Principal Iam Technical Analyst

DoorDash DoorDash · Consumer · San Francisco, CA · 315 Security Engineering

This role focuses on advancing DoorDash's Identity and Access Management (IAM) program, aiming to create a secure, seamless, automated, and user-centric access system for employees. The Principal IAM Technical Analyst will design and improve access models, embed controls into systems, and strengthen joiner, mover, and leaver processes within a SOX-regulated environment. The role requires strong analytical skills, experience with IAM platforms like Okta, and the ability to translate security requirements into scalable solutions.

What you'd actually do

  1. Design and improve automated, self-service access models that reduce manual effort and simplify the employee experience.
  2. Partner with Engineering, Security, and Governance teams to embed scalable access controls directly into systems and workflows.
  3. Use data and automation to identify friction in access processes and implement practical, user-focused improvements.
  4. Strengthen joiner, mover, and leaver processes to ensure timely, accurate access aligned to business roles.
  5. Evolve access governance toward role-based and attribute-based models that scale with company growth.

Skills

Required

  • 8+ years of experience in Identity and Access Management, Security Governance, or a related field
  • Ownership of user access reviews and lifecycle controls in a Sarbanes-Oxley (SOX) regulated environment
  • Strong problem-solving skills
  • Hands-on experience designing or improving access governance processes
  • Experience with role-based or attribute-based access control models
  • Experience with segregation of duties considerations
  • Experience with identity platforms such as Okta
  • Experience with access governance tools such as ConductorOne or similar technologies
  • Strong analytical background
  • Experience automating manual processes
  • Experience using data to evaluate control effectiveness, improve user experience, and identify risk
  • Experience partnering with Engineering and IT teams
  • Ability to translate security and compliance requirements into practical, scalable solutions with minimal operational friction

What the JD emphasized

  • ownership of user access reviews and lifecycle controls in a Sarbanes-Oxley (SOX) regulated environment