ForgeApply
Try it free

ForgeApply · Job listing

Senior Manager, Engineering - Identity & Access Management

Clickup

Remote · US$250k – $300k

See all 47 open roles at Clickup

Tailor your resume for this Clickup job in about a minute.

ForgeApply rewrites your resume for this exact posting, then autofills the application on Clickup's site with it. You review everything before it's sent. Free trial, no card required.

About this role

At ClickUp, we're building the future of work: the first truly converged AI workspace unifying tasks, docs, chat, calendar, and enterprise search, all supercharged by context-driven AI. We are an AI-native company. Every team member is expected to leverage AI daily, and we evaluate AI fluency as part of our hiring process. Join us and help redefine what's possible. 🚀

Come lead the Identity & Access Management Platform team (IAM Platform) — the foundational layer that decides who can see and do what across all of ClickUp. This team owns the authorization engine, the permission and role model, authentication (SSO, MFA, SCIM, OIDC), sharing primitives, audit logs, and the core data model and APIs that define how customers' work is organized and nested across the product — the foundation every other part of ClickUp is built on. It is backend-heavy, high-blast-radius work. As we move upmarket, this is some of the most important and security-sensitive work we do — enterprises decide whether they can trust us based on how precise, predictable, auditable, and manageable our access controls are.

We're looking for a Senior Engineering Manager to lead and grow this team. Your mandate is twofold: deliver an enterprise-grade access management platform — extensible, configuration-driven, correct and auditable by design — and build the team that will carry it, hiring and developing engineers as we invest heavily in enterprise. You'll raise the access, identity, and admin capabilities enterprises depend on to an enterprise-grade standard and keep them there, partnering with a Staff engineer on technical direction while you own delivery, people, and priorities.

Just as important: you'll run this team the way ClickUp runs — AI-native. We structure work so AI agents can read it, route it, roll it up, and report on it, so a small team amplified by agents operates at a different scale. There are no status-reporting meetings; agents keep status, progress, and health current from real signals, and reporting is self-serve. We want a manager who has already used AI flows to cut noise, eliminate busywork, and streamline how a team operates — and who will push that further.

RESPONSIBILITIES:

- Lead, grow, and develop the IAM Platform engineering team — own hiring, mentorship, performance, and career growth, and scale the team thoughtfully as we expand our enterprise investment.

- Own the delivery of ClickUp's enterprise-grade access management platform: the authorization engine and permission/role model, authentication (SSO via SAML/OIDC and social/Okta/Entra, MFA/2FA, session and token management), SCIM provisioning, sharing and access-control primitives, audit logs, OAuth and API token management, and the core data model and APIs that define how customers' work is organized across the product.

- Set the roadmap and priorities in partnership with product, security, and engineering leadership — elevating the access, identity, and admin capabilities enterprises depend on to an enterprise-grade standard and keeping them there.

- Run an AI-native team: structure the work so agents can route, scope, and report on it; use AI flows to remove status meetings and manual reporting, reduce noise, and let a small team operate at scale. Continuously raise the bar on how the team leverages AI end-to-end.

- Partner with enterprise customers, GTM, and security teams on access-control and identity requirements, and represent ClickUp credibly in enterprise security and architecture reviews.

- Own operational excellence for high-blast-radius services: a healthy on-call rotation, safe migrations, reliability, and a clear security boundary where the server remains the source of truth.

- Uphold a high engineering bar — design and code review, testing, performance, and security-by-design — for the most security-critical area of the product.

- Collaborate across backend, frontend, platform, product, design, and infosec to ship coherent access experiences on top of the platform.

REQUIREMENTS:

- 8+ years of professional software engineering experience building production SaaS, with 3+ years managing engineering teams (including senior engineers).

- Identity and access management experience is required — hands-on background delivering authentication and authorization systems: OAuth 2.0, OIDC, SAML, JWTs, MFA/2FA, enterprise SSO, SCIM, and RBAC/permission and role models, ideally in a multi-tenant environment.

- A proven ability to use AI tools and agentic workflows to reduce noise and streamline how a team works — automating reporting, triage, and status, and freeing engineers to focus on building.

- Experience delivering enterprise-grade SaaS at scale, and working directly with enterprise customers and their security, compliance, and administrative requirements.

- A track record of building and scaling high-performing engineering teams — hiring, growing, and retaining strong engineers.

- Enough technical depth to lead architecture discussions, make sound trade-offs on high-blast-radius systems, and hold a high bar without being the sole implementer.

- A security-conscious mindset: you design access control precisely, treat the server as the source of truth, and think about correctness, auditability, and blast radius by default.

- Excellent communication and cross-functional collaboration skills across engineering, product, design, and security.

- Daily fluency with AI tools in your own workflow.

PREFERRED QUALIFICATIONS:

- Experience owning IAM or authorization at scale — millions of users, multi-tenant, or workspace-scoped identity and token models.

- Experience designing configuration-driven or policy-based access models (RBAC/ABAC), authorization engines, or Zero Trust identity.

- Experience with SCIM provisioning, audit logging, and enterprise compliance frameworks (SOC 2, ISO 27001, and similar).

- A track record of moving a product upmarket and winning dema

Tailor your resume for this Clickup role before you apply.

Tailor my resume for this job

Similar jobs

Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)