DriveWealth · New York, NY

Salary
$155,000–$175,000from the description
Posted
Jul 14, 2026
Location
New York, NY
Last confirmed open
Jul 21, 2026

What this job asks for AI summary

A senior, hands-on identity and access management role centered on owning and evolving Okta and Auth0 platforms at an enterprise level — covering SSO/SCIM integrations, authentication policy design, client onboarding, API-based automation, and cloud identity federation via AWS. The position also involves extending IAM governance to AI tooling and non-human identities, mentoring junior engineers, and advising security and IT teams on identity architecture and compliance frameworks.

Senior level · New York-Newark-Jersey City, NY-NJ-PA · Full-time

Advertised as Principal, but the requirements read as Senior.

Must have (13)
OktaAuth0SSOSCIMOkta WorkflowsSAMLOIDCOAuth 2.0MFAREST APIsAWSAWS Identity CenterActive Directory
Nice to have (4)
LLMsSOC 2ISO 27001NIST

Posted 2 times — it's one opening, so apply once.

We read this from the posting text with AI. Skim the description below before ruling yourself out.

How this req sits in the market our data

Roughly 30 people in the New York-Newark-Jersey City, NY-NJ-PA area plausibly meet what this posting asks for (information security analysts). range 6–45

Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.

What gives you an edge
SCIM4%

Rare in this occupation — lead with these, and say what you built with them.

What won't set you apart
Active Directory50%MFA40%

Most people in this occupation already list these. Still required — just not what gets you shortlisted.

What the occupation pays Median $143,559 (middle half $110,181–$179,574). This posting is about at that midpoint.

Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.

Why we read it this way (8)

The title 'Principal IAM Lead' is used as a seniority label in the posting, but the actual scope — owning a single IAM platform domain, mentoring junior engineers, and advising peer teams — is consistent with a Senior individual contributor rather than a true Principal (org-wide technical authority). Seniority is assessed as Senior accordingly.

SOC classification is Medium confidence. The role is primarily IAM platform administration and security engineering (15-1212 Information Security Analysts), but the heavy platform-administration and automation work could also fit 15-1299 (Computer Occupations, All Other) for an IAM-specialist role without a perfect SOC match.

Active Directory and Entra ID are listed together as a single familiarity requirement ('directory services (Active Directory, Entra ID)'); they are captured as one skill with Entra ID as an alternative, reflecting the JD's framing of them as interchangeable directory contexts.

LLMs and AI/ML platform security appear under a 'What You'll Do' narrative section describing emerging responsibilities, not under a formal requirements block; treated as preferred.

Compliance frameworks (SOC 2, ISO 27001, NIST) and PAM/non-human identity governance appear under the 'Nice to Have, But Not Required' section and are marked preferred.

No minimum total years of experience is stated in the posting.

The role is hybrid (New York, NY office); fully remote candidates are explicitly excluded.

Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Okta Identity Governance.

Read the full posting

The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.

Apply

Apply on employer site ↗