We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

SSO/MFA Lead

University of Southern California
United States, California, Los Angeles
3720 Flower Street (Show on map)
Aug 19, 2025
SSO/MFA Lead
Apply
Information Technology Services
ITS
Los Angeles, California

ABOUT THE DEPARTMENT

The University of Southern California (USC) is advancing its cybersecurity posture with a renewed focus on resilience, cyber risk management, and threat-informed defense. As a world-class research institution, USC is building a culture of security that supports its academic and research mission in a rapidly evolving threat landscape.

This role sits within a newly restructured cybersecurity organization that's leading this transformation. You'll join a team focused on scalable, proactive defense strategies, incident preparedness, and operational excellence-working alongside experts who are deeply committed to service, innovation, and impact.

If you're driven by purpose, thrive in complexity, and want to help shape the future of cybersecurity at a leading university, we invite you to bring your leadership to the table.

POSITION SUMMARY

As theSSO & MFA Leadyou will be an integral memberof the cybersecurity departmentwhile also collaborating with stakeholders across the university ecosystem, andreporting to the Manager PAM & SSO Services. This is a full-time exempt position, eligible for all of USC's fantastic Benefits + Perks.This opportunity is remote.

The SSO & MFA Lead is responsible for overseeing the management and operations of Single Sign-On (SSO) solutions, such as ForgeRock, Shibboleth, Multi-Factor Authentication (MFA) systems, Identity Proofing, and Account Take Over prevention. Leads the product offering (e.g., overall strategy, development, lifecycle management), responsible for managing projects, prioritizing tasks and directing both engineering and operational activities. Ensures the security, integrity and efficient functioning of SSO systems, collaborates with various departments to meet regulatory requirements, and provides leadership and mentorship.

The SSO & MFA Leadwill:

  • Leads the development and management of the SSO & MFA product roadmap, ensuring alignment with university goals. Prioritizes tasks and projects based on business needs, risk assessments and resource availability.

  • Manages SSO-related projects from inception to completion, ensuring timely delivery and adherence to budget. Oversees the day-to-day operations of SSO systems to ensure optimal performance and security.

  • Oversees the design, development and implementation of SSO, MFA, Identity Proofing and Account Take Over solutions. Ensures the integration of SSO systems with other university systems and applications.

  • Develops and enforces policies and procedures tailored to the university's SSO needs. Conducts regular risk assessments to identify and mitigate potential security risks.

  • Collaborates with IT, HR, academic departments and other stakeholders to ensure seamless integration of SSO processes.

  • Encourages a workplace culture where all employees are valued, value others and have the opportunity to contribute through their ideas, words and actions, in accordance with the USC Code of Ethics.

MINIMUM QUALIFICATIONS

Greatcandidates for the position of SSO & MFA Leadwill meet the following qualifications:

  • 5 years in Identity and Access Management.

  • A bachelor's degree or combined experience and education as substitute for minimum education.

  • Experience in SSO and MFA solutions.

  • Expertise in designing and implementing SSO and MFA frameworks, ensuring seamless integration with enterprise applications.

  • Knowledge of authentication protocols such as SAML, OAuth, OpenID Connect and related technologies.

  • Strong understanding of security best practices for authentication and access control.

  • Proven ability to monitor and optimize SSO and MFA performance, ensuring high availability.

  • Experience with cloud-based identity platforms like Okta, Ping Identity or Azure AD.

  • Strong troubleshooting skills and ability to resolve authentication-related issues promptly.

  • Effective communication skills for working with technical and non-technical stakeholders.

PREFERRED QUALIFICATIONS

Exceptional candidates for the position of SSO & MFA Leadwill also bring the following qualifications or more:

  • 7 years of related experience.

  • Relevant certifications, such as CISSP, CISM and product-specific certification.

In addition, the successful candidate must also demonstrate, through ideas, words and actions, a strong commitment to USC's Unifying Values of integrity, excellence, community, well-being, open communication, and accountability.

SALARY AND BENEFITS

The annual base salary range for this position is $150,433.13 to $168,158.88. When extending an offer of employment, the University of Southern California considers factors such as (but not limited to) the scope and responsibilities of the position, the candidate's work experience, education/training, key skills, internal peer alignment, federal, state, and local laws, contractual stipulations, grant funding, as well as external market and organizational considerations.

To support the well-being of our faculty and staff, USC provides benefits-eligible employees with a broad range of perks to help protect their and their dependents' health, wealth, and future. These benefits are available as part of the overall compensation and total rewards package. You can learn more about USC's comprehensive benefits here.

Join the USC cybersecurity team within an environment of innovation and excellence.


Minimum Education: Bachelor's degree
Addtional Education Requirements Combined experience/education as substitute for minimum education
Minimum Experience: 5 years in Identity and Access Management.
Minimum Skills: Experience in SSO and MFA solutions. Expertise in designing and implementing SSO and MFA frameworks, ensuring seamless integration with enterprise applications. Knowledge of authentication protocols such as SAML, OAuth, OpenID Connect and related technologies. Strong understanding of security best practices for authentication and access control. Proven ability to monitor and optimize SSO and MFA performance, ensuring high availability. Experience with cloud-based identity platforms like Okta, Ping Identity or Azure AD. Strong troubleshooting skills and ability to resolve authentication-related issues promptly. Effective communication skills for working with technical and non-technical stakeholders.
Preferred Certifications: Relevant certifications, such as CISSP, CISM and product-specific certification.
Preferred Experience: 7 years


REQ20164636 Posted Date: 08/14/2025
Apply
Applied = 0

(web-5cf844c5d-2fvnj)