Get more replies from employers
Send a job-specific resume in minutes.
Allstate is seeking a Principal Engineer to lead identity strategy across workforce, customer, machine, and agent identities. You will guide architecture and modernization efforts to enable secure, scalable experiences.
Collaborate with engineering, product, and security teams to evolve authentication, authorization, and governance using Ping Identity and SailPoint within a Zero Trust framework.
At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection.
The Principal Engineer, Workforce, Customer & Agentic Identity, leads the technical strategy, architecture, and modernization of identity capabilities across workforce, customer, machine, and emerging AI agent identities. This hands‑on technical leader champions secure, frictionless customer and employee experiences by partnering closely with engineering, product, and security teams to evolve authentication, authorization, governance, and access management capabilities. Leveraging deep expertise in modern identity platforms, Zero Trust principles, and emerging agentic identity models, the Principal Engineer influences enterprise strategy, drives adoption of transformative solutions, and helps shape the future of identity across Allstate's digital ecosystem. As a Director you won’t just deliver results – you drive our culture and shared purpose. At Allstate, we value in person connected experiences not just with your team but also other Allstaters. This may require travel within your local area or to one of our offices on a regular basis.
Ability to influence enterprise strategy and drive adoption of identity modernization initiatives.
Strong change leadership and stakeholder management skills across engineering, security, product, and business teams.
Proven ability to communicate the value of identity solutions and build consensus around technical decisions.
Technical leadership experience guiding architectures, engineering standards, and best practices.
Customer‑centric mindset focused on balancing security, usability, and business outcomes.
Ability to lead through influence, navigate ambiguity, and drive enterprise‑wide change without direct authority.
Experience influencing vendor roadmaps and product strategies to align with evolving business objectives and operational priorities.
Experience 12+ years of experience designing and implementing enterprise Identity and Access Management (IAM) solutions.
Working knowledge of Ping Identity, SailPoint, or similar identity and access management platforms.
Strong knowledge of customer identity, workforce identity, federation, SSO, MFA, privileged access management, identity governance, and access certification.
Experience designing and implementing Zero Trust identity architectures, including conditional access, risk‑based authentication, fine‑grained authorization, and least‑privilege access controls.
Experience supporting machine identities, workload identities, service accounts, certificates, secrets management, and cloud‑native identity models.
Familiarity with emerging AI and agentic identity concepts, governance models, and authorization frameworks.
Proven ability to influence senior leaders, drive enterprise adoption, and communicate complex technical strategies across diverse stakeholder groups.
Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related technical field.
Relevant IAM or security certifications such as CISSP, CCSP, SailPoint, Ping Identity, Microsoft Security, or equivalent.
Skills Access Management, Artificial Intelligence (AI), Identity Access Management (IAM), Identity Governance, Multi‑Factor Authentication (MFA), Ping Identity, SailPoint IdentityNow, Single Sign‑on (SSO), Stakeholder Influence, Zero Trust Architecture
This job has supervisory duties.
Compensation offered for this role is 199,000.00 - 274,000.00 annually and is based on experience and qualifications.
The candidate(s) offered this position will be required to submit to a background investigation.
Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact.
Allstate generally does not sponsor individuals for employment‑based visas for this position.
Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component.
At Allstate, we work hard to help people live a good life every day. Allstaters are dedicated to serving clients, customers, and communities, which allows employees to find meaning and value in their work. Allstate offers an environment that fosters innovative thinking where you’ll be able to explore your ideas and feel proud of the work you do. Allstate helps protect nearly 16 million households with auto, home, life, and retirement products. We want every professional connected to Allstate to be committed to giving our customers the best and that means finding the best talent. We want you to be our next great addition.