What are the responsibilities and job description for the Product Owner & Head of IAM Directory Services position at U001 Mondelez Global LLC?
Stellenbeschreibung Are You Ready to Make It Happen at Mondelēz International? Join our Mission to Lead the Future of Snacking. Make It Uniquely Yours. About this Job Mondelez International is hiring a Senior Manager – Product Owner & Head of IAM Directory Services Locations - Remote in the United States Role Overview: We are seeking a Senior Manager – Product Owner & Head of IAM Directory Services to lead the strategy, engineering, and lifecycle management of enterprise directory and machine identity platforms within our global Identity and Access Management (IAM) organization. Operating within a product operating model, this role owns the Directory Services and Certificate Lifecycle Management platforms end-to-end, including strategy, roadmap, architecture, engineering delivery, resilience, and governance. The role leads the operation and modernization of a global multi-domain, multi-forest identity environment spanning Active Directory, Microsoft Entra ID, and cloud identity integrations, while overseeing the enterprise certificate lifecycle management program. This position plays a critical role in strengthening the organization’s identity security posture by reducing the technical attack surface, securing hybrid identity platforms across on-premise and cloud environments, and advancing automation through scripting and modern DevSecOps practices. Success in this role requires deep expertise in identity security architecture, Infrastructure as Code (IaC), and end-to-end certificate lifecycle management. Key Responsibilities Leadership – IAM Policy, Strategy & Roadmap Own the strategic direction and roadmap for enterprise Directory Services and Certificate Lifecycle Management platforms within the IAM product portfolio. Define and drive multi-year platform strategy aligned with enterprise Zero Trust, identity security, and hybrid cloud transformation initiatives. Translate enterprise IAM policies and security standards into directory, machine identity, and certificate governance frameworks. Lead platform lifecycle management, including modernization initiatives such as directory consolidation, hybrid identity adoption, and machine identity governance improvements. Manage platform backlog, priorities, and engineering delivery in alignment with the product operating model and agile delivery practices. Partner with IAM leadership to ensure directory and certificate platforms support broader identity governance, authentication, and privileged access strategies. Directory Services & PKI Platform Engineering & Operations Leadership Lead engineering and operational oversight of the enterprise directory services infrastructure, including Active Directory multi-domain and multi-forest environments. Ensure reliability, scalability, and security of enterprise directory infrastructure including domain controllers, replication topology, DNS integration, and group policy architecture. Establish engineering standards for directory architecture, operational stability, and platform resilience. Oversee platform lifecycle management including patching, upgrades, monitoring, and disaster recovery planning. Manage the enterprise PKI ecosystem, ensuring secure certificate issuance, validation, renewal, and revocation processes. Cloud Integrations, Hybrid Identity & DevOps Enablement Lead hybrid identity architecture integrating Active Directory with Microsoft Entra ID and cloud identity services. Oversee identity synchronization, federation, and identity lifecycle processes across on-premise and cloud environments. Partner with cloud engineering teams to enable secure identity integration for enterprise applications, SaaS platforms, and cloud infrastructure. Enable application and DevOps teams with secure identity and certificate services required for modern development pipelines. Certificate Lifecycle Management (CLM) Leadership Lead the enterprise machine identity and certificate lifecycle management program, including governance of Venafi or equivalent CLM platforms. Maintain centralized governance and inventory of machine identities and certificates across infrastructure, applications, APIs, and network devices. Reduce operational and security risks related to certificate expiration, unmanaged certificates, and machine identity sprawl. Integrate certificate lifecycle management capabilities into enterprise infrastructure and DevOps pipelines. Oversee integration and secure operation of Hardware Security Modules (HSMs) used for certificate authority and cryptographic key protection. Security, Operational Resilience & Identity Threat Management Strengthen the security posture of identity infrastructure platforms, including Active Directory, Entra ID, and PKI services. Partner with the Security Operations Center (SOC) and cyber defense teams to monitor and respond to identity-related threats and anomalies. Establish monitoring and alerting for identity infrastructure anomalies, suspicious authentication activity, and potential directory compromise scenarios. Respond to and lead investigations involving identity compromise, privilege escalation, and misconfiguration. Automation, Platform Resilience & DevSecOps Drive automation initiatives across directory services, identity infrastructure, and certificate lifecycle management platforms. Implement Infrastructure as Code (IaC), scripting frameworks, and API-driven automation for identity infrastructure provisioning and management. Lead the adoption of DevSecOps practices to improve operational efficiency and platform security. Improve platform resilience through proactive monitoring, reliability engineering, and disaster recovery planning. Cross-Functional IAM Collaboration Partner with enterprise architecture, cybersecurity, infrastructure, and cloud engineering teams to align identity services with enterprise technology strategy. Support integration of directory and certificate services with enterprise IAM platforms and identity governance solutions. Provide subject matter expertise to application teams on identity infrastructure, certificate management, and secure authentication integrations. Represent directory services and machine identity platforms in enterprise security reviews, architecture boards, and transformation initiatives. Required Qualifications Education & Experience Bachelor’s degree in Computer Science, Cybersecurity, or a related field 15 years of experience in Identity and Access Management, Directory Services, Identity Infrastructure 10 years of experience leading engineering teams or platform ownership roles in IAM or identity infrastructure domains. Proven experience operating and modernizing large-scale Active Directory environments, including multi-domain and multi-forest architectures. Experience managing hybrid identity platforms integrating Active Directory and Microsoft Entra ID. Hands-on experience implementing Certificate Lifecycle Management (CLM) or PKI platforms, such as Venafi or equivalent solutions. Experience supporting identity platforms in global enterprise environments. Leadership & Product Experience Experience operating within a product operating model, including ownership of platform roadmaps and delivery outcomes. Ability to lead engineering teams while collaborating effectively with security, infrastructure, and application engineering stakeholders. Ability to communicate effectively with both technical teams and senior leadership. Ability to drive complex identity transformations in large enterprise environments. Passionate about automation, security, and operational excellence. Self-driven, organized, and comfortable operating in a hybrid, fast-paced environment. Certifications (Preferred) Microsoft Identity and Azure certifications CISSP, CISM, CCSP, or equivalent security certifications PKI or certificate management related certifications (Venafi preferred) Travel: Periodic travel (up to 10%) may be necessary for key meetings, conferences, or team collaboration Salary and Benefits: The base salary range for this position is $140,300 to $192,940; the exact salary depends on several factors such as experience, skills, education and location. In addition to base salary, this position is eligible for participation in a highly competitive bonus program with possibility for overachievement based on performance and company results. In addition, Mondelez International offers the following benefits: health insurance, wellness and family support programs, life and disability insurance, retirement savings plans, paid leave programs, education related programs, paid holidays and vacation time. Some of these benefits have eligibility requirements. Many of these benefits are subsidized or fully paid for by the company. Steht Umzugsbeihilfe zur Verfügung? Es wird keine Umzugsunterstützung angeboten Geschäftsbereich Zusammenfassung Die Vereinigten Staaten sind der größte Markt in der Familie von Mondelēz International, mit einer großen Mitarbeiterzahl und hohem Volumen in der Fertigung. Hier produzieren wir die Lieblingsprodukte vieler Haushalte, um Verbraucher mit dem richtigen Snack zum richtigen Zeitpunkt und auf die richtige Art und Weise hergestellt zu versorgen. Wir haben in den gesamten USA Büros, Vertriebs-, Fertigungs- und Distributionsstandorte, um sicherzustellen, dass Verbraucher unsere Klassiker, darunter Marken wie Oreo und Chips Ahoy! Kekse, Ritz, Wheat Thins und Triscuit Cracker und Swedish Fish und Sour Patch Kids Süßwarenprodukte überall im Land in ihrer Nähe finden. Mondelēz Global LLC ist ein Equal Opportunity/Affirmative Action-Arbeitgeber. Alle qualifizierten Bewerber und Bewerberinnen werden ohne Rücksicht auf ihre ethnische Herkunft, Hautfarbe, Religion, Geschlecht, sexuelle Orientierung, Geschlechtsidentität, Staatsangehörigkeit, Behinderungen, geschützten Veteranenstatus oder andere gesetzlich geschützte Merkmale berücksichtigt. Bewerber und Bewerberinnen, die für die Teilnahme am Bewerbungsprozess eine Unterkunft benötigen, können sich an Tel.: 847-943-5460 wenden, um Hilfestellung zu erhalten. Weitere Informationen zu Ihren Bundesrechten finden Sie in EEOpost.pdf; EEO ist das Gesetz - Plakatbeilage; Transparenz und Nichtdiskriminierung bei der Bezahlung; Kennen Sie Ihre Rechte: Diskriminierung am Arbeitsplatz ist illegal. Stellentyp Regulär Information Security Technology & Digital Bei Mondelēz International sehen wir es als unsere Aufgabe, Menschen mit dem richtigen Snack zum richtigen Zeitpunkt und auf die richtige Art und Weise hergestellt zu versorgen. Das bedeutet, eine breite Palette an köstlichen, qualitativ hochwertigen Snacks zu liefern, die die wichtigen Momente des Lebens bereichern, hergestellt mit nachhaltigen Zutaten und Verpackungen, bei denen sich die Verbraucher gut fühlen können. Wir haben ein reichhaltiges Portfolio mit starken Marken – sowohl global als auch lokal. Darunter befinden sich viele bekannte Marken wie Oreo, belVita und LU im Segment Kekse; Cadbury Dairy Milk, Milka und Toblerone im Segment Schokolade; Sour Patch Kids Candy und Trident Kaugummi. Wir sind stolz, weltweit bei Keksen, Schokolade und Süßwaren auf Platz 1 zu sein sowie auf Platz 2 bei Gummi- und Geleeartikeln. Unsere 80.000 exzellenten Fachkräfte und Macher sind in Betriebe in mehr als 80 Länder verteilt und verkaufen unsere Produkte in über 150 Ländern auf der ganzen Welt. Sie wollen wachsen und nur mit ihnen können wir unsere Ziele und Werte leben. Wir sind eine diverse Gemeinschaft, die etwas bewegen kann; und das schnell. Werde Teil unserer Gemeinschaft und Mach’s zu deinem Moment!
Salary : $140,300