TikTok

Identity Access Management Governance Specialist - Global Security Organization

TikTok$134K — $223K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Strong knowledge of IAM concepts and lifecycle management.
  • Solid understanding of IAM governance principles and controls.
  • Experience in developing and assessing IAM policies in complex environments.
  • Strong analytical skills for identifying access risks and control gaps.
  • Excellent collaboration and communication skills across technical and non-technical teams.
  • Bachelor's degree in relevant fields or equivalent experience preferred.
  • 3+ years of relevant IAM or cybersecurity experience preferred.

Responsibilities

  • Define and enhance IAM governance strategies and control frameworks.
  • Establish governance policies across the identity and access lifecycle.
  • Drive IAM governance initiatives with clear control ownership and accountability.
  • Utilize data to identify and assess access risks and drive remediation.
  • Develop IAM governance measurement and monitoring frameworks for continuous improvement.
  • Support IAM governance evolution for both human and non-human identities.

Benefits

  • Day one access to medical, dental, and vision insurance.
  • 401(k) savings plan with company match.
  • Paid parental leave and disability coverage.
  • Life insurance and wellbeing benefits.
  • 10 paid holidays and 10 paid sick days annually.
  • 17 days of Paid Personal Time with increased accruals by tenure.
Full Job Description
Responsibilities

The IAM Operation & Validation team is part of the Global Security Organization (GSO), focused on protecting the organization by ensuring that the right identities have the right access to the right resources under the right conditions. Our mission is to strengthen identity and access security through effective governance, reliable security operations, and independent control validation. We develop and evolve IAM governance frameworks and security controls, identify and assess identity and access risks, validate whether controls are designed and operating effectively, and drive remediation and continuous improvement across the organization. Our work spans the identity and access lifecycle and increasingly extends beyond traditional human identities to service accounts, machine and workload identities, and emerging agentic identities. We partner closely with engineering, security, privacy, compliance, and business teams to address complex IAM risks and build scalable, risk-based governance and assurance capabilities. Joining the IAM Operation & Validation team means working at the intersection of security, technology, governance, and risk. You will have the opportunity to solve complex identity security challenges in a large-scale global environment and help shape the next generation of IAM governance, validation, and security capabilities. Responsibilities - Define and continuously enhance enterprise IAM governance strategies and control frameworks, including least privilege, role and entitlement governance, segregation of duties (SoD), and risk-based access controls, to strengthen the organization's overall identity and access security posture. - Establish and evolve governance policies, standards, processes, and control requirements across the identity and access lifecycle, including identity onboarding, access request and provisioning, modification, periodic review, revocation, and auditability. - Drive IAM governance initiatives across relevant stakeholders, establishing clear control ownership and accountability, identifying governance and control gaps, and partnering with technology, security, privacy, compliance, and business teams to drive remediation and sustainable improvements. - Leverage identity, access, and authorization data to identify excessive privileges, dormant access, toxic combinations, policy violations, and other access risks; assess their impact and drive risk-based remediation with relevant stakeholders. - Define and operate IAM governance measurement and monitoring frameworks, including governance metrics, key risk indicators, control effectiveness measures, and compliance baselines, to provide visibility into IAM risk and drive continuous improvement. - Support the evolution of IAM governance across human and non-human identities, including service, system, and emerging agentic identities, helping establish appropriate governance principles and controls as the organization's identity landscape evolves.

Qualifications

Minimum Qualification(s) - Strong knowledge of Identity and Access Management (IAM) concepts and practices, including identity lifecycle management, authentication, authorization, access control, and access governance. - Solid understanding of IAM governance principles and controls, including least privilege, role and entitlement governance, segregation of duties (SoD), access reviews, and access lifecycle controls. - Experience developing, implementing, or assessing IAM policies, standards, governance processes, or control frameworks in complex enterprise environments. - Strong analytical and problem-solving skills, with the ability to identify identity and access risks, assess control gaps, and drive risk-based remediation. - Strong cross-functional collaboration and communication skills, with the ability to work with technical and non-technical stakeholders to drive governance initiatives and control improvements. Preferred Qualification(s) - Bachelor's degree or higher in Computer Science, Information Security, Information Systems, Engineering, or a related field, or equivalent practical experience. - 3+ years of relevant experience in IAM, cybersecurity, security governance, technology risk, or related fields, with experience in IAM governance or access governance preferred. - Experience independently owning IAM governance initiatives or workstreams and driving them from problem identification through remediation and closure. - Experience designing or operating enterprise-scale IAM governance programs, such as access reviews, entitlement governance, segregation of duties (SoD), privileged access governance, or identity lifecycle governance. - Experience with enterprise IAM/IGA platforms and technologies such as SailPoint, Saviynt, Tuebora, Okta, Microsoft Entra ID, or comparable solutions. - Experience working with security or compliance frameworks such as NIST, ISO 27001, SOC 2, SOX, PCI DSS, or similar control environments. - Experience with governance of non-human identities, including service accounts, machine identities, workload identities, API credentials, or emerging agentic identities.

Job Information

[For Pay Transparency]Compensation Description (Annually)

The base salary range for this position in the selected city is $134400 - $223200 annually.

Compensation may vary outside of this range depending on a number of factors, including a candidate's qualifications, skills, competencies and experience, and location. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives, and restricted stock units.

Benefits may vary depending on the nature of employment and the country work location. Employees have day one access to medical, dental, and vision insurance, a 401(k) savings plan with company match, paid parental leave, short-term and long-term disability coverage, life insurance, wellbeing benefits, among others. Employees also receive 10 paid holidays per year, 10 paid sick days per year and 17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure).

The Company reserves the right to modify or change these benefits programs at any time, with or without notice.

For Los Angeles County (unincorporated) Candidates:

Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state, and local laws including the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act. Our company believes that criminal history may have a direct, adverse and negative relationship on the following job duties, potentially resulting in the withdrawal of the conditional offer of employment:

1. Interacting and occasionally having unsupervised contact with internal/external clients and/or colleagues;

2. Appropriately handling and managing confidential information including proprietary and trade secret information and access to information technology systems; and

3. Exercising sound judgment.

About TikTok

TikTok is a social media app that allows users to create and share short videos. The app was launched in 2016 by Chinese tech company ByteDance. TikTok has become one of the most popular social media apps in the world, with over 1 billion active users. The app has been downloaded over 2 billion times worldwide. TikTok has faced controversy over its data privacy practices and its potential ties to the Chinese government. In 2020, the app faced a potential ban in the United States, but a deal was reached with Oracle and Walmart to create a new company called TikTok Global.
Learn more about TikTok
Size
1,750 employees
Industry
Founded
2012

Similar Jobs

More Jobs at TikTok

More Information Technology Jobs

Find similar Identity Access Management Governance Specialist - Global Security Organization jobs: