About The Position

Every enterprise adoption of dbt begins with a set of questions that have nothing to do with SQL. Can we prove who's logging in? Can we control what they touch? Can we run this inside our own network, in our own region, under our own compliance regime? You own the answer to all of it. As the Senior Product Manager for enterprise and deployments, you own the trust and access layer of the dbt platform — how people and organizations authenticate, what they're authorized to do, and where the platform actually runs. That spans the identity and auth primitives underneath the product (OAuth, account discovery), the enterprise security surface customers evaluate us on (SSO, SCIM, RBAC, PrivateLink), the first five minutes of every account (login, sign-up, invites, users, groups), and the deployment footprint itself, including expansion into new regions and cloud providers. This is foundational infrastructure work with an unusually short line to revenue. dbt is used by more than 100,000 open-source community members and tens of thousands of customers, and the constraint on the largest of them is rarely the product's capability — it's whether the trust layer clears their bar. When you get this right, you unlock new regions, new deployment models, and a class of customer we can't fully serve today. If you've watched a company like Auth0 turn deeply technical identity work into a product engineers actually love, this will feel familiar. You'll work across two engineering teams — IAM and Transport — and partner closely with security, infrastructure, compliance, and the field teams who live inside enterprise security reviews. dbt Labs recently merged with Fivetran to build the open data infrastructure layer that AI depends on, which means an established customer base and ARR momentum on one side and a genuinely new problem space on the other.

Requirements

  • 5+ years of product management experience , with meaningful time on identity, access management, security, or infrastructure products.
  • Direct experience with authentication and authorization — SSO, SCIM, OAuth/OIDC, RBAC, identity providers.
  • You've shipped in this space and have opinions about where the standards help and where they get in the way.
  • Experience with multi-tenant SaaS deployment models — tenancy, isolation, regional expansion, and the migration paths between them.
  • A strong technical foundation that lets you work as a genuine peer to engineering, reason about architecture, and hold your own in a design review.
  • Comfort in front of enterprise customers , particularly their security and platform teams, and a track record of turning what you hear there into prioritized product work.
  • Excellent written communication — crisp specs, clear tradeoffs, and the ability to explain a security decision to a security team and to a salesperson in the same week.
  • Comfort operating asynchronously on a distributed team.

Nice To Haves

  • Worked at an identity provider (Okta, Auth0, Entra) or on identity, access, or deployment products at a hyperscaler — AWS, Azure, or Google Cloud.
  • Shipped private networking capabilities: PrivateLink, VPC peering, or customer-managed network isolation.
  • Worked inside compliance frameworks — SOC 2, ISO 27001, FedRAMP, HIPAA, GDPR and data residency — as a product owner rather than an observer.
  • Migrated a large existing customer base between deployment or tenancy models.
  • Background in telemetry and observability for platform services.
  • Hands-on experience with dbt, analytics engineering, or the modern data warehouse ecosystem (Snowflake, BigQuery, Databricks, Redshift).

Responsibilities

  • Own the roadmap for identity, access, and deployment across the dbt platform — from the auth primitives other teams build on to the admin surfaces customers configure themselves.
  • Make enterprise security a reason we win, not a hurdle we clear. SSO, SCIM, RBAC, and PrivateLink are table stakes for the customers we're chasing; your job is to get them past table stakes and make administration something buyers remark on.
  • Lead the single-tenant to multi-tenant migration — a multi-quarter program moving existing enterprise customers onto a modern deployment model without a visible seam, including account domain and subdomain changes.
  • Unlock new geographies and clouds. Decide where we deploy next and what has to be true — data residency, regional isolation, cloud provider parity — to get there.
  • Own the front door. Login, sign-up, and account discovery decide whether a new user reaches value or bounces, and whether a large organization can onboard thousands of people without filing a ticket.
  • Give admins real leverage over users, groups, invites, and permissions, so provisioning at enterprise scale is self-serve rather than a support motion.
  • Be the product voice in enterprise security reviews. Work with the field, security, and compliance to turn recurring blockers into roadmap, and turn roadmap into things sales can sell.
  • Partner with infrastructure and platform teams on the telemetry and observability needed to operate this layer with confidence — and to know when it's degrading before a customer tells you.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service