The Enterprise Identity team serves as Workday’s first and most critical line of defense. We own, architect, and evolve the Identity and Access Management (IAM) systems that govern exactly who gets access to internal resources, what they can do with that access, and why.
Operating across one of the most complex enterprise cloud environments in the software industry, our technical scope spans human, non-human, and multi-cloud identity systems. From designing and implementing practical Zero Trust controls and conditional access policies, to engineering automated workflows for seamless onboarding, role transitions, and offboarding across the company, this team is at the forefront of how Workday secures its digital ecosystem.
We are also pioneering work on the AI and agentic frontier, addressing the emerging challenge of securing autonomous AI agents, non-human identities (NHIs), and service-to-service trust models in production. Our work in privileged access governance is focused on hardening system access, reducing long-lived elevated privileges, and driving the transition toward right-sized entitlements and least-privilege models.
At Workday, identity is not a back-office IT support function. It is a core security boundary and engineering enabler. The Enterprise Identity team directly influences how safely Workday builds and ships products, acting as a crucial pillar in protecting the vital data and infrastructure of over 60 million users. If you are energized by meaningful security challenges with real organizational impact, this is the team for you!
As a Senior IAM Engineer on the Enterprise Identity team, you will play a central role in modernizing the design, architecture, and evolution of our enterprise identity ecosystem. You will secure digital identities across cloud, hybrid, and on-premises environments while balancing hands-on engineering with technical mentoring of more junior team members. You will also oversee the administration of IAM services in our European Sovereign Cloud.