VP, Authentication Senior Manager (Customer IAM)

2919 Allen Parkway, Houston, TX, United States

⚠️ We'll shut down after Aug 1st - try foo🦍 instead ⚠️

Corebridge Financial

Take action today to build a bridge for tomorrow—from planning to outcomes, from meeting today’s financial needs to attaining your aspirations.

View all jobs at Corebridge Financial

Apply now Apply later

Who We Are

At Corebridge Financial, we believe action is everything. That’s why every day we partner with financial professionals and institutions to make it possible for more people to take action in their financial lives, for today and tomorrow.

We align to a set of Values that are the core pillars that define our culture and help bring our brand purpose to life:

  • We are stronger as one: We collaborate across the enterprise, scale what works and act   decisively for our customers and partners.
  • We deliver on commitments: We are accountable, empower each other and go above and beyond for our stakeholders.
  • We learn, improve and innovate: We get better each day by challenging the status quo and equipping ourselves for the future.
  • We are inclusive: We embrace different perspectives, enabling our colleagues to make an impact and bring their whole selves to work.

Who You’ll Work With

The Information Technology organization is the technological foundation of our business and works in collaboration with our partners from across the company. The team drives technology and digital transformation, partners with business leaders to design and execute new strategies through IT and operations services and ensures the necessary IT risk management and security measures are in place and aligned with enterprise architecture standards and principles.

About The Role

The VP, Authentication Senior Engineer will provide overall leadership and oversee the company’s Customer IAM (CIAM) authentication service function. This role reports to the Global Head of Authentication (Identity and Access Management), requires extensive background and overall experience in IAM strategy, architecture, and software development/engineering as well as subject matter expertise in authentication services (both internal workforce and customer) while ensuring appropriate visibility, communication, and governance across key business partners and stakeholders. The role will require working across organizational boundaries, managing engineering and operations teams, overseeing vendors, driving POCs and negotiations, and interfacing with audit and regulatory teams.  

Responsibilities

  • Plan and execute the delivery of Authentication services (Customer IAM). 
  • Work with business aligned IT managers to define business requirements, target state processes, implementation plans, adhere to enterprise IT standards and other considerations that influence how IAM solutions and services should perform and operate.  
  • Ensure Authentication platform complies with relevant security standards, regulations, and industry frameworks. Conduct regular audits and assessments. 
  • Lead & oversee the design and development of Authentication solutions that enforce applicable organization security policies and access management requirements. 
  • Lead and oversee the build, configuration, and architecture of one or more authentication platforms, such as Okta/Ping and Azure including implementing modern authentication technology components such as SSO (Single sign-on), registration, identity proofing, Multi-Factor Authentication (MFA) solutions such as Federation, Mobile Push, Biometrics, FIDO compliant MFA, TOTP, Phone-as-a-token, password resets, etc. 
  • Demonstrate an understanding of Authentication services and integration with broader security solutions, such as Identity & Access Governance, Privileged Access, and broader Cybersecurity services. 
  • Defines, enhances, and oversees all enterprise-wide authentication processes, controls and follow-up, exception & risk acceptance approvals, and walkthroughs. 
  • Responsible for managing the day-to-day operations and maintenance of authentication and related security systems. 
  • Represents the IAM organization on large scale technology projects implemented outside IAM, regulatory reviews and internal and external audits. 
  • Ability to confidently articulate business risks and technical challenges to stakeholders. 
  • Be action oriented: Taking on new opportunities and tough challenges with a sense of urgency, high-energy and enthusiasm. 
  • Balance stakeholders: Anticipating and balancing the needs of multiple stakeholders. 
  • Collaborate: Building partnerships and working collaboratively within and outside ISO (Information Security Office) organization to meet shared objectives. 
  • Communicate effectively: Developing and delivering multi-mode communications that convey a clear understanding of the unique needs of different audiences. 
  • Cultivate innovation: Creating new and better ways for the organization to be successful. 
  • Be customer focused: Building strong customer relationships and delivering customer-centric solutions. 
  • Drive engagement: Creating a climate where people are motivated to do their best to help the organization achieve its objectives. 
  • Drive results: Consistently achieving results, even under tough circumstances. 
  • Have a global perspective: Taking a broad view when approaching issues using a global lens. 
  • Be interpersonal savvy: Relating openly and comfortably with diverse groups of people. 
  • Manage complexity: Making sense of complex, high quantity, and sometimes contradictory information to effectively solve problems. 
  • Be able to optimize work processes: Knowing the most effective and efficient processes to get things done, with a focus on continuous improvement. 
  • Be organizational savvy: Maneuvering comfortably through complex policy, process, and people-related organizational dynamics. 
  • Interpret and apply skills to build Authentication solutions to support globally dispersed businesses, personnel, and customers. 

Skills and Qualifications

  • 10+ years of overall experience in (or related experience) Cybersecurity and IAM managing engineering, strategy, process/controls and related services. 
  • 10+ years’ experience in supporting key IAM business processes supporting Identity Governance, Privileged Access, Access Administration & Authentication (inc. MFA), Directory Services, Enterprise-reporting for employees, non-employees and customers. 
  • 8+ years of production support or related experience with IAM business processes, defining requirements, and implementing and recommending control-based business processes. 
  • 8+ years’ experience in providing technical expertise in systems, technical infrastructure, tools, modelling, external interfaces, and other technical areas. Completes complex development, design, implementation, architecture design specification, and maintenance activities. Participating in projects and initiatives working with IAM team members, architecture, development and engineering teams, service owners, and business stakeholders to provide enterprise IAM solutions that are scalable and adaptable with the ever-changing business needs and industry demands. 
  • 8+ years’ experience in Authentication products including Azure AD, Active Directory, role-based access control, multi-factor authentication, and SSO & related standards (e.g., OAuth(2), OIDC, Kerberos, LDAP, RADIUS, SAML, NTLM, Kerberos, PKI, etc.) is must. 
  • 8+ years of engineering, production and operational support (or related experience) with IAM business processes, defining requirements, and implementing and recommending control-based business processes. 
  • Experience working with both multiple 3rd party service providers and in a third-party services agreement function during separations/divestitures. 
  • Strong interpersonal skills, with the ability to work with many levels of management and across multiple lines of business and corporate functions. 
  • 8+ years of working with regulatory requirements (SOX, SOC1, NYDFS, GDPR, PCI, MAS, etc.) and industry standard frameworks and methodologies, including NIST (National Institute of Standards and Technology), Information Technology Infrastructure Library (ITIL), Systems Development Life Cycle (SDLC), etc. 
  • 8+ years working with 3rd parties providing management oversight of IAM services, technologies, processes, and controls. 
  • 8+ years’ experience interpreting architecture, designs and business requirements to develop and implement IT security solutions that span multiple technologies, businesses and geographies. 
  • 8+ years advance understanding of business processes, internal control risk management, security and IT controls and related standards. 
  • 5+ years managing 20+ resources in a matrixed environment. 
  • 5+ years of hands-on experience with platforms such as SailPoint, Okta, CyberArk, Ping, Quest (ARS, Change Auditor and Enterprise Reporter), Active Directory, AWS, Azure, Top Secret, ServiceNow, and related products. 
  • Experience with the following web technologies: XML, SPML/SOAP, Web and Application Servers, HTML. 
  • Demonstrated experience supporting many of the following platforms: Azure AD, OAM, ADFS, Windows, Linux, VMware, AWS, Azure, Oracle, MSSQL, MySQL, Sybase, Db2, ACF2, Tomcat, JBoss, WebSphere, WebLogic, and Apache. 
  • General knowledge of cryptography including RSA-ACE, ECC, 3DES, IDEA, AES256/1024, SEAL. 
  • 5+ years working with IaaS, SaaS, PaaS service providers (Azure, AWS, Google GCE, Salesforce). 
  • BA/BS degree in Computer Science, Engineering, or related discipline or equivalent work experience. 
  • Demonstrated experience with Databases (Oracle, MSSQL, MySQL). 
  • Experience with infrastructure, network, database, or security troubleshooting and remediation. 
  • Experience with operating system (Unix/Linux/Windows) commands and utilities as well as scripting. 
  • Experience with SIEM tool such as Splunk, with skills to detect and remediate security threats. 
  • Exposure to DevOps tools as Jenkins, GitHub, Dockers, Ansible, Kubernetes, etc. is a plus. 
  • Experience overseeing and supporting a 24x7 security operation (L1/L2/L3). 

Compensation

The anticipated salary range for this position is $140,000 to $180,000 at the commencement of employment.  Not all candidates will be eligible for the upper end of the salary range. The actual compensation offered will ultimately be dependent on multiple factors, which may include the candidate’s geographic location, skills, experience and other qualifications.

In addition, the position is eligible for a discretionary bonus in accordance with the terms of the applicable incentive plan.

Corebridge also offers a range of competitive benefits as part of the total compensation package, as detailed below.

Work Location

This position is based in Corebridge Financial’s Jersey City, NJ, Houston, TX, or Durham, NC office and is subject to our hybrid working policy, which gives colleagues the benefits of working both in an office and remotely.

Estimated Travel

May include up to 25%.

#LI-SAFG  #LI-CW1 #LI-Hybrid

Why Corebridge?

At Corebridge Financial, we prioritize the health, well-being, and work-life balance of our employees. Our comprehensive benefits and wellness program is designed to support employees both personally and professionally, ensuring that they have the resources and flexibility needed to thrive.

Benefit Offerings Include:

  • Health and Wellness: We offer a range of medical, dental and vision insurance plans, as well as mental health support and wellness initiatives to promote overall well-being.
  • Retirement Savings: We offer retirement benefits options, which vary by location.  In the U.S., our competitive 401(k) Plan offers a generous dollar-for-dollar Company matching contribution of up to 6% of eligible pay and a Company contribution equal to 3% of eligible pay (subject to annual IRS limits and Plan terms). These Company contributions vest immediately.
  • Employee Assistance Program: Confidential counseling services and resources are available to all employees.
  • Matching charitable donations: Corebridge matches donations to tax-exempt organizations 1:1, up to $5,000.
  • Volunteer Time Off: Employees may use up to 16 volunteer hours annually to support activities that enhance and serve communities where employees live and work.
  • Paid Time Off: Eligible employees start off with at least 24 Paid Time Off (PTO) days so they can take time off for themselves and their families when they need it.


Eligibility for and participation in employer-sponsored benefit plans and Company programs will be subject to applicable law, governing Plan document(s) and Company policy.

We are an Equal Opportunity Employer

Corebridge Financial, is committed to being an equal opportunity employer and we comply with all applicable federal, state, and local fair employment laws. All applicants will be considered for employment based on job-related qualifications and without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, neurodivergence, age, veteran status, or any other protected characteristic. The Company is also committed to compliance with all fair employment practices regarding citizenship and immigration status. At Corebridge Financial, we believe that diversity and inclusion are critical to building a creative workplace that leads to innovation, growth, and profitability. Through a wide variety of programs and initiatives, we invest in each employee, seeking to ensure that our colleagues are respected as individuals and valued for their unique perspectives.

Corebridge Financial is committed to working with and providing reasonable accommodations to job applicants and employees, including any accommodations needed on the basis of physical or mental disabilities or sincerely held religious beliefs.  If you believe you need a reasonable accommodation in order to search for a job opening or to complete any part of the application or hiring process, please send an email to TalentandInclusion@corebridgefinancial.com.  Reasonable accommodations will be determined on a case-by-case basis, in accordance with applicable federal, state, and local law.

We will consider for employment qualified applicants with criminal histories, consistent with applicable law.

To learn more please visit: www.corebridgefinancial.com

Functional Area:

IT - Information Technology

Estimated Travel Percentage (%): Up to 25%

Relocation Provided: No

American General Life Insurance Company

Apply now Apply later
Job stats:  2  0  0

Tags: Active Directory Ansible Audits AWS Azure Compliance Computer Science Cryptography Cyberark DevOps GDPR GitHub Governance IaaS IAM ITIL Jenkins Kerberos Kubernetes LDAP Linux MSSQL MySQL NIST NTLM Okta Oracle PaaS PKI POCs Risk management RSA SaaS SailPoint SAML Scripting SDLC SIEM SOC 1 SOX Splunk SSO Strategy Tomcat Top Secret UNIX VMware Windows XML

Perks/benefits: Career development Competitive pay Flex vacation Gear Health care Insurance Salary bonus Signing bonus Startup environment Team events Wellness

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.