Docusign-posted 2 months ago
$177,900 - $287,425/Yr
Full-time • Senior
San Francisco, CA
5,001-10,000 employees

Reporting directly to Docusign’s Chief Information Security Officer, the Senior Manager, Identity and Access Management will be a strategic and product-focused leader responsible for designing and executing comprehensive, enterprise-wide strategies for identity and access management at Docusign. The Senior Manager will lead a small Identity and Access Management team within the Security organization which serves as the center of a hub and spoke model for the company. This team will set company policy and standards and work with cross-functional leaders and identity and access management resources (e.g., in IT, Engineering, etc.) to ensure the effective implementation of best practices across the enterprise.

  • Develop and execute the organization’s identity and access management strategy and standards, aligning with overall business objectives, digital transformation initiatives, and product and enterprise security requirements
  • Build a high-performing, product-driven team focused on measurable outcomes and continuous improvement. Lead and mentor members of the identity and access management team
  • Define, deliver, and continuously evolve identity and access management best practices
  • Collaborate with cross-functional identity and access management teams to implement secure best practices, ensuring proper management of user accounts and permissions, appropriately tailored access policies and processes, effective management platform and solution evaluations, and validation of efficacy of the program and controls
  • Operationalize governance and guardrails for identity and access management, ensuring safe and compliant use across the organization
  • Drive automation efforts to reduce the likelihood of human error, create efficiencies at scale, and optimize workflows
  • Advise on opportunities to embed best practices and features for identity and access management into Docusign products; advise on opportunities to embed best practices and features for identity and access management from Docusign products into company business practices
  • Translate technical risk and opportunities into business impact, providing clear updates, trade-off discussions, and recommendations to executives
  • Ensure practices meet internal security standards, industry frameworks, and regulatory requirements
  • Define measurable success criteria and report outcomes to leadership
  • Collaborate with customer-facing security teams to support security assurance activities where required
  • 8+ years in identity and access management or related security disciplines, with 6+ years in leadership roles
  • Bachelor’s degree in computer science, data science, cybersecurity, risk management, artificial intelligence, machine learning, or a related technical field
  • Experience designing and leading identity and access management programs
  • Experience with product security, including secure development lifecycle and CI/CD best practices, and identity and access management risks and mitigation measures
  • Experience with enterprise security, including risk mitigation and governance of identity and access management issues relating to business processes, objectives, emerging technologies, AI and ML, and CRM, ERP, HRM, and other business workflows
  • Experience with threats presented through the exploitation of identity and access management risks and substantive experience working with threat intelligence, CSIRT, PSIRT, Product, and Engineering teams to combat such risks
  • Experience in data governance and security, including implementation of data governance and security frameworks, business initiatives to leverage data, and data security best practices relating to identity and access management, attack surface management, and data loss prevention
  • Experience defining security KPIs, metrics pipelines, and executive reporting frameworks.
  • Experience with cross-functional collaboration and stakeholder management skills, especially with Product, Engineering, IT, Data, Privacy, and executive teams
  • Excellent stakeholder management and communication skills across technical and business audiences
  • Excellent collaboration and communication management skills across technical and non-technical audiences
  • Certifications: CISM, CRISC, CISSP, CCSP, CAIP, or equivalent
  • Familiarity with attack surface monitoring, supply chain security, and continuous control validation
  • Experience driving automation strategies, predictive analytics, and data-driven insights
  • Knowledge of frameworks such as NIST CSF, NIST AI RMF, ISO 27001, ISO 42001, FAIR, SOC 2, and FedRAMP
  • Paid Time Off: earned time off, as well as paid company holidays based on region
  • Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement
  • Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment
  • Retirement Plans: select retirement and pension programs with potential for employer contributions
  • Learning and Development: options for coaching, online courses and education reimbursements
  • Compassionate Care Leave: paid time off following the loss of a loved one and other life-changing events
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service