Principal Product Manager, Iam Security & Agentic Identity

Okta Okta · Enterprise · United States · Sec - IAM-185

Principal Product Manager to drive Okta's Identity Security & Agentic Identity portfolio, focusing on securing AI agents, non-human workflows, and advanced threat protection. This role involves defining authentication/authorization for AI agents, implementing next-gen guardrails, and architecting defenses against session hijacking, acting as Customer Zero for new features before scaling them.

What you'd actually do

  1. Develop and refine the strategic roadmap for the Identity Security portfolio. Act as a key stakeholder who directly shapes and prioritizes the core Okta and Auth0 Product roadmaps based on internal deployment findings.
  2. Ensure that as Alpha features are released, Okta’s internal IAM team rigorously tests them and provides real-time feedback through the SDLC process. Own the internal rollout of these features through Early Availability (EA), driving adoption so Okta successfully "drinks its own champagne."
  3. Design the internal rollout blueprint and external product strategy for how Okta DBSSO and Chrome DBSC complement one another, creating a layered defense that protects corporate endpoints from token and cookie exfiltration.
  4. Define the operational and technical guardrails for deploying AI Agents internally and externally—ensuring secure integration via identity gateways, downscoped runtime permissions, and an unbreakable audit trail.
  5. Act as the primary liaison between business units, development, and engineering teams. Lead planning activities, author comprehensive PRDs/user stories, and prioritize features within Scrum/Kanban frameworks.

Skills

Required

  • Product Management
  • Technical Program Management
  • Enterprise Architecture
  • IAM technologies
  • developer platforms
  • enterprise security
  • machine-to-machine infrastructure
  • AI agents
  • LLM applications
  • security gateways
  • developer APIs
  • authentication
  • authorization
  • modern communication patterns
  • MCP
  • OAuth 2.0
  • identity threat vectors
  • AiTM phishing
  • info-stealer malware
  • session hijacking
  • cryptographic hardware-binding
  • TPM
  • Secure Enclave
  • session state
  • influencing product roadmaps
  • engineering priorities

Nice to have

  • Auth0
  • Okta Device Bound SSO (DBSSO)
  • Google Chrome Device Bound Session Credentials (DBSC)
  • Identity Threat Protection (ITP)
  • Identity Security Posture Management (ISPM)
  • Model Context Protocol (MCP)

What the JD emphasized

  • AI Agent & Agentic Identity Security
  • Next-Gen Guardrails
  • Agentic Governance
  • AI Agents
  • agentic workflows
  • AI workloads
  • AI
  • agent
  • agents

Other signals

  • AI Agents
  • Agentic Identity
  • governance
  • security