Sr. Manager, Identity Platform Engineering

Stellarus

California (MO)

Hybrid

USD 148,940 - 223,300

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Stellarus is seeking an experienced Identity and Access Management leader to design, implement, and operate enterprise IAM across hybrid cloud, SaaS, and on‑prem environments. You will drive lifecycle management, governance, privileged access, and modern access controls with a focus on automation, security, and scalable enterprise delivery.

You will lead teams, design scalable IAM platforms, and collaborate with AI-enabled workflows while ensuring HIPAA/SOX aligned governance and a strong

Qualifications

  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or equivalent combination of education and experience.
  • 8+ years of experience designing, implementing, and supporting enterprise IAM solutions.
  • 4+ years of prior people management experience with direct responsibility for supervising and evaluating reports.

Responsibilities

  • Design, implement, and continuously improve enterprise IAM capabilities across hybrid cloud, SaaS, on‑premises, and AI-enabled access patterns.
  • Lead engineering, automation, and modernization of IAM components and workflows.
  • Contribute to IAM architecture, platform roadmaps, and reliability metrics.

Skills

Identity lifecycle management
Privileged access management
RBAC/ABAC
SAML/OAuth/OpenID Connect
CI/CD
Infrastructure as Code
DevOps practices
Just-in-Time/least privilege
AI integration
People management
Security engineering leadership

Education

Bachelor’s degree in CS/IS/Cybersecurity/Engineering

Job description

Your Role

Identity and Access Management team is responsible for designing, engineering, and operating enterprise identity services that enable secure, scalable, and seamless access across Stellarus’ technology ecosystem. The team drives Identity Lifecycle Management, Identity Governance, Privileged Access Management, authentication, authorization, automation, and Zero Trust capabilities while partnering across the enterprise to support digital transformation, regulatory compliance, secure software delivery, and responsible AI adoption.

Responsibilities
  • Design, implement, and continuously improve enterprise Identity and Access Management capabilities across hybrid cloud, SaaS, on‑premises, application, privileged, service, machine, and AI‑enabled access patterns.
  • Lead the engineering, automation, and modernization of Identity Lifecycle Management, Identity Governance, Privileged Access Management, authentication, authorization, federation, and access governance capabilities.
  • Contribute to enterprise IAM architecture, engineering standards, platform roadmaps, service reliability practices, operational metrics, risk reduction plans, and measurable outcomes that support Stellarus’ technology strategy.
  • Deliver IAM as a reusable, API‑driven, developer‑consumable platform that enables secure self‑service application onboarding, entitlement workflows, access request automation, standardized integration patterns, reference architectures, and developer documentation.
  • Develop and maintain scalable identity services using Infrastructure as Code, configuration‑as‑code, DevOps practices, CI/CD pipelines, APIs, workflow orchestration, automated testing, policy validation, and automation frameworks.
  • Partner with teams to embed identity into enterprise platforms, cloud environments, software delivery pipelines, AI‑enabled workflows, and modern application architectures.
  • Design and implement Role‑Based Access Control, Attribute‑Based Access Control, policy‑based access control, Just‑in‑Time, just‑enough, time‑bound, fleeting, and Least Privilege access models that reduce standing privilege while simplifying access administration.
  • Advance privileged access modernization through automated approval workflows, time‑bound elevation, break‑glass controls, credential rotation, session monitoring, access expiration, entitlement management, access certification, analytics, and risk‑based privilege management.
  • Engineer integrations across identity governance, access management, privileged access, directory, cloud, HR, data, AI, and enterprise application platforms to support automated provisioning, deprovisioning, authentication, authorization, federation, policy enforcement, and machine‑to‑machine access.
  • Define secure identity and access patterns for AI‑enabled systems, including AI agents, copilots, intelligent automation, autonomous workflows, machine identities, data access workflows, and applications requiring controlled access to enterprise or healthcare data.
  • Leverage AI, machine learning, and intelligent automation to improve identity operations, entitlement analysis, access reviews, anomaly detection, governance, audit readiness, operational insights, developer support, engineering productivity, and compliance with HIPAA, SOX, HITRUST, NIST, audit requirements, and Zero Trust principles.
Qualifications
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Engineering, or equivalent combination of education and experience.
  • A minimum of 8 years of experience designing, implementing, and supporting enterprise Identity and Access Management solutions.
  • 4 years of prior people management experience with direct responsibility for supervising, coaching, and evaluating direct reports.
  • Experience leading IAM, security engineering, platform engineering, cloud, infrastructure, or related technical teams.
  • Strong understanding of Identity Lifecycle Management, Joiner/Mover/Leaver processes, Identity Governance, and Privileged Access Management within complex hybrid cloud, SaaS, and on‑premises environments.
  • Deep understanding of Role‑Based Access Control, Attribute‑Based Access Control, policy‑based access control, Just‑in‑Time, just‑enough, time‑bound, and Least Privilege security models.
  • Strong knowledge of authentication and authorization frameworks, including Single Sign‑On, Multi‑Factor Authentication, SAML, OAuth 2.0, OpenID Connect, SCIM, and modern identity federation technologies across enterprise and consumer ecosystems.
  • Experience implementing and supporting enterprise identity governance, access management, directory, privileged access, cloud identity, HR, and application integration platforms.
  • Experience delivering identity as a platform capability, including self‑service, API‑driven, and developer‑consumable IAM services for application, cloud, platform, and security engineering teams.
  • Experience developing automation using scripting languages, REST APIs, workflow automation, or similar programming approaches.
  • Experience implementing DevOps or platform engineering practices, including CI/CD, Infrastructure as Code, configuration‑as‑code, policy‑as‑code, automated testing, automated deployment, observability, and operational reliability.
  • Strong understanding of cloud identity and access patterns, including workload identity, service identities, managed identities, secrets management, key management, privileged access controls, and machine‑to‑machine access.
  • Experience integrating IAM capabilities into enterprise applications, cloud services, SaaS platforms, infrastructure platforms, and modern software development lifecycles.
  • Experience applying identity controls to AI‑enabled systems, including AI agents, copilots, intelligent automation, machine identities, data access workflows, human‑in‑the‑loop approvals, audit logging, and least‑privilege access to sensitive enterprise data.
  • Experience leveraging AI‑assisted development, intelligent automation, or machine learning technologies to improve operational efficiency, accelerate identity engineering, enhance access governance, or improve risk detection.
Hybrid Working Model

This role requires employees to be in‑office based on our hybrid workplace model, balancing purposeful in‑person collaboration with flexibility. For most teams, this means coming into the office two days each week. Employees living more than 50 miles from an office location will work with their manager to determine in‑office time based on business need.

Physical Requirements

Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - activity level: sedentary, frequency most of work day.

Equal Employment Opportunity

External hires must pass a background check/drug screen. Qualified applicants with arrest records and/or conviction records will be considered for employment in a manner consistent with Federal, State and local laws, including but not limited to the San Francisco Fair Chance Ordinance. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, national origin, sexual orientation, gender identity, protected veteran status or disability status and any other classification protected by Federal, State and local laws.

Pay Range

California: $148,940.00 to $223,300.00
Bay Area: $167,896.00 to $251,720.00

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of California • California (MO)

Hybrid
USD 148,000 - 224,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Houston (TX)

Hybrid
USD 140,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Atlanta (GA)

Hybrid
USD 150,000 - 190,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • San Diego (CA)

Hybrid
USD 180,000 - 240,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Phoenix (AZ)

Hybrid
USD 150,000 - 230,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Springfield Meadows (CA)

Hybrid
USD 180,000 - 240,000
Hybrid work model
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Baltimore (MD)

Hybrid
USD 120,000 - 170,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Washington

On-site
USD 150,000 - 210,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • Chicago (IL)

Hybrid
USD 140,000 - 190,000
Sr. Manager, Identity Platform Engineering
Sr. Manager, Identity Platform Engineering

Blue Shield of CA • New York (NY)

Hybrid
USD 140,000 - 210,000