
Senior Director, Identity & Access Management
- AI
- IAM
- Nexus
- OpenID Connect
- SCIM
- Disaster Recovery
- RBAC
- ABAC
- Incident Response
- Threat Modeling
- SOC2
- ISO 27001
- GDPR
- Azure
- AWS
- GCP
- Zero Trust
- SAML
- CISSP
- CISM
IFS is a billion-dollar revenue company with 7000+ employees on all continents. Our leading AI technology is the backbone of our award-winning enterprise software solutions, enabling our customers to be their best when it really matters–at the Moment of Service™. Our commitment to internal AI adoption has allowed us to stay at the forefront of technological advancements, ensuring our colleagues can unlock their creativity and productivity, and our solutions are always cutting-edge.
At IFS, we’re flexible, we’re innovative, and we’re focused not only on how we can engage with our customers but on how we can make a real change and have a worldwide impact. We help solve some of society’s greatest challenges, fostering a better future through our agility, collaboration, and trust.
We celebrate diversity and understand our responsibility to reflect the diverse world we work in. We are committed to promoting an inclusive workforce that fully represents the many different cultures, backgrounds, and viewpoints of our customers, our partners, and our communities. As a truly international company serving people from around the globe, we realize that our success is tantamount to the respect we have for those different points of view.
By joining our team, you will have the opportunity to be part of aglobal, diverse environment; you will be joining awinning team with acommitment to sustainability; and a company where we get things done so that you canmake a positive impact on the world.
We’re looking for innovative and original thinkers to work in an environment where you can#MakeYourMoment so that we can help others make theirs. With the power of our AI-driven solutions, we empower our team to change the status quo and make a real difference.
If you want to change the status quo, we’ll help you make your moment. Join Team Purple. Join IFS.
This role owns the Identity and Access Management (IAM) strategy for the IFS platform ecosystem. It leads the Authentication (AuthN) and Authorization (AuthZ) platforms that secure Nexus, Kairos, IFS.ai, Cloud Services, and future platform investments — balancing security, scale, compliance, and a straightforward experience for customers and developers.Â
The leader builds and runs a high-performing engineering organization through two engineering managers, and partners closely with Product, Architecture, Security, Compliance, Cloud Operations, and Customer Services to keep IAM capability ahead of the platform's needs.Â
Key responsibilitiesÂ
AuthenticationÂ
• Identity provider integration and federationÂ
• SSO architecture and deliveryÂ
• OAuth 2.0 and OpenID Connect platformsÂ
• Customer identity onboardingÂ
• SCIM provisioning and identity lifecycle managementÂ
• User and group managementÂ
• Tenant onboarding and offboardingÂ
• Session management and token servicesÂ
• Identity governance and complianceÂ
• Authentication observability and operational excellenceÂ
• High availability and disaster recovery for authentication servicesÂ
AuthorizationÂ
• Enterprise authorization platform strategyÂ
• RBAC, ABAC, ReBAC, and ACL modelsÂ
• Permission management platformÂ
• Entitlement managementÂ
• Centralized and decentralized authorization patternsÂ
• Policy administration capabilitiesÂ
• Authorization enforcement frameworksÂ
• Row-level security capabilitiesÂ
• Audit and compliance controlsÂ
• Authorization interoperability across the IFS product suiteÂ
• Developer enablement — libraries, SDKs, and templatesÂ
• Platform adoption across application teamsÂ
Leadership responsibilitiesÂ
• Set the strategic direction for IAM across the platform ecosystem and represent it in the wider engineering and product strategyÂ
• Own platform architecture governance for AuthN and AuthZ, ensuring designs meet security, scale, and compliance requirementsÂ
• Uphold engineering excellence — code quality, reliability, and sound technical decision-making across both teamsÂ
• Champion security and compliance as design constraints from the start, not afterthoughtsÂ
• Represent the IAM customer experience — secure, fast, and easy to use — in every platform decisionÂ
• Own reliability and operational excellence for AuthN and AuthZ services, including on-call and incident response postureÂ
• Drive adoption of AI-assisted engineering practices to lift team productivityÂ
• Partner across Product, R&D, and Cloud Operations to align IAM investment with the wider platform roadmapÂ
People responsibilitiesÂ
• Lead a two-tier organization through two direct-report engineering managers — Authentication and Authorization — each running their own engineering teamÂ
• Coach and develop the engineering managers, building their capability to lead and grow their teamsÂ
• Own hiring, performance management, and career development across the IAM organizationÂ
• Shape team structure and role design to match platform scope as it growsÂ
• Build a global, distributed team culture that works effectively across time zonesÂ
• Create clear paths for talent development and succession within the IAM leadership teamÂ
Commercial responsibilitiesÂ
• Own the IAM organization's budget, including headcount planning and vendor spendÂ
• Evaluate and select third-party identity and authorization technologies, weighing build-versus-buy trade-offs against cost, risk, and time to valueÂ
• Justify platform investment with a clear view of cost, risk reduction, and business impactÂ
• Manage vendor relationships and contracts tied to IAM tooling and servicesÂ
• Prioritize the roadmap to deliver the best return on engineering investment across AuthN and AuthZÂ
RequiredÂ
• Software engineering experience, with a strong foundation in distributed systemsÂ
• Proven experience in engineering leadership roles, with direct accountability for team and platform outcomesÂ
• Proven experience leading through managers, not only leading engineers directlyÂ
• Deep domain expertise in identity and access management — authentication, authorization, or bothÂ
• Experience building and operating SaaS or cloud platforms at enterprise scaleÂ
• A background in security architecture, with working knowledge of threat modeling and secure design principlesÂ
• Experience leading platform engineering teams that serve other engineering teams as customersÂ
• Familiarity with compliance frameworks relevant to enterprise SaaS, such as SOC 2, ISO 27001, or GDPRÂ
• Experience leading globally distributed teams across multiple time zonesÂ
PreferredÂ
• Hands-on experience with a major cloud provider — Azure, AWS, or GCPÂ
• Familiarity with Zero Trust architecture principlesÂ
• Working knowledge of OAuth 2.0, OpenID Connect, SAML, and SCIMÂ
• Experience with modern authorization technologies, including policy engines and ABAC/ReBAC frameworksÂ
• Exposure to identity governance and administration (IGA) solutionsÂ
• A security certification such as CISSP or CISM, or equivalent experienceÂ
Skills and competenciesÂ
• Customer centricity — designs IAM capability around how customers and developers actually work.Â
• Collaboration — builds trust and alignment across Product, Architecture, Security, and Operations.Â
• Accountability — owns outcomes for the platform and the teams that build it.Â
• Courageous leadership — makes and defends hard calls on security and architecture trade-offs.Â
• Continuous improvement — treats reliability and process as things to keep refining, not fixed.Â
• Strategic thinking — connects day-to-day platform decisions to the longer-term IFS roadmap.Â
• Results orientation — stays focused on measurable outcomes, not activity.Â
• Talent development — invests in growing managers and the engineers behind them.Â
• Innovation mindset — stays open to new approaches in identity and authorization without chasing novelty for its own sake.Â
Success measuresÂ
• Enterprise-wide adoption of IAM platforms across Nexus, Kairos, IFS.ai, and Cloud ServicesÂ
• Measurable reduction in security risk across authentication and authorization surfacesÂ
• Improved developer productivity through self-service IAM capabilities, SDKs, and templatesÂ
• Faster customer and tenant onboarding and provisioningÂ
• Increased standardization of authorization patterns across the product suiteÂ
• Improved audit and compliance readinessÂ
• High availability and resilience of AuthN and AuthZ services, measured against agreed service-level objectivesÂ
• Improved customer satisfaction tied to identity and access experiencesÂ
We embrace flexibility and hybrid work opportunities to support diverse needs and lifestyles, while also valuing inclusive workplace experiences. By fostering a sense of community, we drive innovation, strengthen connections, and nurture belonging. Our commitment ensures you can work in a way that suits you best, while also engaging with colleagues to share ideas and build meaningful relationships.
Senior Director, Identity & Access Management · IFS