NBCUniversal Here you can.
NBCUniversal Logo

NBCUniversal

Sr Manager, IAM Authentication

Posted An Hour Ago
Be an Early Applicant
Remote or Hybrid
Hiring Remotely in New York, NY
175K-210K Annually
Senior level
Remote or Hybrid
Hiring Remotely in New York, NY
175K-210K Annually
Senior level
Lead technical and operational delivery of enterprise authentication services across multiple Entra ID tenants and federation platforms (Ping), governing MFA and SSO standards, driving automation, incident response, vendor management, and service reliability. Manage a team of engineers, report KPIs, partner with cybersecurity, architecture, application, and audit teams, and ensure secure, scalable, high-availability authentication for workforce and partner applications.
The summary above was generated by AI
Company Description
NBCUniversal is one of the world's leading media and entertainment companies. We create world-class content, which we distribute across our portfolio of film, television, and streaming, and bring to life through our global theme park destinations, consumer products, and experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, NBC Sports, Telemundo, NBC Local Stations, Bravo, and Peacock, our premium ad-supported streaming service. We produce and distribute premier filmed entertainment and programming through our powerhouse film and television studios, including Universal Pictures, DreamWorks Animation, and Focus Features, and the four global television studios under the Universal Studio Group banner, and operate industry-leading theme parks and experiences around the world through Universal Destinations & Experiences, including Universal Orlando Resort, home to Universal Epic Universe, and Universal Studios Hollywood. NBCUniversal is a subsidiary of Comcast Corporation. Visit www.nbcuniversal.com for more information.
Our impact is rooted in improving the communities where our employees, customers, and audiences live and work. We have a rich tradition of giving back and ensuring our employees have the opportunity to serve their communities. We champion an inclusive culture and strive to attract and develop a talented workforce to create and deliver a wide range of content reflecting our world.
Job Description
As part of the Global Operations & Technology Engineering organization, the Identity & Access Management (IAM) team enables secure, seamless access to enterprise applications, data, and infrastructure across our businesses. We partner with business, technology, and cybersecurity teams to improve user experience, reduce risk, and meet regulatory and audit requirements through modern identity capabilities and strong access governance.
We are seeking a Senior Manager, IAM Authentication to provide technical and operational leadership for enterprise authentication services, including governance and operations across multiple Microsoft Entra ID tenants, Ping and Entra ID federation services, Multi-Factor Authentication (MFA), and Single Sign-On (SSO) for workforce and partner application ecosystems. This leader is accountable for delivering reliable, secure, and scalable authentication capabilities while enabling business agility and a consistent end-user sign-in experience.
This role partners closely with cybersecurity, infrastructure, endpoint engineering, application owners, and risk/audit stakeholders to establish operational objectives, policies, procedures, and work plans for authentication and federation services. The Senior Manager drives a secure-by-design authentication program, handles unforeseen issues and service disruptions with strong tactical decision-making, and applies influence to align stakeholders on desired outcomes while preserving relationships.
Responsibilities:
  • Influence and drive the roadmap and delivery for enterprise authentication services across multiple Microsoft Entra ID tenants, establishing operational objectives and work plans that ensure consistent security controls, lifecycle management, and service reliability.
  • Own and govern federation services, including PingFederate/PingOne components and Entra ID federation configurations, ensuring high availability, secure configuration baselines, certificate/key management, and resilient failover.
  • Establish and enforce MFA and SSO standards for enterprise applications, including onboarding patterns, authentication methods, step-up authentication, and user experience guardrails.
  • Partner with cybersecurity, architecture, and application teams to design and implement conditional access patterns, risk-based access decisions, and modern authentication protocols (e.g., SAML, OIDC/OAuth) where applicable.
  • Partner with IAM Operations, Architecture, and Software Development teams and leadership
  • Provide leadership and direction for day-to-day engineering: incident response, problem management, change management, release planning, maintenance windows, and service reliability objectives for authentication platforms.
  • Drive automation to remove friction from manual processes (e.g., application onboarding, federation configuration validation, certificate rotation, access policy deployment) and improve speed, quality, and traceability.
  • Manage vendor and partner relationships related to authentication and federation technologies; oversee the department budget for tools and services, including licensing and renewals, with an emphasis on operational effectiveness and measurable outcomes.
  • Lead and develop a high-performing team of 4 direct reports and multiple offshore-based staff members; set clear expectations, coach and mentor managers/engineers, conduct performance management, develop succession plans, and foster a culture of accountability, collaboration, and continuous improvement.
  • Develop and report KPIs and operational metrics (e.g., availability, authentication success rates, MFA adoption, onboarding lead time, incident trends) to management and stakeholders, providing clear status, risks, and mitigation plans.
  • Serve as an escalation point for authentication outages and high-severity security events; coordinate communications and remediation across technical and business stakeholders.
  • Experience partnering with risk, audit, and compliance teams to implement and evidence controls.
  • Perform other duties as assigned.

Qualifications
Basic Requirements:
  • Bachelor's degree or equivalent work experience.
  • 8+ years of experience in identity and access management, authentication engineering, or security engineering or architecture.
  • 3+ years of management experience leading technical teams delivering highly available services.
  • Understanding of Microsoft Entra ID (Azure AD), including multi-tenant/complex enterprise environments.
  • Understanding of federation services and SSO integrations (e.g., PingFederate/PingOne and/or comparable federation stacks) and common protocols (SAML 2.0, OIDC, OAuth 2.0).
  • Understanding of MFA methods and authentication assurance.
  • Demonstrated ability to communicate complex security and identity concepts to both technical and executive audiences and influence without direct authority.

Desired Characteristics:
  • Experience designing authentication architecture for large enterprises with multiple identity providers, complex tenant topologies, mergers/acquisitions, and hybrid dependencies.
  • Experience with Entra Conditional Access, Authentication Strengths, Identity Protection, and privileged access concepts (e.g., PAM, PIM) as they relate to securing authentication.
  • Strong background in service management and reliability practices (SRE concepts, SLIs/SLOs, capacity planning, disaster recovery testing).
  • Experience integrating authentication with endpoint/device trust signals and modern device management (e.g., Intune) to support phishing-resistant access patterns.
  • Familiarity with zero trust and least privilege frameworks and how they translate into authentication and access decisioning.
  • Experience building automation and deployment pipelines for identity configuration (e.g., infrastructure / configuration as code for policy and federation settings).
  • Relevant certifications preferred (e.g., CISSP, CISM, Microsoft identity/security certifications, or comparable).
  • Proven ability to develop talent, build cross-functional partnerships, and drive a positive security culture.

Additional Requirements:
  • Fully Remote: This position has been designated as fully remote, meaning that the position is expected to contribute from a non-NBCUniversal worksite, most commonly an employee's residence.

This position is eligible for company sponsored benefits, including medical, dental and vision insurance, 401(k), paid leave, tuition reimbursement, and a variety of other discounts and perks. Learn more about the benefits offered by NBCUniversal by visiting the Benefits page of the Careers website. Salary range: $175k - $210k (bonus eligible)
We are accepting applications for this position on an ongoing basis.
Additional Information
As part of our selection process, external candidates may be required to attend an in-person interview with an NBCUniversal employee at one of our locations prior to a hiring decision. NBCUniversal's policy is to provide equal employment opportunities to all applicants and employees without regard to race, color, religion, creed, gender, gender identity or expression, age, national origin or ancestry, citizenship, disability, sexual orientation, marital status, pregnancy, veteran status, membership in the uniformed services, genetic information, or any other basis protected by applicable law.
If you are a qualified individual with a disability or a disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access nbcunicareers.com as a result of your disability. You can request reasonable accommodations by emailing [email protected].
For LA County and City Residents Only: NBCUniversal will consider for employment qualified applicants with criminal histories, or arrest or conviction records, in a manner consistent with relevant legal requirements, including the City of Los Angeles' Fair Chance Initiative For Hiring Ordinance, the Los Angeles County Fair Chance Ordinance for Employers, and the California Fair Chance Act, where applicable.

Similar Jobs at NBCUniversal

An Hour Ago
Remote or Hybrid
95K-115K Annually
Mid level
95K-115K Annually
Mid level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Manage end-to-end product lifecycle for enterprise media products, owning vision, roadmaps, backlog, and stakeholder engagement. Translate business requirements into technical features, collaborate with engineering and architecture, perform data analysis to inform decisions, lead UAT and change management, monitor vendor performance, and maintain documentation, governance, and compliance.
Top Skills: AgileBusiness Intelligence PlatformsData WarehouseJIRASdlc
An Hour Ago
Remote or Hybrid
110K-145K Annually
Senior level
110K-145K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Lead portfolio-level product strategy and internal GTM for enterprise Data+AI offerings. Build portfolio narratives, create enablement assets, measure adoption, run VoC loops, align stakeholders, and scale repeatable GTM motions using automation and AI tools.
Top Skills: Ai-Assisted ToolsAirtableConfluenceExcelJIRAMicrosoft TeamsService DeskSharepointSlackSQL
Yesterday
Remote or Hybrid
135K-160K Annually
Senior level
135K-160K Annually
Senior level
AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Lead a team to plan, coordinate, and deliver large-scale technology programs and process improvements across content and marketing supply chains. Drive agile best-practices, stakeholder alignment, risk mitigation, KPI reporting, portfolio management, and executive communications to meet cost, quality, timing, and scope objectives.
Top Skills: AirtableCloud TechnologiesJIRAExcelMicrosoft PowerpointMicrosoft Word

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account