About The Position

State Street Global Cybersecurity - Identity & Access Management is seeking an Authentication Systems Engineering & Operations Manager to lead the engineering and operational performance of core workforce authentication platforms supporting internal users and internal applications. The role owns platform reliability and modernization across internal authentication systems while driving MFA compliance, SSO integration, and migration toward a simplified target state with consistent policy enforcement. This role can be performed in a hybrid model, where you can balance work from home and office to match your needs and role requirements.

Requirements

  • Strong experience operating enterprise authentication and SSO platforms in regulated, audit-driven environments.
  • Ability to drive remediation through influence—partnering with application owners where enforcement mechanisms are limited.
  • Comfortable balancing modernization goals with production stability and user experience constraints.
  • Clear written and verbal communication for risk, progress, and decision points.
  • Operational rigor: change control, incident hygiene, runbooks, and measurable reliability.
  • 10+ years in authentication/SSO engineering & operations, including people leadership.
  • Hands-on expertise with critical authentication systems (supporting Radius through to OAUTH) in enterprise environments.
  • Experience delivering large-scale remediation programs (MFA uplift, legacy retirement, SSO migrations).
  • Bachelor’s degree (or equivalent experience).

Responsibilities

  • Own “build and run” engineering for workforce authentication platforms, ensuring availability, operational discipline, and secure configurations.
  • Drive MFA compliance management across internal applications, including identifying non-standard patterns and executing remediation plans with application owners.
  • Lead SSO integration delivery (modern protocols where feasible) and enforce consistent onboarding patterns aligned to enterprise policy direction.
  • Execute the migrations onto strategic authentication platforms / protocols and manage the backlog and retirement path, prioritizing by risk/criticality and feasibility, and managing dependencies with application teams.
  • Operate and improve authentication policy enforcement, including Conditional Access alignment, centralized visibility, and reduction of control bypass risk from fragmented journeys.
  • Reduce exposure from legacy/weak authenticators by enforcing guardrails (e.g., disabling new enrollments into weak methods where required) and executing planned exits.
  • Own incident/problem management, runbooks, logging/monitoring integration, and operational evidence production for audits and control testing.
  • Establish clear SLAs, service health metrics, and executive-ready reporting on remediation progress and platform risk posture.

Benefits

  • retirement savings plan (401K) with company match
  • insurance coverage including basic life, medical, dental, vision, long-term disability, and other optional additional coverages
  • paid-time off including vacation, sick leave, short term disability, and family care responsibilities
  • access to our Employee Assistance Program
  • incentive compensation including eligibility for annual performance-based awards
  • eligibility for certain tax advantaged savings plans
  • inclusive development opportunities
  • flexible work-life support
  • paid volunteer days
  • vibrant employee networks
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service