Sr. Manager, Identity Platform Engineering

Blue Shield of California

California (MO)

Hybrid

USD 148,940 - 223,300

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Stellarus is seeking a Senior Manager, Identity Platform Engineering to lead design, delivery, and operations of enterprise IAM capabilities across hybrid cloud, SaaS, on-premises, and AI-enabled access. You will drive automation, self-service, and secure patterns.

You will partner with cross-functional teams to implement RBAC/ABAC, Just-in-Time access, and privileged access management, while shaping platform roadmaps and reliability metrics.

Qualifications

  • Bachelor's degree in a relevant field; 8+ years in IAM design, implementation, and support.
  • Experience leading IAM, security/platform engineering, cloud, or related teams.
  • Strong knowledge of RBAC, ABAC, and policy-based access control in hybrid environments.
  • Familiarity with SSO, MFA, SAML, OAuth 2.0, OIDC, SCIM, and modern identity federation technologies.

Responsibilities

  • Design and implement IAM capabilities across hybrid cloud, SaaS, on‑premises, and AI-enabled access.
  • Lead engineering, automation, and modernization of IAM lifecycle management, governance, and privileged access.
  • Contribute to IAM architecture, roadmaps, and platform reliability metrics.
  • Deliver API-driven, developer-consumable IAM services for diverse engineering teams.
  • Develop automation using scripting, REST APIs, and CI/CD practices.
  • Embed identity into enterprise platforms and modern software delivery pipelines.

Skills

IAM design
Leadership
DevOps
Cloud platforms
Automation
Security engineering
AI & automation
SAML/OIDC

Education

Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Engineering

Job description

Your Role

The Identity and Access Management team is responsible for designing, engineering, and operating enterprise identity services that enable secure, scalable, and seamless access across Stellarus’ technology ecosystem. The team drives Identity Lifecycle Management, Identity Governance, Privileged Access Management, authentication, authorization, automation, and Zero Trust capabilities while partnering across the enterprise to support digital transformation, regulatory compliance, secure software delivery, and responsible AI adoption.

Job Overview

The Senior Manager, Identity Platform Engineering will report to the Sr. Director, Identity & Access Management. In this role, you will help shape the future of Stellarus’ identity platform by engineering secure, automated, and scalable IAM capabilities that support hybrid cloud, SaaS, on-premises, application, privileged, service, machine, and AI-enabled access patterns.

You will partner with teams to integrate identity into modern software delivery practices, accelerate automation through DevOps and AI, and deliver programmatic identity services that can be consumed by development teams through self-service, least-privileged, time-bound, and policy-governed patterns.

Responsibilities
  • Design, implement, and continuously improve enterprise Identity and Access Management capabilities across hybrid cloud, SaaS, on-premises, application, privileged, service, machine, and AI-enabled access patterns.
  • Lead the engineering, automation, and modernization of Identity Lifecycle Management, Identity Governance, Privileged Access Management, authentication, authorization, federation, and access governance capabilities.
  • Contribute to enterprise IAM architecture, engineering standards, platform roadmaps, service reliability practices, operational metrics, risk reduction plans, and measurable outcomes that support Stellarus’ technology strategy.
  • Deliver IAM as a reusable, API-driven, developer-consumable platform that enables secure self-service application onboarding, entitlement workflows, access request automation, standardized integration patterns, reference architectures, and developer documentation.
  • Develop and maintain scalable identity services using Infrastructure as Code, configuration-as-code, DevOps practices, CI/CD pipelines, APIs, workflow orchestration, automated testing, policy validation, and automation frameworks to accelerate delivery and improve reliability.
  • Partner with teams to embed identity into enterprise platforms, cloud environments, software delivery pipelines, AI-enabled workflows, and modern application architectures.
  • Design and implement Role-Based Access Control, Attribute-Based Access Control, policy-based access control, Just-in-Time, just-enough, time-bound, episodic, and Least Privilege access models that reduce standing privilege while simplifying access administration.
  • Advance privileged access modernization and access governance through automated approval workflows, time-bound elevation, break-glass controls, credential rotation, session monitoring, access expiration, entitlement management, access certification, analytics, and risk-based privilege management.
  • Engineer integrations across identity governance, access management, privileged access, directory, cloud, HR, data, AI, and enterprise application platforms to support automated provisioning, deprovisioning, authentication, authorization, federation, policy enforcement, and machine-to-machine access.
  • Define secure identity and access patterns for AI-enabled systems, including AI agents, copilots, intelligent automation, autonomous workflows, machine identities, data access workflows, and applications requiring controlled access to enterprise or healthcare data.
  • Leverage AI, machine learning, and intelligent automation to improve identity operations, entitlement analysis, access reviews, anomaly detection, governance, audit readiness, operational insights, developer support, engineering productivity, and compliance with HIPAA, SOX, HITRUST, NIST, audit requirements, and Zero Trust principles.
Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or equivalent combination of education and experience.
  • A minimum of 8 years of experience designing, implementing, and supporting enterprise Identity and Access Management solutions.
  • 4 years of prior people management experience with direct responsibility for supervising, coaching, and evaluating direct reports.
  • Experience leading IAM, security engineering, platform engineering, cloud, infrastructure, or related technical teams.
  • Strong understanding of Identity Lifecycle Management, Joiner/Mover/Leaver processes, Identity Governance, and Privileged Access Management within complex hybrid cloud, SaaS, and on-premises environments.
  • Deep understanding of Role-Based Access Control, Attribute-Based Access Control, policy-based access control, Just-in-Time, just-enough, time-bound, and Least Privilege security models.
  • Strong knowledge of authentication and authorization frameworks, including Single Sign-On, Multi-Factor Authentication, SAML, OAuth 2.0, OpenID Connect, SCIM, and modern identity federation technologies across enterprise and consumer ecosystems.
  • Experience implementing and supporting enterprise identity governance, access management, directory, privileged access, cloud identity, HR, and application integration platforms.
  • Experience delivering identity as a platform capability, including self-service, API-driven, and developer-consumable IAM services for application, cloud, platform, and security engineering teams.
  • Experience developing automation using scripting languages, REST APIs, workflow automation, or similar programming approaches.
  • Experience implementing DevOps or platform engineering practices, including CI/CD, Infrastructure as Code, configuration-as-code, policy-as-code, automated testing, automated deployment, observability, and operational reliability.
  • Strong understanding of cloud identity and access patterns, including workload identity, service identities, managed identities, secrets management, key management, privileged access controls, and machine‑to‑machine access.
  • Experience integrating IAM capabilities into enterprise applications, cloud services, SaaS platforms, infrastructure platforms, and modern software development lifecycles.
  • Experience applying identity controls to AI-enabled systems, including AI agents, copilots, intelligent automation, machine identities, data access workflows, human‑in‑the‑loop approvals, audit logging, and least‑privilege access to sensitive enterprise data.
  • Experience leveraging AI‑assisted development, intelligent automation, or machine learning technologies to improve operational efficiency, accelerate identity engineering, enhance access governance, or improve risk detection.
Hybrid Workplace

This role requires employees to be in-office based on our hybrid workplace model, balancing purposeful in-person collaboration with flexibility. For most teams, this means coming into the office two days each week. Employees living more than 50 miles from an office location will work with their manager to determine in‑office time based on business need.

Physical Requirements

Office Environment – roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork – Activity level: Sedentary, frequency most of work day.

Equal Employment Opportunity

External hires must pass a background check/drug screen. Qualified applicants with arrest records and/or conviction records will be considered for employment in a manner consistent with Federal, State and local laws, including but not limited to the San Francisco Fair Chance Ordinance. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, national origin, sexual orientation, gender identity, protected veteran status or disability status and any other classification protected by Federal, State and local laws.

Job Information

Job Identification : 20261269

Job Category : Information Technology

Posting Date : 2026-07-10T21:56:57+00:00

Job Schedule : Full time

Locations : Oakland, CA, United States; WA, United States; OH, United States; DC, United States; CA, United States; Long Beach, CA, United States; AZ, United States; CO, United States; CT, United States; FL, United States; GA, United States; MD, United States; NV, United States; OR, United States; El Dorado Hills, CA, United States; San Diego, CA, United States; Woodland Hills, CA, United States; AL, United States; IL, United States; VA, United State; TX, United States; NY, United States

Pay Range for California : $148,940.00 to $223,300.00

Pay Range for Bay Area : $167,896.00 to $251,720.00

Role can be filled by a candidate requiring sponsorship : No

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Stellarus • California (MO)

Hybrid
USD 148,000 - 224,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Seattle (WA)

Hybrid
USD 180,000 - 240,000
Hybrid work model
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Washington

On-site
USD 150,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Houston (TX)

Hybrid
USD 140,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Virginia Beach (VA)

Hybrid
USD 150,000 - 190,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Miami (FL)

Hybrid
USD 150,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Hartford (CT)

Hybrid
USD 150,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Oakland (CA)

Hybrid
USD 165,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Columbus (OH)

Hybrid
USD 160,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Chicago (IL)

Hybrid
USD 140,000 - 190,000