At Mod Op, we’re reimagining the future of marketing by fusing creativity, technology, and intelligence to transform how work gets done and the value clients receive. Our AI & Innovation Team builds AI-enabled platforms and agentic systems that automate, optimize, and evolve the marketing process—from creative development to media execution to performance analytics.
This position supports the identity and security management of Mod Op innovation technology platforms, manages and audits access controls across Google Cloud & Innovation Services, ensuring secure, compliant, and efficient data operations. The role oversees role assignments, enforces data governance policies, investigates access incidents, and collaborates with cross-functional teams to align IAM strategies with business and innovation goals.
Responsibilities
Role & Permission Management
· Create, assign, and manage IAM roles and service accounts for Data Senders, Data Auditors and Data Users. This includes creating service accounts for automated processes and ensuring proper role bindings to maintain security and operational efficiency.
· Manage permissions for resources like Cloud Storage (Cloud Bucket), BigQuery, Vertex AI, Cloud Function, Cloud Scheduler, Logs, and proprietary Innovation Apps.
· Regularly audit IAM policies; identify misconfigurations, redundant permissions, and potential security gaps. Ensure compliance with organizational standards and regulatory requirements by maintaining accurate audit trails.
Data Governance & Compliance
· Apply organizational policies for data access, encryption, and retention. Enforce policies that govern how data is accessed, encrypted, and stored.
· Act as a point of contact for internal teams requesting access changes or troubleshooting permission issues. Provide timely resolutions while maintaining security standards.
· Generate and maintain detailed reports on user and service account access to support least-privilege compliance.
Monitoring & Incident Response
· Investigate and resolve incidents related to role misconfigurations or unauthorized access. Monitor IAM logs and alerts for suspicious activity. When incidents occur, perform root cause analysis, remediate misconfigurations, and implement preventive measures to avoid recurrence.
Collaboration Scope
· Collaborate with Data Governance, Innovation, and Account Management teams to align IAM strategies with business objectives. Ensure access control strategies align with business needs.
· Provide technical insights to support data-driven innovation initiatives securely. Advise on best practices for integrating IAM into new projects, ensuring that emerging technologies and AI-driven platforms adhere to security and compliance standards.
Requirements
· 5+ years of experience in IAM administration, cloud security, or related IT security roles.
· Proficiency in Identity and Access Management (IAM) concepts
IAM expertise, including (but not limited to):
o roles/owner, roles/editor, roles/viewer (and custom roles)
o roles/resourcemanager.organizationAdmin
o roles/iam.securityAdmin
o roles/storage.admin
o roles/bigquery.admin
o roles/aiplatform.admin
o roles/run.admin
o roles/iam.serviceAccountUser
o roles/cloudscheduler.admin
o roles/logging.viewer
· Prior experience in environments leveraging AI-driven platforms or innovation-focused technologies is a plus.
· Google Cloud IAM or Security Certification (e.g., Professional Cloud Security Engineer).
· CISSP, CISM, or similar security certifications for broader security governance expertise.
· Hands-on experience managing access controls and troubleshooting permission issues.
· Knowledge of data security principles, encryption methods, and retention policies.
· Familiarity with privacy compliance frameworks and governance best practices.
· Prior experience with security monitoring tools and IAM logs for detecting suspicious activity.
· Experience auditing IAM policies, identify misconfigurations, and ensure compliance with organizational and regulatory standards (e.g., GDPR, CCPA).
· Excellent communication skills to translate technical requirements into actionable insights for non-technical stakeholders.
Benefits
When asked what they love about working at Mod Op, we hear:
Mod Op, LLC provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.
At Mod Op, everything we do starts with understanding our clients’ marketing opportunities. Then, we identify the unique methods to help them achieve those goals. That may mean launching a complete, integrated advertising and PR campaign or tapping into some of our more specialized expertise for a given project.We have experts in strategy and advertising, digital media, public relations and social media, digital optimization and technology, and a robust creative studio, each with deep industry experience in consumer and lifestyle products, energy, media and entertainment, technology and travel and hospitality – and clients such as Microsoft, Nike and Fender.We’re in New York City, Miami, Dallas, Kansas City, Portland, Los Angeles and Panama City, Panama.We are thoughtful. We are purposeful. And yes, we’re creative, too.We’re Mod Op. And that’s our M.O. You in?
Please mention you found this job on AI Jobs. It helps us get more startups to hire on our site. Thanks and good luck!
Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.
Senior Manager Q&A's