Director, Identity and Access Management at AG1 Asurion Insurance Services
US-Headquarters
—
Jun 30, 2026
US-Headquarters
Jul 20, 2026
What this job asks for AI summary
A senior leadership role responsible for enterprise-wide identity and access management, including migrating from SailPoint on-premise to SailPoint Identity Security Cloud, maturing CyberArk privileged access management, and governing federation, non-human identities, and AI-agent ecosystems. The role spans strategy, roadmap ownership, control design, and cross-functional execution, partnering with HR, IT, Security Operations, Cloud/DevOps, and GRC. Suits an experienced IAM leader with a background in large-scale IGA and PAM programs in complex or regulated environments.
Senior level · 10+ years · Remote · Full-time
Advertised as Principal, but the requirements read as Senior.
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 2,950 people nationally plausibly meet what this posting asks for (information security analysts). range 610–4,450
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (10)
The title 'Director' maps to a Director/VP-level people-management role, which would normally suggest 11-3021 (Computer and Information Systems Managers). However, the JD repeatedly emphasizes 'hands-on strategist,' deep technical ownership of IAM platforms, and individual program execution — not primarily managing a large org with budget/headcount authority. 15-1212 (Information Security Analysts) was chosen as the primary SOC given the dominant day-to-day work is IAM security program design and governance; 11-3021 is the close runner-up.
The degree requirement states 'Bachelor's degree … or related field; advanced degree preferred.' Because an advanced degree is only preferred and the JD does not explicitly reject candidates without a bachelor's (nor does it exclude equivalent experience), the degree requirement is set to None. If the company treats the bachelor's as a hard gate, this should be updated to Bachelors.
SailPoint IdentityIQ and SailPoint Identity Security Cloud are listed together as the migration path (on-prem to cloud); both are marked required as the role owns the full migration. They are listed as alternatives of each other to reflect that demonstrated experience with either platform satisfies the core IGA requirement.
Ping Identity/PingFederate is listed under required experience for federation governance; SAML, OIDC, and OAuth are explicitly required authentication/federation standards.
NIST CSF and MFA appear under 'Knowledge, Skills, and Abilities' as familiarity/support items rather than hard gates — listed as preferred.
AI/LLM governance familiarity is explicitly called out as 'familiarity with' under Knowledge, Skills, and Abilities — listed as preferred.
No compensation figures are provided in the posting.
The 5+ years leading enterprise IAM programs is a sub-requirement of the 10+ years overall; the overall years minimum is set to 10 (the higher overall gate).
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): SailPoint Identity Security Cloud.
Caller marked this a fully-remote role — scored against the national candidate pool.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.