Lead SaaS/IAM Specialist
Wrike is the most powerful work management platform. Built for teams and organizations looking to collaborate, create, and exceed every day, Wrike brings everyone and all work into a single place to remove complexity, increase productivity, and free people up to focus on their most purposeful work. Our vision: A world where everyone is free to focus on their most purposeful work, together. About the Role: As the Lead SaaS/IAM Security Specialist, you will be the primary architect and team leader driving our cloud application security posture. Your mission is to balance business agility with absolute data protection across our sprawling SaaS ecosystem (including M365, Slack, Salesforce, etc). In this role, you will bridge the gap between user enablement and risk management by owning Identity and Access Management (IAM), deploying SaaS Security Posture Management (SSPM) tools to prevent configuration drift, and governing the entire lifecycle of our business applications. Crucially, you will lead, mentor, and scale a high-performing team of security engineers, fostering a collaborative culture rooted in automation and proactive risk reduction. Your Impact: By building and automating robust Identity pipelines: You will design, configure, and maintain our Identity Providers (IdP) using SAML 2.0, OIDC, and OAuth 2.0. You will leverage SCIM to automate provisioning and ensure immediate, airtight offboarding to prevent orphan accounts. By hardening our SaaS posture against configuration drift: You will deploy and manage SaaS Security Posture Management (SSPM) tools. You will establish and enforce security baselines (such as CIS benchmarks) across our key tools, catching unauthorized administrative changes in real time. By governing the security of third-party integrations: You will audit, restrict, and manage OAuth permissions granted to third-party add-ons and AI extensions, ensuring our enterprise data remains inside approved boundaries. By mitigating Shadow IT and assessing third-party risk (TPRM): You will analyze CASB, proxy, and endpoint logs to discover unauthorized SaaS usage. You will partner with Procurement to assess the security profiles of new software vendors by auditing SOC 2 reports, ISO certifications, and CAIQ sheets. By championing technical leadership and team growth: You will build, mentor, and guide a dedicated team of security professionals. By establishing engineering best practices, leading agile workflows, and promoting continuous learning, you will multiply your impact across the entire organization and cultivate the next generation of cloud security talent. Your Qualifications: Experience: 5+ years of dedicated experience in Cloud Security, IAM Administration, or IT Security Operations, including 1-2 years of experience leading, mentoring, or acting as a technical coordinator for other engineers. Technical Skills: Deep expertise in identity protocols: SAML 2.0, OIDC, OAuth 2.0, and...