SENIOR DIRECTOR OF IDENTITY(REMOTE)
Salary: $200,000--$220,000 + bonus eligible
Compass Technology is a dedicated internal team for Compass Group delivering enterprise-wide initiatives that support our diverse customer base and enhance our business operations. Our domain encompasses a vast spectrum of opportunities, from hands-on desk support to Cybersecurity, Cloud Engineering, AI, and Modern Application development. We are committed to building robust IT infrastructures, driving digital transformation, and much more.
Job Summary
The Senior Director of Identity leads Compass Group's enterprise Identity Security strategy and operations across North America including access operations, cloud identity, privileged access, identity lifecycle management, and ERP security. This leader will modernize identity from traditional access administration to a risk-based security capability, including Identity Security Posture Management, expanded ERP security for SAP, JDE and SOX-relevant applications.
Key Responsibilities
Strategic Leadership & Governance
- Define and execute the enterprise Identity Security strategy, roadmap, operating model, standards and measurable risk-reduction objectives.
- Advise Cybersecurity and technology leadership on identity risk, investments, architecture and control effectiveness; establish meaningful KPIs and KRIs.
- Partner with HR, Internal Audit, Risk, Compliance, application owners and business leaders to align identity controls with business and regulatory requirements.
Identity Governance, Lifecycle & Access Operations
- Lead enterprise IGA, joiner/mover/leaver processes, access requests, approvals, provisioning, deprovisioning, certifications and entitlement governance for employees, contractors and partners.
- Transform Security Administration into a scalable Access Operations function with service levels, automation, quality controls and clear accountability.
- Integrate disparate Identity Lifecycle Management into the broader enterprise identity model and drive least privilege, role-based access and timely removal of unnecessary access.
Identity Security, Cloud & Privileged Access
- Refocus Microsoft Entra investments toward Identity Security Posture Management to identify and reduce excessive privilege, dormant identities, risky configurations and identity attack paths.
- Provide strategic oversight for all cloud identity across AWS, Azure and Google Cloud, including authentication, authorization, federation and cloud entitlements.
- Establish controls for governance on privileged and non-human identities, including service accounts, workload identities, secrets and administrative access; promote phishing-resistant MFA and modern authentication standards.
ERP & Application Security
- Expand SAP Security into an enterprise ERP Security capability covering SAP, JDE, SOX-relevant applications and other critical platforms.
- Oversee ERP role design, sensitive access, Segregation of Duties, privileged access, access certification and remediation of control deficiencies.
- Integrate ERP and application access into enterprise identity governance and lifecycle processes.
Team, Technology & Vendor Leadership
- Build and lead a high-performing Identity Security organization spanning governance, engineering, access operations and ERP security; develop leaders and succession plans.
- Own the identity technology roadmap and strategic vendor relationships, including platform evaluations, major investments, licensing and service-provider performance.
- Drive automation, simplification and integration across identity platforms, HR systems, cloud environments, enterprise applications and Cybersecurity capabilities.
Qualifications
Education & Experience
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology or related field, OR equivalent relevant experience.
- 10+ years of progressive Identity, IAM or Cybersecurity experience, including 5+ years leading enterprise identity teams or programs in a large, complex organization.
- Demonstrated experience leading enterprise identity transformation across IGA, lifecycle management, authentication/federation, privileged access, cloud identity and access operations.
- Experience with ERP security and controls, preferably SAP and/or JDE, including role design, Segregation of Duties and SOX requirements.
- Proven experience managing technology vendors, service providers, budgets, roadmaps and executive stakeholders.
Certifications (Preferred)
- CISSP, CISM, CISA, CRISC, or similar security/identity certification; relevant Microsoft Entra, SailPoint, CyberArk, Google Cloud, AWS or SAP security certifications are a plus.
Technical & Vendor Experience
- Experience with several enterprise identity platforms such as Microsoft Entra ID, Active Directory, Google Cloud Identity/Workspace, Pathlock, CyberArk, 1Password or equivalent technologies.
- Strong knowledge of IGA, PAM, RBAC/ABAC, least privilege, Zero Trust, SAML, OAuth 2.0, OpenID Connect, SCIM, FIDO2, Conditional Access and identity threat/exposure concepts.
- Working knowledge of AWS IAM, Azure/Entra, Google Cloud IAM, SAP Security/GRC, JDE Security, ServiceNow and API/script-based identity automation is preferred.
Leadership & Soft Skills
- Executive-level communication and ability to translate complex identity risks into business impact, priorities and investment decisions.
- Strong strategic thinking, operational discipline, organizational leadership, collaboration and ability to influence across business and technology teams.
- Proven ability to lead complex transformation, develop high-performing teams and balance security, user experience and business enablement.
Apply to Compass Group today!
Click here to Learn More about the Compass Story
Compass Group is an equal opportunity employer. At Compass, we are committed to treating all Applicants and Associates fairly based on their abilities, achievements, and experience without regard to race, national origin, sex, age, disability, veteran status, sexual orientation, gender identity, or any other classification protected by law.
Qualified candidates must be able to perform the essential functions of this position satisfactorily with or without a reasonable accommodation. Disclaimer: this job post is not necessarily an exhaustive list of all essential responsibilities, skills, tasks, or requirements associated with this position. While this is intended to be an accurate reflection of the position posted, the Company reserves the right to modify or change the essential functions of the job based on business necessity. We will consider for employment all qualified applicants, including those with a criminal history (including relevant driving history), in a manner consistent with all applicable federal, state, and local laws, including the City of Los Angeles’ Fair Chance Initiative for Hiring Ordinance, the San Francisco Fair Chance Ordinance, and the New York Fair Chance Act.
Compass Technology maintains a drug-free workplace.
Applications are accepted on an ongoing basis.
Associates at Corporate are offered many fantastic benefits.
- Medical
- Dental
- Vision
- Life Insurance/ AD
- Disability Insurance
- Retirement Plan
- Paid Time Off
- Holiday Time Off (varies by site/state)
- Associate Shopping Program
- Health and Wellness Programs
- Discount Marketplace
- Identity Theft Protection
- Pet Insurance
- Commuter Benefits
- Employee Assistance Program
- Flexible Spending Accounts (FSAs)
- Paid Parental Leave
- Personal Leave
Associates may also be eligible for paid and/or unpaid time off benefits in accordance with applicable federal, state, and local laws. For positions in Washington State, Maryland, or to be p formed Remotely, click here or copy/paste the link below for paid time off benefits information.
https://www.compass-usa.com/wp-content/uploads/2023/08/2023_WageTransparency_CorpAndFoodbuy.pdf
Certain positions may require Florida Level 2 background screening. Details: https://info.flclearinghouse.com/
Req ID: 1572140
Compass Technology
MARY DICKSON
Job Segment:
Internal Audit, Finance