Principal Product Manager — IAM & Identity Platform / Guard
About the Team
We are the product team behind Guard — the enterprise control plane for Atlassian: the layer that governs who can do what, under what policy, with what proof. The most defensible thing we build is the ability to govern Atlassian from inside Atlassian — at the identity, the permission, the policy decision, the configuration, the action, and the data. External SIEM, CASB, and agent-governance vendors look at Atlassian; only we can govern inside it.
Our work spans five pillars:
- Identity & access foundations — SCIM, Units, External Users, Tenant Access Restrictions, service account lifecycle, API token management, FedRAMP parity. The plumbing that makes Atlassian legible to enterprise identity systems and unblocks migration.
- Roles & permissions — Custom Roles, Delegated Admin Roles, Unit Admin Role, PAM, granular admin permissions. The primitives that scope who can do what — for human admins and non-human actors alike.
- Policy platform — one unified, composable policy model (replacing dozens of bespoke policy types), enforced across Rovo, connectors, MCP, and admin APIs.
- AI & agent governance — the new frontier, built on pillars 1–3 rather than separate from them: the permission gateway (identity → policy → scoped token), MCP governance, on-behalf-of consent, and agent attribution. This is cross-cutting work that threads through every part of the team.
- Governance experience — Governance Manager, continuous monitoring, and auditor-ready evidence that turns the substrate into "you are enterprise-ready, here's how we know."
Why now: Agent usage is scaling fast, enterprise migration hinges on our identity and policy foundations, and there is a real Premium upsell story tied to continuous governance. Identity and access ownership is fragmented across multiple engineering groups — one of our biggest organizational challenges and one of the most valuable problems to solve.
Responsibilities
This is a senior, cross-cutting Principal PM role. Rather than owning a single fixed surface, this person will operate across the identity, policy, admin, and AI-governance landscape — going deep where the leverage is highest at any given moment. The precise scope is intentionally not fixed yet: the right candidate helps us shape it, and we expect it to evolve as the strategy and the org mature.
Because this is a broad, ambiguous, high-leverage role, the day-to-day will vary. Over time, this person is likely to take on a mix of activities such as:
- Owning ambiguous, cross-cutting problems that don't sit cleanly inside one existing team's remit — e.g., the seams between identity, policy, admin, and AI governance where no one owns the outcome end-to-end.
- Driving strategy and technical product direction for foundational primitives (identity, permissions, policy, scoped tokens, agent governance) that many downstream surfaces depend on.
- Partnering deeply with engineering across teams whose ownership is split — aligning multiple eng groups around a coherent product direction rather than a stack of bolt-ons.
- Shaping and sequencing hard platform tradeoffs — substrate before surface, migration-blocking before net-new, one fabric with no parallel surfaces.
- Working cross-org with adjacent teams (Identity/NHI, Trust, Audit Log Platform, DLP/Detection, Central AI, Frontier) where our work shows up as a dependency in both directions.
- Wedge-driven delivery — standing up end-to-end scenarios that force a pattern into existence with real customer usage, then extending surface by surface.
- Representing the team with enterprise customers and internal stakeholders on the hardest identity, access, and AI-governance questions.
Qualifications
- A Principal-level product manager comfortable operating with significant ambiguity and defining their own scope in partnership with leadership.
- Depth in platform / infrastructure product management — identity, access management, security, policy, or a closely related domain (bonus for IAM, IdP/SCIM, authorization/PDP, or AI/agent governance experience).
- Strong technical fluency — able to earn the trust of senior engineers and architects and reason about foundational primitives, not just surfaces.
- A track record of owning cross-cutting, multi-team problems where ownership is fragmented and no single team has the full picture.
- Ability to turn strategy into sequencing — making principled tradeoffs about what ships first and why.
- Enterprise and customer instincts — able to translate deep platform work into outcomes a CISO, admin, or auditor cares about.
- A bias toward wedge-first delivery over framework-first platform work with no concrete user.
Pay
At Atlassian, we strive to design equitable, explainable, and competitive compensation programs. We follow consistent hiring practices and account for each candidate's skills, knowledge, and experience when setting base pay within the range.
In the United States, we have three geographic pay zones. For this role, our current base pay ranges for new hires in each zone are:
- Zone A: $197,100 - $257,325
- Zone B: $177,390 - $231,593
- Zone C: $163,593 - $213,580
This role may also be eligible for benefits, bonuses, commissions, and equity.
Benefits
Atlassian offers a wide range of perks and benefits designed to support you, your family, and to help you engage with your local community. Our offerings include health and wellbeing resources, paid volunteer days, and more.