Manager, Customer Identity & Access Management - CIAM
Listed on 2026-09-06
-
Security
Cybersecurity
Work Schedule
Ally designates roles as (1) fully on-site, (2) hybrid, or (3) fully remote. Hybrid roles are generally expected to be in the office a certain number of days per week as indicated by your manager. Your hiring manager will discuss this role's specific work requirements with you during the hiring process. All work requirements are subject to change at any time based on leader discretion and/or business need.
TheOpportunity
In office role with weekly hybrid schedule. Ally work locations are Charlotte NC, Lewisville TX, Jacksonville FL, Dresher PA. We are seeking a Manager, Product Owner to join our Customer Identity & Access Management (CIAM) team. This role is a senior individual contributor position reporting to the Director and serving as a key strategic partner and right-hand leader across the CIAM portfolio.
The Manager, Product Owner will help shape and execute the multi-year CIAM strategy, with accountability spanning omnichannel authentication experiences across both digital and call center channels. This role will lead some of the organization’s most complex CIAM programs, translating strategic priorities into executable product direction and ensuring the delivery of secure, scalable, and customer-centered authentication capabilities. This leader will operate across a highly matrixed organization, with a unique opportunity to influence the roadmap from within a Financial Crimes organization.
Unlike many CIAM teams that sit solely within technology or security, this team is closely aligned with Fraud, providing direct visibility into evolving attack patterns affecting customers and enabling faster, more targeted roadmap decisions that drive enterprise impact.
The ideal candidate brings strong product ownership discipline, deep cross-functional leadership, and the ability to drive alignment across business, fraud, cybersecurity, operations, UX, architecture, and engineering stakeholders. This role is ideal for someone who can move fluidly between strategy and execution, helping define where the CIAM organization is headed while also ensuring complex programs are structured, prioritized, and delivered effectively.
The Work ItselfPartner closely with the Director to help define, refine, and execute the broader CIAM product strategy and roadmap. Serve as a senior individual contributor and trusted deputy to the Director, helping drive strategic alignment, decision-making, and cross-functional execution across the CIAM portfolio. Own and lead complex, high-visibility CIAM programs from a product ownership standpoint, particularly those with significant business, technical, operational, regulatory, or fraud-related complexity.
Drive omnichannel authentication strategy and execution, with accountability for experiences spanning digital channels and call center authentication. Define product requirements and priorities for authentication capabilities including login, MFA, passkeys, passwordless, biometrics, account recovery, step-up authentication, and risk-based authentication. Translate strategic initiatives into epics, features, and user stories with clear business value, dependencies, and acceptance criteria. Partner with fraud, Financial Crimes, cybersecurity, and risk teams to ensure authentication controls are informed by current fraud patterns, attack vectors, and customer harm trends.
Leverage the team’s position within Financial Crimes to align authentication investments to the highest-impact enterprise fraud and customer protection priorities. Collaborate with engineering, architecture, and UX teams to design secure, low-friction, scalable authentication and recovery journeys across channels. Drive prioritization decisions by balancing customer experience, fraud prevention, security posture, technical feasibility, regulatory expectations, and operational efficiency. Serve as a senior product voice for internal stakeholders and partner teams consuming CIAM capabilities, services, and APIs.
Establish and monitor product, operational, and risk metrics such as authentication success rate, recovery completion rate, fraud loss reduction, attack interception effectiveness,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).