Systems, methods, and computer-readable media for managing end-to-end security over an IP Multimedia Subsystem (IMS)-enabled network are provided. A first subscriber module accesses an IMS network via an access gateway as a roaming network. The roaming network routes a request for a session from the first subscriber module from its P-CSCF to the I-CSCF of a third-party home network. The third party home network, in turn, routes the request to an S-CSCF implemented at the subscriber's home network, which comprises a second subscriber module. In this way, the session between the two subscriber modules is managed by the subscriber's S-CSCF rather than by a carrier's IMS network, and the subscriber may administer the security relationship without reliance on the carrier or the third party.