SECTION I · THE BRIEF
Brief #22887Updated 08 OCT 2026FOSTER CITY, CALeverSOFTWARE COMPANIES
Employbl Company Profile

Information Security Manager - Identity and Access Management (IAM)

Zoox is an American autonomous vehicle company currently headquartered in Foster City, California, United States with multiple offices of operations throughout the San Francisco Bay Area. The company was founded in…

Location
Foster City, CA
Company size
2,000–5,000
Posted
Yesterday
Via
Lever
Section II · Full ProfileFree with an account
  • 01Comp band & equity packageLocked
  • 02Seniority & experience requirementsLocked
  • 03Interview process & rubricLocked
  • 04Hiring manager & team contextLocked
  • 05Growth trajectory in this roleLocked
  • 06Offer & decision timelineLocked

Free account · no card · 2 minutes

Information Security Manager - Identity and Access Management (IAM)

Zoox· Foster City, CAView company profile


Job title
Information Security Manager - Identity and Access Management (IAM)
Job location
Foster City, CA
Job description
We are seeking an experienced IT Information Security Manager to own, advance, and scale our Identity & Access Management (IAM) program. In this role, you will lead a dedicated team of IAM engineers and analysts responsible for identity governance, access lifecycle management, privileged access management (PAM), and authentication architecture across enterprise applications, cloud infrastructure, and hybrid environments. You will bridge strategic vision with technical execution—ensuring seamless user access while maintaining a robust zero-trust security posture and meeting stringent compliance requirements.
In This Role, You Will...
Strategic Leadership & Governance
  • IAM Strategy: Lead the definition, rollout, and execution of the enterprise IAM roadmap, aligning identity practices with Zero Trust principles and corporate security standards.
  • Governance & Policies: Develop, maintain, and enforce identity policies, including Role-Based Access Control (RBAC), Attribute-Based Access Control (ABAC), Least Privilege, and Separation of Duties (SoD).
  • Team Management: Lead, mentor, and build a high-performing team of IAM engineers, system integrators, and security analysts.
  • Operational Excellence & Technical Oversight
  • Lifecycle Management: Oversee the Joiner, Mover, and Leaver (JML) processes to automate provisioning and de-provisioning workflows across on-premises and cloud platforms.
  • Authentication & SSO: Architect and oversee modern authentication standards, including Single Sign-On (SSO), Multi-Factor Authentication (MFA), SAML 2.0, OpenID Connect (OIDC), and passwordless technology.
  • Privileged Access Management (PAM): Manage enterprise PAM solution implementation, securing administrative credentials, session monitoring, and just-in-time access controls.
  • Identity Governance & Administration (IGA): Direct user access reviews, entitlement certification campaigns, and automated access request/approval workflows.
  • Risk Management, Compliance & Support
  • Audit & Compliance: Function as the primary IAM lead for internal and external audits, ensuring timely remediation of access-related findings.
  • Incident Response: Act as an escalation point for identity-focused security incidents, credentials compromise, and unauthorized access investigations.
  • Vendor Management: Evaluate, select, and manage third-party IAM software vendors, tools, and professional services partners.
  • Qualifications
  • 8+ years of total experience in IT and Cybersecurity, with at least 3+ years in a leadership/management capacity focused specifically on Identity & Access Management.
  • Hands-on experience with industry-standard IAM tools:
    ○ Directory & Identity Providers: Microsoft Entra ID (Azure AD), Okta, Ping Identity, Active Directory.
    ○ IGA Platforms: SailPoint, Saviynt, or Microsoft Entra ID Governance.
    ○ PAM Solutions: CyberArk, BeyondTrust, Delinea, or HashiCorp Vault.
  • Deep understanding of OAuth 2.0, SAML, OIDC, SCIM, Kerberos, and LDAP protocols.
  • Strong familiarity with regulatory compliance frameworks.
  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent practical experience.
  • Bonus Qualifications
  • CISSP, CISM, CISA, or vendor-specific certifications (e.g., Okta Certified Professional, Microsoft Certified: Identity and Access Administrator Associate, SailPoint Certified).
  • Hands-on experience managing identity across AWS, Azure, or GCP cloud environments.
  • Proficiency in scripting/automation (PowerShell, Python, REST APIs) for workflow optimization.
  • View job listing ↗
    The Saturday Briefing

    Get the Saturday tech briefing

    New company profiles, funding moves, and who’s hiring across the market — every Saturday morning.