Principal Enterprise Identity Engineer - RDT Identity & Access Management

Posted 2 Days Ago
Be an Early Applicant
South San Francisco, CA, USA
In-Office
115K-264K Annually
Expert/Leader
Healthtech • Biotech
The Role
Defines global enterprise identity strategy and architecture, leads SailPoint-based identity governance deployments, advances zero-trust initiatives, and establishes engineering standards across cloud and infrastructure environments. The role develops complex Java and Python integrations, oversees multi-cloud identity solutions, leads escalations and root-cause analysis, translates regulatory requirements into technical strategies, and mentors senior engineers and architects across distributed global teams.
Summary Generated by Built In

Roche you can show up as yourself, embraced for the unique qualities you bring. Our culture encourages personal expression, open dialogue, and genuine connections,  where you are valued, accepted and respected for who you are, allowing you to thrive both personally and professionally. This is how we aim to prevent, stop and cure diseases and ensure everyone has access to healthcare today and for generations to come. Join Roche, where every voice matters.

The Opportunity:

As the Principal Enterprise Identity Engineer, you are the ultimate technical authority and visionary for our global Enterprise Identity Management (EIM) and Identity Governance and Administration (IGA) landscape. Moving beyond individual contribution, you will define the multi-year identity strategy, driving zero-trust initiatives across a highly complex, global ecosystem.

Operating at the highest levels of our technical ladder, you will bridge the gap between executive business strategy and deep technical execution. You will architect resilient, massively scalable identity frameworks, mentor senior engineering talent, and lead cross-functional transformations that protect our most critical global assets while enabling frictionless business operations.

Job Responsibilities

  • Lead the multi-year roadmap and end-to-end technical strategy for enterprise identity, aligning IGA architectures with global security policies and zero-trust frameworks.

  • Establish and enforce enterprise-wide architecture patterns, engineering standards, and reusable frameworks across identity, cloud, and infrastructure domains.

  • Architect and oversee the deployment of next-generation, SailPoint-based EIM solutions that operate flawlessly at a massive, distributed scale.

  • Translate complex security paradigms and regulatory requirements into actionable, board-level technical strategies.

  • Pioneer the adoption of emerging identity technologies, including decentralized identity, advanced ML-driven access analytics, and complex microservice/API integrations.

  • Act as the technical cornerstone for the identity organization, mentoring senior engineers and leading Tier 4 escalation and root-cause analysis for catastrophic or highly complex systemic issues.

Who you are:

Qualifications and Core Expertise

  • Minimum of 8-10 years of hands-on engineering experience in Cybersecurity and Identity Management, with at least 5 years operating at an enterprise architecture or principal level.

  • 5+ years of experience steering identity strategies in highly regulated, multinational enterprise environments (Healthcare, Finance, or similar industries highly preferred).

  • Deep-tier technical expertise in SailPoint (IdentityNow/IdentityIQ), encompassing enterprise-scale design, custom development, performance tuning, and global deployment.

  • Expert-level proficiency in Java and Python for developing highly complex connectors, custom rules, and automated workflows.

  • Proven track record of architecting integration solutions across complex multi-cloud environments (AWS, Azure, GCP) and profound familiarity with CI/CD pipelines, DevOps methodologies, and microservices.

  • Exceptional executive presence with the ability to communicate deeply technical concepts to non-technical  stakeholders and lead distributed global engineering teams autonomously.

  • The ability to troubleshoot complex identity issues across multiple technology layers—from ISC configuration and APIs through connectors, applications, directories, and downstream provisioning systems.

  • Mentor engineers and solution architects, conduct architecture and design reviews, and help build a strong global Enterprise Identity community.

Education & Certifications

  • Degree: Bachelor’s or Advanced degree (Master’s preferred) in Computer Science, Cyber Security, Information Technology, or a related field.

  • Certifications: CISSP, CISM, or CIAM is strongly preferred for this leadership level.

  • Technical Certifications: Advanced certifications in AWS/Azure/GCP Architecture or SailPoint highly desirable.

Relocation benefits are not available for this job posting.

Must work onsite in South San Francisco

The expected salary range for this position based on the primary location of South San Francisco, CA is between $114,900- $263,500.  Actual pay will be determined based on experience, qualifications, geographic location, and other job-related factors permitted by law.  A discretionary annual bonus may be available based on individual and Company performance.  This position also qualifies for the benefits detailed at the link provided below. Benefits


#RDT2026

Genentech is an equal opportunity employer. It is our policy and practice to employ, promote, and otherwise treat any and all employees and applicants on the basis of merit, qualifications, and competence. The company's policy prohibits unlawful discrimination, including but not limited to, discrimination on the basis of Protected Veteran status, individuals with disabilities status, and consistent with all federal, state, or local laws.

If you have a disability and need an accommodation in relation to the online application process, please contact us by completing this form Accommodations for Applicants.

Skills Required

  • 8–10 years of hands-on engineering experience in cybersecurity and identity management
  • At least 5 years operating at an enterprise architecture or principal level
  • 5+ years steering identity strategies in highly regulated, multinational enterprise environments
  • Deep technical expertise in SailPoint IdentityNow or IdentityIQ, including enterprise-scale design, custom development, performance tuning, and global deployment
  • Expert-level proficiency in Java and Python
  • Experience architecting integrations across AWS, Azure, and GCP environments
  • Familiarity with CI/CD pipelines, DevOps methodologies, and microservices
  • Ability to troubleshoot identity issues across ISC configuration, APIs, connectors, applications, directories, and provisioning systems
  • Bachelor’s or advanced degree in Computer Science, Cybersecurity, Information Technology, or a related field
  • Experience communicating technical concepts to nontechnical stakeholders and leading distributed global engineering teams
  • Experience mentoring engineers and solution architects and conducting architecture and design reviews
  • Healthcare, finance, or similar regulated-industry experience
  • Master’s degree
  • CISSP, CISM, or CIAM certification
  • Advanced AWS, Azure, or GCP architecture certification
  • SailPoint certification

Genentech Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Genentech and has not been reviewed or approved by Genentech.

  • Healthcare Strength — Health coverage is described as comprehensive across medical, dental, vision, mental health, and prescriptions, supported by HSAs/FSAs and broad wellness resources. On‑site fitness and health centers, mental‑health clinicians, and specialized programs like fully covered preventive cancer screenings and menopause support deepen the offering.
  • Retirement Support — Retirement benefits feature a 401(k) with up to a 4% company match plus an additional annual 6% company contribution to eligible pay. Additional financial protections such as life and accident insurance complement salary, bonuses, and stock options.
  • Leave & Time Off Breadth — Time away includes about 20 paid vacation days, paid holidays, personal days, and a year‑end shutdown. A paid six‑week sabbatical every six years notably expands long‑term time‑off flexibility.

Genentech Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: South San Francisco, CA
20,069 Employees
Year Founded: 1976

What We Do

Considered the founder of the industry, Genentech, now a member of the Roche Group, has been delivering on the promise of biotechnology for more than 40 years. Genentech is a biotechnology company dedicated to pursuing groundbreaking science to discover and develop medicines for people with serious and life-threatening diseases. Our transformational discoveries include the first targeted antibody for cancer and the first medicine for primary progressive multiple sclerosis. We're passionate about finding solutions for people facing the world's most difficult-to-treat conditions. That is why we use cutting-edge science to create and deliver innovative medicines around the globe. To us, science is personal. Making a difference in the lives of millions starts when you make a change in yours.

Similar Jobs

Tapestry - Coach and Kate Spade Logo Tapestry - Coach and Kate Spade

Barista II

eCommerce • Fashion • Retail • Sales • Wearables • Design
Hybrid
Cabazon, CA, USA
16000 Employees
15-18 Hourly

Capital One Logo Capital One

Artificial Intelligence Engineer

Fintech • Machine Learning • Payments • Software • Financial Services
Remote or Hybrid
5 Locations
55000 Employees
286K-392K Annually

Optum Logo Optum

LVN or LPN, Case Manager - Remote

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office or Remote
Cypress, CA, USA
160000 Employees
20-36 Hourly

Optum Logo Optum

Senior Rebate Audit Analyst

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
In-Office
Irvine, CA, USA
160000 Employees
60K-107K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account