You’ll be the product owner for five connected areas, listed in the order we expect you to take them on.
1. Account-level administration (the immediate priority) The way customer organizations are modeled and managed in Magnet One: org and sub-org structure, user lifecycle, roles and permissions, seat and entitlement visibility, delegated administration for large or federated agencies, and the audit trails their security teams require. You’ll own the permissions model itself — what roles exist, what they can do, and how that scales as customers get larger and more complex.
2. Identity and access Single sign-on (SAML/OIDC), directory-driven provisioning and deprovisioning (SCIM), multi-factor and session policy, service accounts and API credentials, and the migration path for customers on older authentication paths. Much of this is table stakes in enterprise procurement, and gaps here surface early in security reviews.
3. Order fulfillment The path from a closed deal to a customer with working access. Entitlement provisioning, renewals and co-termination, trials, and the handoffs between our commercial systems and the platform. Your goal is to shorten time-to-access and eliminate the manual intervention this process requires today.
4. Deployment site and regional footprint Where customer data lives and how we decide to expand. You’ll own the logic for placing a customer in the right region at provisioning time, the constraints that drive that choice - data residency and sovereignty rules, agency policy, latency, regional service availability - and the analysis behind opening new regions. That means building the business case: which deals are blocked today by the absence of a region, what demand justifies the cost of standing one up, and what the sequencing should be. You’ll also own how region is surfaced to customers and to sales, and what happens when a customer needs to move.
5. Internal tooling The consoles our support, customer success, and operations teams use to administer accounts, resolve entitlement issues, and assist customers safely - with the auditability that assisting a customer’s account demands.
Across all five, you will:
•
Work directly with three or more engineering teams and their architects, in their language, on their design decisions.
•
Talk to customer administrators regularly and bring their reality back into the roadmap.
•
Sequence work across teams and make the tradeoff calls when platform investment competes with feature delivery.
•
Define what “good” looks like - provisioning success rates, time-to-first-login, admin task completion, support ticket volume by cause, deals unblocked by region availability - and hold the team to it.
•
Build and defend investment cases with quantitative analysis, particularly for regional expansion, where the cost is real and the demand signal is scattered across the pipeline.
•
Partner with sales engineering, security, support, revenue operations, and infrastructure, who all depend on these systems.
What year one looks like:
First 90 days. You’ve built a clear picture of the current account administration and permissions model, including where it breaks. You’ve talked to at least a dozen customer administrators and internal stakeholders. You’ve published a prioritized problem inventory the engineering teams agree with.
By six months. There’s an agreed target model for organizations, roles, and permissions, and work is underway against it. Identity roadmap commitments are defined with dates you can defend in a customer conversation.
By twelve months. Customer administrators can complete the core set of tasks without contacting support. Order fulfillment requires materially less manual intervention. Your engineering teams and your commercial stakeholders both know what’s coming next and why.