Match Group is a leading provider of dating products across the globe. Our portfolio includes Tinder, Hinge, Match, Meetic, PlentyOfFish, OkCupid, The League, HER, and others, each designed to spark meaningful connections for singles worldwide. Creating a sense of belonging doesn’t stop at our products - it’s the foundation of every team we hire.
Match Group runs one unified security program across Tinder, Hinge, Match, Meetic, OkCupid, Plenty of Fish, Azar, Pairs, and the rest of the portfolio. Enterprise Security owns the corporate attack surface: who gets access to what, on which device, from where.
Identity is the center of gravity for this role and where you will spend most of your time. Our Enterprise Security function is built on two core pillars—Identity & Access Security and CorpSec—and while this role is anchored in Identity & Access Security, you will work fluidly across boundaries. Because identity is so tightly coupled with other CorpSec domains—such as endpoint, SaaS, and data access—you will collaborate fluidly across both teams to drive a unified security strategy.
What you'll do
Drive a comprehensive identity and access lifecycle strategy for our global portfolio, such as:
Authentication (AuthN): Drive identity security to the next level by enforcing device trust, post-auth detection, and DPoP.
Authorization (AuthZ): Enforce least privilege and right-size entitlement that balance security and velocity.
Non-Human & AI Agent Identity: Lead secure management for NHIs (e.g., OAuth tokens, service accounts, and API keys) and establish security guardrails for emerging AI agents and MCP connections.
Privileged Access Management (PAM) & Just-in-Time (JIT) Access: Modernize privileged access and implement JIT models to reduce standing privileges and secure high-risk administrative actions.
Own and harden Cloudflare ZTNA policies and support transitioning from traditional network-based access model.
Leverage your experience in broader enterprise security domains to ensure our identity strategy is integrated with our CorpSec efforts—device signals from endpoint posture (Fleet/EDR), SaaS security, and vulnerability management into our access controls to drive a unified security posture.
Eliminate manual toil and accelerate delivery by engineering automated solutions—using scripting, no-code tools, or AI—to solve problems at scale rather than manually managing repetitive tasks.
What we're looking for
7+ years in security engineering, IT engineering, or infrastructure, with meaningful depth in identity and access
Strong hands-on experience with Okta: policy design, device assurance, FastPass, device trust, RBAC
Experience with Cloudflare Zero Trust or a comparable platform
Strong knowledge of SAML, OIDC, OAuth 2.0, and SCIM
Experience with IGA solutions (e.g., Okta Identity Governance, SailPoint), including a deep understanding of identity lifecycles and compliance requirements.
Experience securing non-human identities (service accounts, OAuth apps, tokens) and establishing guardrails for AI agents; we value your thought process and perspective on these emerging challenges.
Experience with using Terraform or other IaC tools to manage infrastructure changes, with a strong emphasis on GitOps fluency.
Practical view of least privilege. You can right-size access without introducing too much friction to the business.
Experience building automated solutions (e.g., Okta Workflows, Lambda, Windmill) using Python or similar; you know when to automate for high impact and when to avoid it to prevent over-engineering.
Practical use of AI tooling in your own workflow
Proven ability to influence cross-functional outcomes, even without direct formal authority.
Proactively identify, scope, and drive complex problems to completion.
Nice to have
Endpoint management or EDR exposure (Jamf, CrowdStrike, or similar)
Audit and compliance experience with access controls (SOX, PCI-DSS, ISO 27001)
Experience working in global environments (EMEA/APAC)
Skills Required
- 7+ years of experience in security engineering, IT engineering, or infrastructure, with meaningful identity and access expertise
- Hands-on Okta experience, including policy design, device assurance, FastPass, device trust, and RBAC
- Experience with Cloudflare Zero Trust or a comparable platform
- Knowledge of SAML, OIDC, OAuth 2.0, and SCIM
- Experience with identity governance and administration solutions such as Okta Identity Governance or SailPoint
- Understanding of identity lifecycles and compliance requirements
- Experience securing non-human identities, including service accounts, OAuth applications, and tokens
- Experience establishing security guardrails for AI agents
- Experience with Terraform or other infrastructure-as-code tools and GitOps
- Experience building automated solutions using tools such as Okta Workflows, Lambda, or Windmill with Python or similar
- Practical understanding of least-privilege access design
- Practical use of AI tooling in workflow
- Ability to influence cross-functional outcomes without formal authority
- Ability to proactively identify, scope, and complete complex problems
- Endpoint management or EDR experience with Jamf, CrowdStrike, or similar
- Audit and compliance experience with SOX, PCI-DSS, or ISO 27001 access controls
- Experience working in global environments, including EMEA or APAC
Match Group Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Match Group and has not been reviewed or approved by Match Group.
-
Retirement Support — Employer matching on retirement savings and access to an employee stock purchase program are highlighted as standout elements. Feedback suggests this creates strong long-term financial support as part of total rewards.
-
Parental & Family Support — Fully paid parental leave, fertility and family-forming support, and childcare resources are emphasized across materials. Feedback suggests these benefits meaningfully support different family needs.
-
Leave & Time Off Breadth — Generous PTO, numerous paid holidays, wellness and volunteer time, and other special leave options are consistently described. Feedback suggests the breadth of time-off options helps sustain work-life balance.
Match Group Insights
What We Do
Match Group is home to some of the world’s most popular dating and social discovery apps, including Tinder, Hinge, Match, and more. Match Group’s mission is to spark meaningful connections for every single person worldwide. Our diverse portfolio of apps enables connections across a diverse range of ages, genders, backgrounds, and dating goals. Our services are available in over 40 languages to users all over the world.
Why Work With Us
Match Group is united by a mission to help people find meaningful connections and fight loneliness. We’re not just building products. We’re creating friendships, marriages, and families around the world. Our culture is fueled by purpose, creativity, and a passion for what we can build together.
Gallery









