## Architect the Future of Enterprise Trust as our Product Manager, Identity & Access Management!
Ready to build the foundation of global enterprise security and seamless user access? Trimble is looking for a technically fluent visionary to lead our Identity and Access Management platform, owning the strategy and execution of how users and organizations manage access across our entire global ecosystem.
About Us
Trimble is a global technology company that connects the physical and digital worlds, transforming the ways work gets done. With relentless innovation in precise positioning, modeling and data analytics, Trimble enables essential industries including construction, geospatial and transportation. Whether it's helping customers build and maintain infrastructure, design and construct buildings, optimize global supply chains or map the world, Trimble is at the forefront, driving productivity and progress.
What Makes This Role Great:
In this role, you will be the primary architect of Trimble's identity ecosystem, owning the Organizations and multi-tenancy model that serves as the cornerstone for enterprise customer trust and cross-product integration.
Key Exciting Responsibilities
Organizations & Multi-Tenancy
* Own the concept of 'Organizations' within our product — the logical grouping of users, teams, settings, and resources under a single enterprise tenant.
* Contribute to the hierarchy model for organizations, including support for nested sub-organizations, delegated administration, and per-org policy overrides.
* Manage the experience for org-level IAM configuration: domain verification and claiming, enforced SSO, member join flows, and seat management.
* Ensure that organization-scoped roles and permissions are clearly modeled and consistently enforced across all product surfaces.
User Provisioning & SCIM
* SCIM (System for Cross-domain Identity Management): lead product management for SCIM 2.0 support, enabling enterprise customers to automate user provisioning and deprovisioning from their identity providers (IdPs) directly into our platform.
* Define the data model and API contracts for SCIM endpoints, including support for Users, Groups, and custom schemas.
* Work with engineering to ensure robust sync reliability, conflict resolution, and real-time de-provisioning to uphold security standards.
* Create documentation, guides, and onboarding flows that make SCIM setup seamless for IT administrators.
Identity & Access Management Service Integration
* Leverage your deep IAM experience to drive requirements for integrating with a wide variety of directories from on-prem Active Directory through Entra ID, Okta, Auth0, and more.
* Ensure our platform supports mixed environments where customers operate both on-premises and cloud-based directories simultaneously.
* Work cross-functionally to define how directory attributes map to roles, permissions, and organizational structures within our system.
Federation & Single Sign-On
* Lead and contribute to the larger group product strategy for identity federation, including support for SAML 2.0 and OIDC/OAuth 2.0 based SSO integrations with major identity providers such as Microsoft Entra ID and Google Workspace.
* Assist in the definition and refinement of the SP-initiated and IdP-initiated login flows, Just-In-Time (JIT) provisioning, and attribute mapping configuration experience.
* Ensure our federation implementation supports advanced enterprise requirements such as signed assertions, encrypted tokens, and custom claim mappings.
Product Strategy & Roadmap
* Define and own the multi-year roadmap for IAM capabilities, including authorization and provisioning.
* Architect a strategy for uniform access management that eliminates fragmented authorization patterns, empowering developers to integrate workflows across products seamlessly and securely.
* Partner with enterprise sales and customer success to identify and prioritize the IAM...
Want jobs like this matched to you?
SimpleCareer scores fresh postings against your résumé so you only see the matches that matter.