Principal Engineer, Workforce, Customer & Agentic Identity

atAllstateRemoteUS flagIllinoisFull-timeFull-stack EngineerLead$199k – $274k/year

Posted Aug 14

This is a fully remote position, open to applicants in Illinois.

📋 Description

• Define and lead the technical strategy and architecture for workforce, customer, machine, and agentic identity platforms across the organization.

• Enhance customer authentication experiences while upholding security, governance, and compliance standards.

• Collaborate with engineers, architects, product teams, and security leaders to design, implement, and modernize identity solutions.

• Provide technical leadership for authentication, authorization, federation, identity governance, lifecycle management, privileged access management, and access certification.

• Assess, design, and adopt identity platforms and technologies including Ping Identity, SailPoint, and emerging identity standards.

• Propel Zero Trust initiatives through MFA, risk-based authentication, fine-grained authorization, identity governance, and least-privilege controls.

• Define identity strategies and governance frameworks for machine identities, service accounts, workload identities, and AI agents.

• Establish identity controls and lifecycle processes for autonomous and agentic systems.

• Promote enterprise adoption of identity modernization initiatives by articulating business value, customer impact, and security outcomes.

• Work alongside digital product teams to develop secure, scalable customer identity experiences.

• Engage in architecture, troubleshooting, integration design, and implementation efforts.

• Mentor engineering teams and advocate for technical excellence.

• Set engineering standards, reference architectures, and best practices for the identity roadmap and Zero Trust strategy.

• Influence vendor roadmaps and product strategies.

• Perform supervisory responsibilities.


⛳️ Requirements

• Over 12 years of experience in designing and implementing enterprise Identity and Access Management (IAM) solutions.

• Proficient knowledge of Ping Identity, SailPoint, or similar identity and access management platforms.

• Strong understanding of customer identity, workforce identity, federation, SSO, MFA, privileged access management, identity governance, and access certification.

• Experience in designing and implementing Zero Trust identity architectures, including conditional access, risk-based authentication, fine-grained authorization, and least-privilege access controls.

• Background in supporting machine identities, workload identities, service accounts, certificates, secrets management, and cloud-native identity models.

• Familiarity with emerging AI and agentic identity concepts, governance models, and authorization frameworks.

• Proven capability to influence senior leaders, drive enterprise adoption, and convey complex technical strategies across diverse stakeholder groups.

• Ability to impact enterprise strategy and promote the adoption of identity modernization initiatives.

• Strong change leadership and stakeholder management abilities.

• Experience in technical leadership guiding architectures, engineering standards, and best practices.

• Customer-centric approach that balances security, usability, and business outcomes.

• Skilled in leading through influence, navigating ambiguity, and driving enterprise-wide change without direct authority.

• Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related technical field.

• Preferred IAM or security certifications such as CISSP, CCSP, SailPoint, Ping Identity, or Microsoft Security.

• Must consent to a background check.

• Allstate typically does not sponsor individuals for employment-based visas for this role.

• For remote work, a dedicated private workspace, suitable desk and seating, and reliable internet with minimum speeds of 50 MB download and 5 MB upload are required.


🏝️ Benefits

• Comprehensive technology package, including a laptop, monitors, headset, keyboard, and mouse.

• Monthly connectivity reimbursement to help alleviate internet costs.

• Remote work arrangement.

• Opportunity to influence the future of protection while supporting meaningful causes.

• Innovative work environment encouraging the exploration of ideas.

• Reliable home-working setup support requirements, including dedicated private workspace and appropriate desk and seating.

People also viewed

LMI12 hours ago

Full Stack Developer

US flagUnited States OnlyFull-timeFull-stack Engineer$122.2k – $211.3k/year
ApplyView job
Sourcegraph12 hours ago

Tech Lead – Code Plane

EuropeFull-timeFull-stack Engineer$144k – $192k/year
ApplyView job
Verra Mobility12 hours ago

Vice President, Software Engineering

US flagTexas OnlyFull-timeFull-stack Engineer
ApplyView job
Cint13 hours ago

Staff Software Engineer – DSM Team

ES flagSpain OnlyFull-timeFull-stack Engineer
ApplyView job
CI&T13 hours ago

Mid Level FullStack Developer – .NET, React

BR flagBrazil OnlyFull-timeFull-stack EngineerR$1 – R$2/month
ApplyView job
Akamai Technologies13 hours ago

Senior Software Engineer

PL flagPoland OnlyFull-timeFull-stack Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers