Note: The job is a remote job and is open to candidates in USA. Ensono is seeking a Senior Manager – IAM Practice Lead to support State Street's IAM integration and migration efforts. This role will involve leading the IAM practice, managing teams, and driving business development while providing end-to-end solution architecture oversight for application migrations.
Responsibilities
- Lead and manage the IAM practice, providing strategic direction and oversight for all IAM initiatives
- Mentor and develop IAM Engineers, Solution Architects, and Technical Project Managers
- Establish best practices, standards, and governance frameworks for IAM delivery
- Drive continuous improvement and innovation within the IAM practice
- Partner with sales teams to identify and qualify IAM opportunities
- Lead discovery sessions and workshops with prospective clients to understand IAM requirements
- Develop compelling proposals, RFP responses, and solution presentations
- Conduct technical demonstrations and proof-of-concept engagements
- Build and maintain relationships with key stakeholders and decision-makers
- Contribute to pricing strategies and effort estimations for IAM engagements
- Design and implement standard IAM patterns and solutions across the enterprise migration program
- Lead IAM integration efforts in support of application migrations, including: Authentication and Federation – Design and implement identity federation solutions and authentication mechanisms Authorization Integration – Develop and deploy role-based and attribute-based access control frameworks Secret Management – Architect secure solutions for credentials, keys, and certificate management Identity Governance and Administration (IGA) – Implement identity lifecycle management and access certification processes Privileged Access Management (PAM) Integration – Design and integrate PAM solutions to secure privileged accounts
- Provide migration readiness and cutover support for IAM controls
- Develop accelerators and self-service tools to streamline IAM integration during migrations
- Execute IAM integration outcomes for approved backlog items, including configuration, implementation, and documentation
- Work under State Street's direction, governance, and control to deliver IAM solutions aligned with organizational technology and business goals
- Utilize the approved tooling stack consistent with State Street standards
Skills
- 12+ years of experience in Identity and Access Management with progressive leadership responsibilities
- 5+ years of experience in a Senior Manager or leadership role
- Proven pre-sales experience including proposal development, client presentations, RFP responses, and solution demonstrations
- Hands-on experience with ForgeRock Identity Platform (Access Management, Identity Management, Directory Services)
- Expertise in Microsoft Entra ID (formerly Azure AD) including Conditional Access, B2B/B2C, and hybrid identity configurations
- Deep expertise in IAM domains including: Identity Federation (SAML, OAuth, OIDC), Single Sign-On (SSO) solutions, Multi-Factor Authentication (MFA), Privileged Access Management (CyberArk, BeyondTrust, or similar), Identity Governance (SailPoint, Saviynt, or similar), Secret/Vault Management (HashiCorp Vault, AWS Secrets Manager, Azure Key Vault)
- Experience with cloud platforms (AWS, Azure) and hybrid cloud environments
- Proven track record of supporting large-scale migration programs
- Strong understanding of enterprise security frameworks and compliance requirements
- Experience with landing zone architecture and cloud-native IAM services
- Excellent presentation, communication, and executive-level stakeholder management skills
- Strong business acumen with the ability to translate technical solutions into business value
- ForgeRock Certified Professional or equivalent certification
- Microsoft Certified: Identity and Access Administrator Associate (SC-300)
- Experience in financial services or highly regulated industries
- Certifications such as CISSP, CISM, AWS Certified Security Specialty, or Azure Security Engineer
- Experience with containerization and Kubernetes security
- Familiarity with DevSecOps practices and CI/CD pipelines
- Experience developing automation and self-service tooling for IAM processes
- Experience migrating legacy IAM systems to ForgeRock or Entra ID
- Track record of successfully closing and delivering IAM engagements
- Experience building and scaling IAM practices or teams
Benefits
- Unlimited Paid Days Off
- Three health plan options
- 401k with company match
- Eligibility for dental, vision, short and long-term disability, life and AD&D coverage, and flexible spending accounts
- Family Forming Benefit including fertility coverage and adoption/surrogacy reimbursement
- Paid childbearing and paternal leave
- Education Reimbursement, Student Loan Assistance or 529 College Funding
- Sabbatical leave
- Wellness program
- Flexible work schedule
- An annual bonus plan based on company and individual performance
- An equity grant under our Associate Equity Appreciation Program
Company Overview
Ensono delivers managed IT services to optimize and modernize mainframes, infrastructure, and cloud for clients. It was founded in 1969, and is headquartered in Chicago, Illinois, USA, with a workforce of 1001-5000 employees. Its website is https://www.ensono.com.Company H1B Sponsorship
Ensono has a track record of offering H1B sponsorships, with 2 in 2026, 27 in 2025, 20 in 2024, 16 in 2023, 19 in 2022, 19 in 2021, 7 in 2020. Please note that this does not guarantee sponsorship for this specific role.