The Opportunity:As the Principal Enterprise Identity Engineer, you are the ultimate technical authority and visionary for our global Enterprise Identity Management (EIM) and Identity Governance and Administration (IGA) landscape. Moving beyond individual contribution, you will define the multi-year identity strategy, driving zero-trust initiatives across a highly complex, global ecosystem.
Operating at the highest levels of our technical ladder, you will bridge the gap between executive business strategy and deep technical execution. You will architect resilient, massively scalable identity frameworks, mentor senior engineering talent, and lead cross-functional transformations that protect our most critical global assets while enabling frictionless business operations.
Job Responsibilities
Lead the multi-year roadmap and end-to-end technical strategy for enterprise identity, aligning IGA architectures with global security policies and zero-trust frameworks.
Establish and enforce enterprise-wide architecture patterns, engineering standards, and reusable frameworks across identity, cloud, and infrastructure domains.
Pioneer the adoption of emerging identity technologies, including decentralized identity, advanced ML-driven access analytics, and complex microservice/API integrations.
Who you are:
Qualifications and Core Expertise
5+ years of experience steering identity strategies in highly regulated, multinational enterprise environments (Healthcare, Finance, or similar industries highly preferred).
Deep-tier technical expertise in SailPoint (IdentityNow/IdentityIQ), encompassing enterprise-scale design, custom development, performance tuning, and global deployment.
Proven track record of architecting integration solutions across complex multi-cloud environments (AWS, Azure, GCP) and profound familiarity with CI/CD pipelines, DevOps methodologies, and microservices.
Exceptional executive presence with the ability to communicate deeply technical concepts to non-technical stakeholders and lead distributed global engineering teams autonomously.
The ability to troubleshoot complex identity issues across multiple technology layersfrom ISC configuration and APIs through connectors, applications, directories, and downstream provisioning systems.
Mentor engineers and solution architects, conduct architecture and design reviews, and help build a strong global Enterprise Identity community.
Education & Certifications
Degree: Bachelors or Advanced degree (Masters preferred) in Computer Science, Cyber Security, Information Technology, or a related field.
Certifications: CISSP, CISM, or CIAM is strongly preferred for this leadership level.
Technical Certifications: Advanced certifications in AWS/Azure/GCP Architecture or SailPoint highly desirable.
Relocation benefits are not available for this job posting.
Must work onsite in South San Francisco
The expected salary range for this position based on the primary location of South San Francisco, CA is between $114,900- $263,500. Actual pay will be determined based on experience, qualifications, geographic location, and other job-related factors permitted by law. A discretionary annual bonus may be available based on individual and Company performance. This position also qualifies for the benefits detailed at the link provided below.
#RDT2026