Life360
Senior IAM Engineer II (AI Native)
Remote, USA ; Remote, Canada · Senior
Sponsorship not specified$91k-$169kDetected 12 days ago
PythonGoGitCloud PlatformsTerraformOAuthComplianceCadenceZero TrustLeadershipCollaboration
About the role
- That means treating identity infrastructure the way engineering teams treat product infrastructure: owned in code, measured with data, and continuously improved.
- AI is core to how this team operates day to day - from drafting and validating IaC changes to automating access-review workflows - so identity engineering here means designing systems that pair automation with human judgment, not replacing one with the other.
- IAM Engineer who thinks in systems, writes code to solve operational problems, and treats identity as a platform discipline.
Responsibilities
- Own the enterprise identity platform as an engineering system - architect SSO integrations, lifecycle workflows, MFA policy, and group provisioning in Okta using IaC as the source of truth
- Engineer the identity lifecycle management layer - design access control models and codify provisioning/deprovisioning workflows in IaC, partnering with HR systems to eliminate manual access operations and return clean provisioning capability to the helpdesk tier
- Engineer access governance across the cloud and SaaS portfolio - own role assignments, group structures, and access controls across cloud infrastructure and collaboration platforms
- design and automate periodic access reviews so auditability is structural, not procedural
- Harden the device-to-identity trust boundary - own device trust integrations between our identity provider and MDM platforms, ensuring device compliance signals are correctly evaluated in access policy and that the control surface is fully codified
- Rationalize and consolidate legacy identity surface - lead the technical cleanup of orphaned accounts, stale SSO integrations, and guest access sprawl across the SaaS portfolio
- Build the IAM measurement layer - define, instrument, and track KPIs (access review completion rates, provisioning latency, orphaned account age, ticket volume trends) that justify investment decisions and demonstrate program maturity to Security leadership
- codify the configuration in IaC and own the integration contract between identity infrastructure and the employee-facing access experience
- The foundation is in place now and we need someone to drive the design, automation, and governance layers forward.
- We're building toward a metrics-first operating model, and you'll build the instrumentation that makes that real.
Requirements
- Production experience in engineering and operating an enterprise identity platform at scale
- Strong IaC skills are required (Terraform or equivalent) applied to identity infrastructure - you write modules, manage state, and treat IaC plans as the change control mechanism
- Experience governing access across cloud and SaaS platforms via SSO and SCIM - including group structures, permission boundaries, and collaboration platform controls
- Comfort writing code to automate identity operations - Python, Go, or similar
- Track record of defining measurable outcomes for security/identity programs and communicating them to non-technical stakeholders
- You may be asked to demonstrate proficiency with AI tools, discuss how you leverage AI, or complete interview exercises without AI assistance.
Nice to have
- Experience integrating device trust between an identity provider and MDM platforms to enforce compliance as a condition of access
- Familiarity with self-service access request platforms
- Experience operating in SOX, SOC 2, GDPR, CCPA, or COPPA compliance environments
- Exposure to zero-trust architecture patterns and their application to workforce identity
- AI-Native Expectations
- Daily use: you use AI coding agents (e.g. Claude Code, Cursor, GitHub Copilot) daily to draft Terraform modules, provisioning scripts, and access-policy configuration - not just for autocomplete
- Judgment and ownership: you review and are accountable for anything AI-generated before it touches production identity infrastructure
- you can describe a time AI output was wrong and what you changed as a result
Compensation
- For candidates based in the US, the salary range for this position is $91,000 to $169,000 USD.
- For candidates based out of Canada, the salary range for this position is 132,000 to 157,000 CAD.
Benefits
- Competitive pay and benefits.
- Medical, dental, vision, life, and disability insurance plans (100% paid for US employees).
- We offer supplemental plans for medical and dental for Canadian employees.
- Employee Assistance Program (EAP) for mental wellness.
- Flexible PTO and 12 company-wide days off throughout the year.
- Learning & Development programs.
- Equipment, tools, and reimbursement support for a productive remote environment.
Company info
- Security and IT at Life360 operate as a single integrated function - and we're building it like one.
- You'll own Enterprise IAM at Life360 - setting the architecture, engineering standards, and program direction for how every employee accesses every system, at a company that handles sensitive location data for nearly 100 million users.
- About the Job
- We're looking for a Sr.
- Use AI coding agents as a first-class part of the identity engineering workflow - draft and validate Terraform modules, provisioning logic, and access-policy changes with AI assistance, and own review of anything AI-generated before it reaches production identity infrastructure
- What We're Looking For
Apply directly at Life360 →Create a free account for alerts like thisView Life360 immigration profile
This listing is sourced directly from Life360's careers page and normalized into a canonical job model.