GitHub is the world’s leading platform for agentic software development — powered by Copilot to build, scale, and deliver secure software. Over 180 million developers, including more than 90% of the Fortune 100 companies, use GitHub to collaborate, and more than 77,000 organisations have adopted GitHub Copilot.
Locations
In this role you can work from Remote, United States
Overview
GitHub is looking for a Principal Engineering Manager to lead Identity & Access Management for GitHub’s workforce and production systems. Identity is foundational to GitHub’s regulatory commitments, cloud strategy, internal security model, and the trust boundaries that protect access to critical infrastructure. Getting it right is one of the highest-leverage things we can do to secure GitHub at scale.
You will lead the team responsible for GitHub’s IAM platform across identity lifecycle, entitlements, privileged access, identity federation, workforce identity providers, and secured administrative access patterns. These systems sit on the critical path for Hubber productivity and production security, and they must operate with high reliability, strong usability, and clear security guarantees.
This role requires both deep technical judgment and strong organizational leadership. You will partner across Security, Infrastructure, IT, Legal, Compliance, and Engineering teams to define strategy, build paved paths, improve operational maturity, and make least-privilege and just-in-time access the default across GitHub. You will lead engineers, create clarity in ambiguous spaces, and help the team deliver durable systems rather than one-off policy-driven solutions.
This is a unique opportunity to shape the identity foundation that protects GitHub’s internal systems today while preparing the company for a future where access decisions must be increasingly automated, policy-driven, and consumable by both humans and agents.
Responsibilities
- Lead the engineering strategy and technical roadmap for GitHub’s Identity & Access Management service area, spanning identity lifecycle, entitlements, privileged access, identity federation, and workforce identity providers.
- Build and support high-performing engineering teams by coaching engineers, managing performance, growing technical leadership, and fostering a culture of ownership, inclusion, operational excellence, and learning.
- Drive multi-quarter IAM platform evolution, including programs such as identity provider migrations, privileged access maturation, least-privilege access models, access automation, and identity platform consolidation.
- Partner with Security, Infrastructure, IT, Compliance, Legal, and product engineering teams to define requirements, resolve dependencies, and ensure IAM systems meet GitHub’s security, regulatory, reliability, and usability needs.
- Make secure access the easiest path by investing in paved paths, automation, APIs, and agent-consumable interfaces rather than relying on manual processes or policy memos.
- Oversee reliability, supportability, and operational maturity for Tier-0 IAM services, including incident response, postmortems, observability, deployment safety, rollback strategies, and systemic reduction of operational toil.
- Guide teams in designing scalable, secure, observable systems that support least privilege, just-in-time access, strong authentication, authorization, auditability, and identity governance at GitHub scale.
- Create clarity across ambiguous security and infrastructure programs, balancing long-term correctness with pragmatic delivery, phased cutovers, parity validation, and safe migration strategies.
- Raise the engineering bar through design reviews, architecture guidance, quality practices, automation, and mentorship across the IAM organization and adjacent engineering teams.
Qualifications
Required Qualifications:
- 11+ years experience in Software Engineering, Computer Science, or related technical discipline with proven experience maintaining and delivering production software coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, Go, Ruby, Rust, or Python
- OR Associate’s Degree in Computer Science, Electrical Engineering, Electronics Engineering, Math, Physics, Computer Engineering, Computer Science, or related field AND 10+ years experience in Software Engineering, Computer Science, or related technical discipline with proven experience maintaining and delivering production software coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, Go, Ruby, Rust, or Python
- OR Bachelor's Degree in Computer Science or related field AND 9+ years experience in Software Engineering, Computer Science, or related technical discipline with proven experience maintaining and delivering production software coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, Go, Ruby, Rust, or Python
- OR Master's Degree in Computer Science, Electrical Engineering, Electronics Engineering, Math, Physics, Computer Engineering, Computer Science, or related field AND 7+ years experience in Software Engineering, Computer Science, or related technical discipline with proven experience maintaining and delivering production software coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, Go, Ruby, Rust, or Python.
- OR PhD Degree in Computer Science, Electrical Engineering, Electronics Engineering, Math, Physics, Computer Engineering, Computer Science, or related field AND 5+ years experience in Software Engineering, Computer Science, or related technical discipline with proven experience maintaining and delivering production software coding in languages including, but not limited to, C, C++, C#, Java, JavaScript, Go, Ruby, Rust, or Python,
- OR equivalent experience.
- 5+ years people management experience.
Preferred Qualifications:
- Experience leading engineering teams responsible for identity, access management, infrastructure security, internal developer platforms, or other Tier-0 production services.
- Experience with identity directories and providers such as Okta, Entra ID/Azure AD, or similar workforce identity platforms.
- Familiarity with authentication, authorization, federation, provisioning, and access-control patterns, including OAuth, OIDC, SAML, SCIM, and LDAP.
- Experience leading large-scale identity platform migrations or consolidations, including parity validation, device trust, phased cutovers, rollback strategies, and dependent-team coordination.
- Strong understanding of privileged access management, least privilege, just-in-time access, entitlement governance, access reviews, auditability, and operating IAM or security-critical services in Azure, AWS, or GCP.
- Proven track record building and scaling engineering organizations in high-growth, high-ambiguity, or security-sensitive environments while partnering across Security, Infrastructure, IT, Legal, Compliance, and Engineering to deliver durable platform outcomes, including systems and APIs for programmatic or AI-agent consumption.
Compensation Range
The base salary range for this job is USD $160,200.00 - USD $425,000.00 /Yr.
These pay ranges are intended to cover roles based across the United States. An individual's base pay depends on various factors including geographical location and review of experience, knowledge, skills, abilities of the applicant. At GitHub certain roles are eligible for benefits and additional rewards, including annual bonus and stock. These rewards are allocated based on individual impact in role. In addition, certain roles also have the opportunity to earn sales incentives based on revenue or utilization, depending on the terms of the plan and the employee's role.
This position will be open for a minimum of 3 days, with applications accepted on an ongoing basis until the position is filled.
GitHub values
- Customer-obsessed
- Ship to learn
- Growth mindset
- Own the outcome
- Better together
- Diverse and inclusive
Manager fundamentals
- Model
- Coach
- Care
Leadership principles
- Create clarity
- Generate energy
- Deliver success
Who We Are
GitHub is the world’s leading AI-powered developer platform with 150 million developers and counting. We’re also home to the biggest open-source community on earth (and 99% of the world’s software has open-source code in its DNA). Many of the apps and programs you use every day are built on GitHub.
Our teams are dreamers, doers, and pioneers, leading the way in AI, driving humanitarian efforts around the globe, and even sending open source to Mars (and beyond!). At GitHub, our goal is to create the space you need to do your best work. We’re remote-first and offer competitive pay, generous learning and growth opportunities, and excellent benefits to support you, wherever you are—because we know that people flourish when they can work on their own terms.
Join us, and let’s change the world, together.
EEO Statement
GitHub is made up of people from a wide variety of backgrounds and lifestyles. We embrace diversity and invite applications from people of all walks of life. We don't discriminate against employees or applicants based on gender identity or expression, sexual orientation, race, religion, age, national origin, citizenship, disability, pregnancy status, veteran status, or any other differences. Also, if you have a disability, please let us know if there's any way we can make the interview process better for you; we're happy to accommodate!








