Location
Main Campus-Berkeley
About Berkeley
At the University of California, Berkeley, we are dedicated to fostering a community where everyone feels welcome and can thrive. Our culture of openness, freedom, and belonging makes it a special place for students, faculty, and staff, who are among the most talented and accomplished anywhere, including Nobel laureates, Pulitzer Prize winners, and MacArthur Fellows. Since our founding in 1868, we have been an engine for innovation - driving intellectual, economic, and social progress that benefits California, the U.S., and beyond. Together, we change the world. At Berkeley, the best careers are built on a foundation of continuous learning and growth. We actively support professional development by providing all full-time staff employees with at least 80 hours of paid time per year and provide space for supportive colleague communities via numerous employee resource groups. We invite applicants who are inspired by our Principles of Community and who are eager to be part of our exciting Strategic Plan, which charts Berkeley's next era of excellence. Learn more about some of our accomplishments at Points of Pride. Departmental Overview The Information Security Office (ISO) coordinates the risk management process for UC Berkeley's information systems and directs campus-wide efforts to adequately secure institutional data. ISO is led by the Chief Information Security Officer and consists of seven areas: Information Security Policy, Information Security Operations, Information Security Administration and Engineering, Identity and Access Management, Information Security Assessments, Outreach and Engagement, and Service Management. Position Summary Primary responsibility for leading the Identity and Access Management (CalNet) teams. As the senior manager responsible for these technical teams, this position will reduce institutional risk through coordinating critical monitoring, response, and analysis of IAM applications, infrastructure, and architectural decisions in a complex, heterogeneous environment. The work will have a direct and meaningful impact on information security at a world-class research institution. Recognized as the leading campus technical expert on Identity and Access Management architecture, which is critical for all campus IT systems to control access and protect our systems and data. Application Review Date The First Review Date for this job is: 8/7/2026 Responsibilities Strategic Oversight
- Provides strategic leadership and operational oversight for identity and access management (IAM) services through the supervision of both management and technical staff responsible for authentication, access governance, identity lifecycle management, and related IAM operations. Through subordinate managers and staff, ensures reliable day-to-day service delivery and timely response to service requests, incidents, and escalations across IAM platforms. Establishes service expectations and reviews operational performance against strategic priorities.
- In collaboration with the Information Security Office (ISO) leadership team, develops,implements, and monitors strategic plans, operational priorities, budget processes, staffing/FTE allocations, finances, HR matters, and space planning.
Compliance, Policy, and Governance
- Leads the university's identity and access management (IAM) strategy and operations, ensuring compliance with privacy, security, and regulatory requirements while advancing secure, risk-based access to institutional resources and data across the campus environment. Oversees programs, initiatives, and governance activities that support UC policy and strengthen the stewardship of digital identities, authentication systems, privileged access, and electronic resources campus-wide.
- Exercises strategic judgment in the development and implementation of IAM policies, standards, and controls, balancing security, user experience, operational efficiency, and institutional needs across complex academic and administrative environments. Guides the adoption and governance of identity lifecycle management, authentication technologies, access governance, and security monitoring capabilities to support evolving business and security requirements.
- Examples: Minimum Security Standards for Electronic Information (MSSEI), Data Classification Standard, BFB-IS-3 Electronic Information Policy.
- May serve as the campus subject matter authority and representative in campuswide, systemwide, and national committees or working groups related to identity, access management, cybersecurity, privacy, and information security governance; providing leadership, consultation, and recommendations on policies, standards, and practices impacting the department, division, campus, or UC system.
- Examples: Data Governance Committee, Campus Information Security and Privacy Committee (CISPC), Securing Research Data Working Group
Staff Supervision and Service Operations
- Monitors and manages the daily operation of the CalNet (Identity and Access Management) team through individual contributors and subordinate managers; Oversees the coordination of departmental activities of a department with responsibility for results in terms of service delivery, costs, methods, and employees performance.
- Leads and develops managers and individual contributors by establishing priorities, fostering collaboration, and promoting operational excellence, continuous improvement, and customer-focused service delivery within a complex enterprise environment.
Advisory Leadership, Communications, and Risk Management
- In collaboration with ISO managers, makes recommendations to senior management regarding privacy, security, and compliance matters affecting the department and the broader campus community.
- Analyzes organizational needs by assessing systems and processes against internal campus security policies, external compliance requirements, and business objectives to establish priorities and strategic direction for systems and services.
- Collaboratively manages communication and awareness efforts to drive and integrate campus-wide Identity and Access Management and security strategies for faculty, staff, students, and affiliates. Coordinates complex and campuswide security controls and the application of security requirements to reduce risk to critical campus information, systems, and data in partnership with groups such as Student Information Systems, Supply Chain Management, Productivity Suite, Research Teaching and Learning, etc.
Professional Development and Training
- Participates in professional development and training to maintain expertise in identity and access management, information security, compliance, and leadership practices. Stays current with emerging technologies, industry trends, and regulatory requirements, contributes to departmental initiatives and continuous improvement efforts, and performs other duties as assigned.
Required Qualifications
- Advanced knowledge of enterprise Identity and Access Management concepts and technologies, including: Authentication and authorization technologies, Single Sign-On (SSO), Multi-Factor Authentication (MFA), and Privileged Access Management (PAM)
- Experience leading enterprise Identity and Access Management programs, services, or enterprise security initiatives
- Deep understanding of authentication, federation, identity governance, privileged access, and modern access management architectures.
- Demonstrated experience in determining and recommending actions, for campus, to follow in IT security and privacy matters.
- Demonstrated experience managing technical staff and managers.
- Demonstrated oral and written communication skills, including the ability to effectively present technical topics to large groups, all levels of stakeholders, and management with potentially varied levels of technical sophistication.
- Understanding of information security frameworks and standards (e.g. ISO 27001, NIST CSF, CIS Top 18)
- High level interpersonal skills to work with both technical and non-technical personnel at various levels in the organization.
- Broad knowledge of subject areas sufficient for strategic planning, technology assessment and direction.
- Experienced in leading change management activities and managing their impact within the department and campus wide.
- Broad knowledge of technical concepts and basic operating principles of data communications, computer hardware, vendor IT products, and software.
- The ability to work effectively with and manage a diverse group of employees and embraces unique viewpoints and outlooks.
- Demonstrated commitment to the advancement of diversity, equity, inclusion, belonging, and justice at UC Berkeley and Berkeley IT.
- Bachelor's degree in related area and/or equivalent experience/training.
Preferred Qualifications
- Minimum of 4 years of experience managing an information technology organization.
- Advanced degree preferred.
- Organizational policies and standards within Higher Education and/or Research environments, such as policies and standards defined for the University of California and the UC Berkeley campus.
- Experience developing IAM policies, standards, and governance frameworks
- Demonstrated understanding of privacy and security regulations and best practices, including federal and state laws, policies, and standards, as well as extensive knowledge about a wide range of privacy / security regulations relevant to higher education and / or medical center and patient information (e.g. FERPA, GDPR, GLBA, HIPAA, PCI DSS).
- Information risk management concepts and application.
- Disciplined, organized, methodical, and demonstrable experience developing and executing project plans.
Salary & Benefits For information on the comprehensive benefits package offered by the University, please visit the University of California's Compensation & Benefits website. Under California law, the University of California, Berkeley is required to provide a reasonable estimate of the compensation range for this role and should not offer a salary outside of the range posted in this job announcement. This range takes into account the wide range of factors that are considered in making compensation decisions including but not limited to experience, skills, knowledge, abilities, education, licensure and certifications, analysis of internal equity, and other business and organizational needs. It is not typical for an individual to be offered a salary at or near the top of the range for a position. Salary offers are determined based on final candidate qualifications and experience. The budgeted annual salary range that the University reasonably expects to pay for this position is $138,200.00 to $204,700.00.
- This is an exempt monthly-paid position.
- This is a full-time (40 hours/week) Career position eligible for full UC benefits.
How to Apply
- To apply, please submit your resume and cover letter.
Other Information
- This recruitment has 1 opening.
- This is not a visa opportunity. This position does not include sponsorship of a new consular H-1B visa petition that would require payment of the $100,000 supplemental fee.
- This position is eligible for up to 100% remote work. Exact arrangements are determined in partnership with your supervisor to meet role responsibilities and department needs and are subject to change.
Conviction History Background This is a designated position requiring fingerprinting and a background check due to the nature of the job responsibilities. Berkeley does hire people with conviction histories and reviews information received in the context of the job responsibilities. The University reserves the right to make employment contingent upon successful completion of the background check. Misconduct SB 791 and AB 810 Misconduct Disclosure Requirement: As a condition of employment, the final candidate who accepts a conditional offer of employment will be required to disclose if they have been subject to any final administrative or judicial decisions within the last seven years determining that they committed any misconduct; received notice of any allegations or are currently the subject of any administrative or disciplinary proceedings involving misconduct; have left a position after receiving notice of allegations or while under investigation in an administrative or disciplinary proceeding involving misconduct; or have filed an appeal of a finding of misconduct with a previous employer. "Misconduct" means any violation of the policies or laws governing conduct at the applicant's previous place of employment, including, but not limited to, violations of policies or laws prohibiting sexual harassment, sexual assault, or other forms of harassment, discrimination, dishonesty, or unethical conduct, as defined by the employer. For reference, below are UC's policies addressing some forms of misconduct: UC Sexual Violence and Sexual Harassment Policy UC Anti-Discrimination Policy Abusive Conduct in the Workplace Equal Employment Opportunity The University of California is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, protected veteran status, or other protected status under state or federal law.
|