Mondelez International

Product Owner & Head of IAM Directory Services

$140K–$193KFull-time · United States (Remote)
✓ Verified live on the employer's own system · added 16 days ago
Save search
Senior · 15+ yrs exp

Requirements

Education: Bachelor's degree or related field

Experience: 15+ years

Skills & tools

HiringManagementSecurityScriptingDevopsProject ManagementTeam LeadershipOperations

Benefits — mentioned in this posting

Bonus / commission
Apply on company site ↗ See your fit → free

Full job description

Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours.

About this Job Mondelez International is hiring a Senior Manager

  • Product Owner & Head of IAM Directory Services

We are seeking a Senior Manager

  • Product Owner & Head of IAM Directory Services to lead the strategy, engineering, and lifecycle management of enterprise directory and machine identity platforms within our global Identity and Access Management (IAM) organization.

Operating within a product operating model, this role owns the Directory Services and Certificate Lifecycle Management platforms end-to-end, including strategy, roadmap, architecture, engineering delivery, resilience, and governance. The role leads the operation and modernization of a global multi-domain, multi-forest identity environment spanning Active Directory, Microsoft Entra ID, and cloud identity integrations, while overseeing the enterprise certificate lifecycle management program.

This position plays a critical role in strengthening the organization’s identity security posture by reducing the technical attack surface, securing hybrid identity platforms across on-premise and cloud environments, and advancing automation through scripting and modern DevSecOps practices. Success in this role requires deep expertise in identity security architecture, Infrastructure as Code ( IaC ), and end-to-end certificate lifecycle management.

  • Own the strategic direction and roadmap for enterprise Directory Services and Certificate Lifecycle Management platforms within the IAM product portfolio.
  • Define and drive multi-year platform strategy aligned with enterprise Zero Trust, identity security, and hybrid cloud transformation initiatives.
  • Translate enterprise IAM policies and security standards into directory, machine identity, and certificate governance frameworks.
  • Lead platform lifecycle management, including modernization initiatives such as directory consolidation, hybrid identity adoption, and machine identity governance improvements.
  • Manage platform backlog, priorities, and engineering delivery in alignment with the product operating model and agile delivery practices.
  • Partner with IAM leadership to ensure directory and certificate platforms support broader identity governance, authentication, and privileged access strategies.
Directory Services & PKI Platform Engineering & Operations Leadership
  • Lead engineering and operational oversight of the enterprise directory services infrastructure, including Active Directory multi-domain and multi-forest environments.
  • Ensure reliability, scalability, and security of enterprise directory infrastructure including domain controllers, replication topology, DNS integration, and group policy architecture.
  • Establish engineering standards for directory architecture, operational stability, and platform resilience.
  • Oversee platform lifecycle management including patching, upgrades, monitoring, and disaster recovery planning.
  • Manage the enterprise PKI ecosystem, ensuring secure certificate issuance, validation, renewal, and revocation processes.
  • Lead hybrid identity architecture integrating Active Directory with Microsoft Entra ID and cloud identity services.
  • Oversee identity synchronization, federation, and identity lifecycle processes across on-premise and cloud environments.
  • Partner with cloud engineering teams to enable secure identity integration for enterprise applications, SaaS platforms, and cloud infrastructure.
  • Enable application and DevOps teams with secure identity and certificate services required for modern development pipelines .
  • Lead the enterprise machine identity and certificate lifecycle management program, including governance of Venafi or equivalent CLM platforms.
  • Maintain centralized governance and inventory of machine identities and certificates across infrastructure, applications, APIs, and network devices.
  • Reduce operational and security risks related to certificate expiration , unmanaged certificates, and machine identity sprawl.
  • Integrate certificate lifecycle management capabilities into enterprise infrastructure and DevOps pipelines.
  • Oversee integration and secure operation of Hardware Security Modules (HSMs) used for certificate authority and cryptographic key protection .
Security, Operational Resilience & Identity Threat Management
  • Strengthen the security posture of identity infrastructure platforms, including Active Directory, Entra ID, and PKI services.
  • Partner with the Security Operations Center (SOC) and cyber defense teams to monitor and respond to identity-related threats and anomalies.
  • Establish monitoring and alerting for identity infrastructure anomalies, suspicious authentication activity, and potential directory compromise scenarios.
  • Respond to and lead investigations involving identity compromise, privilege escalation, and misconfiguration.
  • Drive automation initiatives across directory services, identity infrastructure, and certificate lifecycle management platforms.
  • Implement Infrastructure as Code ( IaC ), scripting frameworks, and API-driven automation for identity infrastructure provisioning and management.
  • Lead the adoption of DevSecOps practices to improve operational efficiency and platform security.
  • Improve platform resilience through proactive monitoring, reliability engineering, and disaster recovery planning.
  • Partner with enterprise architecture, cybersecurity, infrastructure, and cloud engineering teams to align identity services with enterprise technology strategy.
  • Support integration of directory and certificate services with enterprise IAM platforms and identity governance solutions.
  • Provide subject matter expertise to application teams on identity infrastructure, certificate management, and secure authentication integrations.
  • Represent directory services and machine identity platforms in enterprise security reviews, architecture boards, and transformation initiatives.
  • Bachelor’s degree in Computer Science , Cybersecurity, or a related field
  • 15+ years of experience in Identity and Access Management, Directory Services, Identity Infrastructure
  • 10+ years of experience leading engineering teams or platform ownership roles in IAM or identity infrastructure domains.
  • Proven experience operating and modernizing large-scale Active Directory environments, including multi-domain and multi-forest architectures.
  • Experience managing hybrid identity platforms integrating Active Directory and Microsoft Entra ID.
  • Hands-on experience implementing Certificate Lifecycle Management (CLM) or PKI platforms, such as Venafi or equivalent solutions.
  • Experience supporting identity platforms in global enterprise environments.
  • Experience operating within a product operating model, including ownership of platform roadmaps and delivery outcomes.
  • Ability to lead engineering teams while collaborating effectively with security, infrastructure, and application engineering stakeholders.
  • Ability to communicate effectively with both technical teams and senior leadership .
  • Ability to drive complex identity transformations in large enterprise environments .
  • Passionate about automation, security, and operational excellence .
  • Self-driven, organized, and comfortable operating in a hybrid, fast-paced environment .
  • PKI or certificate management related certifications (Venafi preferred)

Travel: Periodic travel (up to 10%) may be necessary for key meetings, conferences, or team collaboration

The base salary range for this position is $140,300 to $192,940; the exact salary depends on several factors such as experience, skills, education and location. In addition to base salary, this position is eligible for participation in a highly competitive bonus program with possibility for overachievement based on performance and company results.

The United States is the largest market in the Mondelēz International family with a significant employee and manufacturing footprint. Here, we produce our well-loved household favorites to provide our consumers with the right snack, at the right moment, made the right way. We have corporate offices, sales, manufacturing and distribution locations throughout the U.S. to ensure our iconic brands—including Oreo and Chips Ahoy! cookies, Ritz, Wheat Thins and Triscuit crackers, and Swedish Fish and Sour Patch Kids confectionery products —are close at hand for our consumers across the country.

For more information about your Federal rights, please see eeopost.pdf ; EEO is the Law Poster Supplement ; Pay Transparency Nondiscrimination Provision ; Know Your Rights: Workplace Discrimination is Illegal

More jobs at Mondelez International

Similar jobs near United States (Remote)

Tell me when more Product Owner, DevX and AI - Shop Builder jobs post near Remote We re-check every listing against the employer’s own board — no résumé needed.

Search Product Owner & Head of IAM Directory Services jobs near United States (Remote) → Browse all live jobs

This posting was published by Mondelez International on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.