
USD 120,000 - 170,000
Director, Customer Identity and Access Management
Director, Customer Identity and Access Management

nscaleoperationsukltd • New York (NY)

On-site
USD 180,000 - 240,000
IAM Lead: Zero-Trust for HPC & Cloud
IAM Lead: Zero-Trust for HPC & Cloud

NMC2 • Dallas (TX), Northern (KY)

Hybrid
USD 140,000 - 190,000
Cybersecurity IAM Architect - Staff Engineer
Cybersecurity IAM Architect - Staff Engineer

OneMain Financial • Baltimore (MD)

On-site
USD 150,000 - 190,000
IAM Engineer
IAM Engineer

Jobtailor • Alabama

On-site
USD 90,000 - 130,000
Sr Identity and Access Management Analyst
Sr Identity and Access Management Analyst

Chicago Bridge & Iron Company • The Woodlands (TX)

On-site
USD 100,000 - 130,000
Senior Identity and Access Management Engineer
Senior Identity and Access Management Engineer

Insight Global • Atlanta (GA)

On-site
USD 140,000 - 180,000