Lead Engineer, Authentication Engineering, (Sr Mgr Level) - Remote
Allstate · USA - IL (Remote)
Job description
At Allstate, great things happen when our people work together to protect families and their belongings from life’s uncertainties. And for more than 90 years, our innovative drive has kept us a step ahead of our customers’ evolving needs. From advocating for seat belts, air bags and graduated driving laws, to being an industry leader in pricing sophistication, telematics, and, more recently, device and identity protection. Job Description We are seeking a highly technical and innovative Lead Engineer, Authentication Engineering to lead the design, implementation, and advancement of enterprise authentication platforms. Multiple Managing Engineers for authentication teams will report to this role. This role will provide technical leadership for authentication solutions, including directory infrastructure, multi-factor authentication (MFA), PKI, privileged access management and vaulting solutions and an in-house developed application for password and MFA management. The successful candidate will partner closely with Product Management, Cybersecurity, Infrastructure Engineering, Application Teams, and Operations to deliver secure, scalable, and resilient authentication capabilities that align with strategic directions including AI enablement, Zero Trust, Infrastructure as Code, and automation. Key Responsibilities Partner with Authentication Lead Product Manager for creation of strategy, roadmaps, prioritization, and implementation of solutions. Lead the strategy, architecture, and engineering of enterprise authentication solutions, ensuring they meet business needs while delivering a secure, seamless user experience. Design, implement, and modernize authentication solutions, including MFA,, PKI, SSO, privileged access management, vaulting, and cloud-native authentication platforms to enable Zero Trust capabilities including passwordless, phishing-resistant authentication, Just-In-Time (JIT) and Just-Enough (JEA) access. Drive increased automation and Infrastructure as Code including test driven development practices for validation and control testing Lead large-scale authentication migrations and technology transformations, while continuously improving platforms to reduce user friction and increase adoption. Partner with security, infrastructure, cloud, application, and AI teams to deliver scalable, resilient authentication services and support security integration into application d automation, AI workflows, agentic AI capabilities. Provide technical leadership and people development by coaching Managing Engineers, leading technical product design reviews, and providing direction for engineering best practices. Influence clients and partners to prioritize for enterprise benefit and risk reduction and assist in driving the adoption of technology solutions that leverage existing patterns, practices, and reference architectures. Strengthen the organization’s security posture by implementing and enhancing controls to address gaps and vulnerabilities identified through audits, assessments, red team, penetration testing, vulnerability scanning, and proactive threat modeling. gaps identified through Own the reliability, resiliency, and operational excellence of authentication services by defining and achieving SLOs, improving service availability and performance, instrumenting and enhancing observability, and leading incident response efforts to reduce MTTR. Evaluate emerging technologies and industry trends, establish engineering standards and best practices, and provide technical leadership across authentication domains. Essential Skills 10+ years of Information Technology or Engineering experience with authentication, identity or security engineering accountabilities. (Preferred) 3+ years management experience. Experience leading enterprise large-scale projects. Technical Skills Strong technical expertise and enterprise experience with majority of the following: Strong Expertise with Active Directory and Entra ID Experience with PKI solutions such as Active Directory Certificate Services (AD CS); Hashicorp, Entrust, Sectigo, DigiCert, etc. Experience with multifactor solutions such as Microsoft Authenticator, Duo, etc. Experience implementing on-prem and cloud authentication solutions (AWS, Azure, and/or GCP) Experience with automation of authentication solutions and processes Experience deploying configurations leveraging CI/CD pipelines utilizing technologies like GitHub, Jenkins, GitHub Actions, Teraform, Ansible, etc Desired Skills Understanding of authentication attack techniques, threat actors, and exploitation methods and controls to mitigate. Understanding security standards and compliance requirements (NIST, ISO, PCI, HIPPA, Sox, etc.). Understanding of Full Stack Java development. Supervisory Responsibilities This role does have supervisory responsibilities. #LI_NJ1 Skills Access Management, Access Management, Artificial Intelligence (AI), Artificial Intelligence Techniques, Authentication, Authentication Protocols, Automated Deployments, AWS Secrets Manager, Business Needs, Certificate Services, Computer Science, Customer Relationship Management (CRM), Design, Engineering Practices, Enterprise SSO, GitHub, GitHub Actions, Information Technology Management, Infrastructure as a Service (IaaS), Infrastructure As Code (IaC), Infrastructure Engineering, IT Security Operations, Just-in-Time (JIT) Manufacturing, Just in Time (JIT) Production, Kerberos {+ 30 more} Compensation Compensation offered for this role is 151,700.00 - 221,675.00 annually and is based on experience and qualifications. The candidate(s) offered this position will be required to submit to a background investigation. Joining our team isn’t just a job — it’s an opportunity. One that takes your skills and pushes them to the next level. One that encourages you to challenge the status quo. One where you can shape the future of protection while supporting causes that mean the most to you. Joining our team means being part of something bigger – a winning team making a meaningful impact. Allstate generally does not sponsor individuals for employment-based visas for this position. Effective July 1, 2014, under Indiana House Enrolled Act (HEA) 1242, it is against public policy of the State of Indiana and a discriminatory practice for an employer to discriminate against a prospective employee on the basis of status as a veteran by refusing to employ an applicant on the basis that they are a veteran of the armed forces of the United States, a member of the Indiana National Guard or a member of a reserve component. For jobs in San Francisco, please click “here” for information regarding the San Francisco Fair Chance Ordinance. For jobs in Los Angeles, please click “here” for information regarding the Los Angeles Fair Chance Initiative for Hiring Ordinance. To view the “EEO Know Your Rights” poster click “here”. This poster provides information concerning the laws and procedures for filing complaints of violations of the laws with the Office of Federal Contract Compliance Programs. To view the FMLA poster, click “here”. This poster summarizing the major provisions of the Family and Medical Leave Act (FMLA) and telling employees how to file a complaint. It is the Company’s policy to employ the best qualified individuals available for all jobs. Therefore, any discriminatory action taken on account of an employee’s ancestry, age, color, disability, genetic information, gender, gender identity, gender expression, sexual and reproductive health decision, marital status, medical condition, military or veteran status, national origin, race (include traits historically associated with race, including, but not limited to, hair texture and protective hairstyles), religion (including religious dress), sex, or sexual orientation that adversely affects an employee's terms or conditions of employment is prohibited. This policy applies to all aspects of the employment relationship, in
Verified and listed by ActiveJobs. Applications are made directly on Allstate's own career page — we never sit in the middle.