Life360

Life360

Senior IAM Engineer II (AI Native)

Remote, USA ; Remote, Canada · Senior

Sponsorship not specified$91k-$169kDetected 12 days ago
PythonGoGitCloud PlatformsTerraformOAuthComplianceCadenceZero TrustLeadershipCollaboration

About the role

  • That means treating identity infrastructure the way engineering teams treat product infrastructure: owned in code, measured with data, and continuously improved.
  • AI is core to how this team operates day to day - from drafting and validating IaC changes to automating access-review workflows - so identity engineering here means designing systems that pair automation with human judgment, not replacing one with the other.
  • IAM Engineer who thinks in systems, writes code to solve operational problems, and treats identity as a platform discipline.

Responsibilities

  • Own the enterprise identity platform as an engineering system - architect SSO integrations, lifecycle workflows, MFA policy, and group provisioning in Okta using IaC as the source of truth
  • Engineer the identity lifecycle management layer - design access control models and codify provisioning/deprovisioning workflows in IaC, partnering with HR systems to eliminate manual access operations and return clean provisioning capability to the helpdesk tier
  • Engineer access governance across the cloud and SaaS portfolio - own role assignments, group structures, and access controls across cloud infrastructure and collaboration platforms
  • design and automate periodic access reviews so auditability is structural, not procedural
  • Harden the device-to-identity trust boundary - own device trust integrations between our identity provider and MDM platforms, ensuring device compliance signals are correctly evaluated in access policy and that the control surface is fully codified
  • Rationalize and consolidate legacy identity surface - lead the technical cleanup of orphaned accounts, stale SSO integrations, and guest access sprawl across the SaaS portfolio
  • Build the IAM measurement layer - define, instrument, and track KPIs (access review completion rates, provisioning latency, orphaned account age, ticket volume trends) that justify investment decisions and demonstrate program maturity to Security leadership
  • codify the configuration in IaC and own the integration contract between identity infrastructure and the employee-facing access experience
  • The foundation is in place now and we need someone to drive the design, automation, and governance layers forward.
  • We're building toward a metrics-first operating model, and you'll build the instrumentation that makes that real.

Requirements

  • Production experience in engineering and operating an enterprise identity platform at scale
  • Strong IaC skills are required (Terraform or equivalent) applied to identity infrastructure - you write modules, manage state, and treat IaC plans as the change control mechanism
  • Experience governing access across cloud and SaaS platforms via SSO and SCIM - including group structures, permission boundaries, and collaboration platform controls
  • Comfort writing code to automate identity operations - Python, Go, or similar
  • Track record of defining measurable outcomes for security/identity programs and communicating them to non-technical stakeholders
  • You may be asked to demonstrate proficiency with AI tools, discuss how you leverage AI, or complete interview exercises without AI assistance.

Nice to have

  • Experience integrating device trust between an identity provider and MDM platforms to enforce compliance as a condition of access
  • Familiarity with self-service access request platforms
  • Experience operating in SOX, SOC 2, GDPR, CCPA, or COPPA compliance environments
  • Exposure to zero-trust architecture patterns and their application to workforce identity
  • AI-Native Expectations
  • Daily use: you use AI coding agents (e.g. Claude Code, Cursor, GitHub Copilot) daily to draft Terraform modules, provisioning scripts, and access-policy configuration - not just for autocomplete
  • Judgment and ownership: you review and are accountable for anything AI-generated before it touches production identity infrastructure
  • you can describe a time AI output was wrong and what you changed as a result

Compensation

  • For candidates based in the US, the salary range for this position is $91,000 to $169,000 USD.
  • For candidates based out of Canada, the salary range for this position is 132,000 to 157,000 CAD.

Benefits

  • Competitive pay and benefits.
  • Medical, dental, vision, life, and disability insurance plans (100% paid for US employees).
  • We offer supplemental plans for medical and dental for Canadian employees.
  • Employee Assistance Program (EAP) for mental wellness.
  • Flexible PTO and 12 company-wide days off throughout the year.
  • Learning & Development programs.
  • Equipment, tools, and reimbursement support for a productive remote environment.

Company info

  • Security and IT at Life360 operate as a single integrated function - and we're building it like one.
  • You'll own Enterprise IAM at Life360 - setting the architecture, engineering standards, and program direction for how every employee accesses every system, at a company that handles sensitive location data for nearly 100 million users.
  • About the Job
  • We're looking for a Sr.
  • Use AI coding agents as a first-class part of the identity engineering workflow - draft and validate Terraform modules, provisioning logic, and access-policy changes with AI assistance, and own review of anything AI-generated before it reaches production identity infrastructure
  • What We're Looking For

This listing is sourced directly from Life360's careers page and normalized into a canonical job model.