
Principal Engineer, Workforce, Customer & Agentic Identity
Posted Aug 14

Posted Aug 14
This is a fully remote position, open to applicants in Illinois.
• Define and lead the technical strategy and architecture for workforce, customer, machine, and agentic identity platforms across the organization.
• Enhance customer authentication experiences while upholding security, governance, and compliance standards.
• Collaborate with engineers, architects, product teams, and security leaders to design, implement, and modernize identity solutions.
• Provide technical leadership for authentication, authorization, federation, identity governance, lifecycle management, privileged access management, and access certification.
• Assess, design, and adopt identity platforms and technologies including Ping Identity, SailPoint, and emerging identity standards.
• Propel Zero Trust initiatives through MFA, risk-based authentication, fine-grained authorization, identity governance, and least-privilege controls.
• Define identity strategies and governance frameworks for machine identities, service accounts, workload identities, and AI agents.
• Establish identity controls and lifecycle processes for autonomous and agentic systems.
• Promote enterprise adoption of identity modernization initiatives by articulating business value, customer impact, and security outcomes.
• Work alongside digital product teams to develop secure, scalable customer identity experiences.
• Engage in architecture, troubleshooting, integration design, and implementation efforts.
• Mentor engineering teams and advocate for technical excellence.
• Set engineering standards, reference architectures, and best practices for the identity roadmap and Zero Trust strategy.
• Influence vendor roadmaps and product strategies.
• Perform supervisory responsibilities.
• Over 12 years of experience in designing and implementing enterprise Identity and Access Management (IAM) solutions.
• Proficient knowledge of Ping Identity, SailPoint, or similar identity and access management platforms.
• Strong understanding of customer identity, workforce identity, federation, SSO, MFA, privileged access management, identity governance, and access certification.
• Experience in designing and implementing Zero Trust identity architectures, including conditional access, risk-based authentication, fine-grained authorization, and least-privilege access controls.
• Background in supporting machine identities, workload identities, service accounts, certificates, secrets management, and cloud-native identity models.
• Familiarity with emerging AI and agentic identity concepts, governance models, and authorization frameworks.
• Proven capability to influence senior leaders, drive enterprise adoption, and convey complex technical strategies across diverse stakeholder groups.
• Ability to impact enterprise strategy and promote the adoption of identity modernization initiatives.
• Strong change leadership and stakeholder management abilities.
• Experience in technical leadership guiding architectures, engineering standards, and best practices.
• Customer-centric approach that balances security, usability, and business outcomes.
• Skilled in leading through influence, navigating ambiguity, and driving enterprise-wide change without direct authority.
• Bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related technical field.
• Preferred IAM or security certifications such as CISSP, CCSP, SailPoint, Ping Identity, or Microsoft Security.
• Must consent to a background check.
• Allstate typically does not sponsor individuals for employment-based visas for this role.
• For remote work, a dedicated private workspace, suitable desk and seating, and reliable internet with minimum speeds of 50 MB download and 5 MB upload are required.
• Comprehensive technology package, including a laptop, monitors, headset, keyboard, and mouse.
• Monthly connectivity reimbursement to help alleviate internet costs.
• Remote work arrangement.
• Opportunity to influence the future of protection while supporting meaningful causes.
• Innovative work environment encouraging the exploration of ideas.
• Reliable home-working setup support requirements, including dedicated private workspace and appropriate desk and seating.
LMI
Sourcegraph
Verra Mobility
Cint
Get handpicked remote jobs straight to your inbox weekly.