Manager - IAM Operations
Manager – Identity & Access Management (IAM) Operations
Role Summary
The IAM Operations Manager owns the day‑to‑day reliability, security, and compliance of enterprise identity services. This role is accountable for Joiner–Mover–Leaver (JML) execution, access governance, privileged access operations, and identity incident response, while continuously driving automation, standardization, and operational excellence. This is a hands‑on leadership role for a leader who thinks like an engineer, operates with production‑grade rigor, and translates Zero Trust strategy into repeatable, executable operations.
Key Responsibilities
Operational Ownership
- End‑to‑end ownership of IAM production services including identity lifecycle, access provisioning, MFA, and privileged access.
- Ensure automated, SLA‑driven JML processes, including immediate de‑provisioning and access changes.
- Act as Tier‑3 escalation owner for complex identity issues impacting business or clinical operations.
Engineering & Automation
- Identify and eliminate manual IAM processes using PowerShell, Python, APIs, and workflow automation.
- Drive runbooks, monitoring, alerting, and metrics to improve reliability, MTTR, and analyst efficiency.
- Partner with engineering teams to improve resilience, integrations, and scalability of IAM platforms.
Security, Risk & Compliance
- Own access reviews, certifications, and Segregation of Duties (SoD) to meet SOX, HIPAA, GDPR, and audit requirements.
- Serve as Identity Incident Coordinator during security incidents, partnering with SOC, Legal, HR, and Compliance.
- Lead root‑cause analysis and implement preventive, engineering‑led controls.
People & Stakeholder Leadership
- Lead Tier‑1 to Tier‑3 IAM operations teams with clear career paths and skill progression.
- Upskill teams in automation, cloud IAM, and security operations.
- Translate technical IAM risks into clear, executive‑level insights for non‑technical stakeholders.
Required Qualifications
- 12+ years in Cybersecurity or Identity domains, with 3+ years leading IAM operations.
- Hands‑on expertise with Azure AD (Entra ID) and at least one of:
- SailPoint
- CyberArk
- Proven experience running enterprise IAM in cloud/hybrid environments.
- Strong engineering mindset with demonstrated automation using PowerShell, Python, and APIs.
- Experience coordinating identity-related security incidents across multiple stakeholders.
- Ability to translate Zero Trust vision into quarterly, operationally executable outcomes.
What Success Looks Like
- Highly reliable IAM services with automation-first operations
- Reduced manual effort, faster access turnaround, and fewer identity incidents
- Audit‑ready controls with minimal findings
- A scalable IAM operations team enabled by engineering discipline