Security Engineer

Mambu
Barcelona, Spain
5 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
€ 90K

Job location

Remote
Barcelona, Spain

Tech stack

API
Amazon Web Services (AWS)
User Authentication
Automation of Tests
Azure
Cloud Computing
Python
OAuth
OpenID
Role-Based Access Control
Security Assertion Markup Language (SAML)
Software Vulnerability Management
Scripting (Bash/Python/Go/Ruby)
Okta
Infrastructure as Code (IaC)
Cloudformation
Terraform

Job description

We are seeking a proactive and skilled Security Engineer to join our team. This mid-level role is crucial for ensuring the smooth, secure, and efficient operation of our Okta platform and additional internal platforms. You will be responsible for managing day-to-day operations, driving key integrations, and engineering automations to enhance our identity lifecycle management and security posture.

  • Platform Operations & Management:
  • Manage and maintain the core Okta platform, including users, groups, policies, and directory integrations.
  • Manage and maintain security services that the team owns.
  • Oversee the user lifecycle (onboarding, off-boarding, changes) and troubleshoot complex authentication, provisioning, and access issues.
  • Monitor Okta health, performance, and security logs, proactively addressing anomalies and ensuring compliance.
  • Engineering & Integration:
  • Design, test, and implement new application integrations using protocols like OIDC, OAuth 2.0, and SAML 2.0.
  • Develop and maintain automation scripts (e.g., Python, Okta APIs) to streamline operational tasks and improve identity lifecycle processes.
  • Drive initiatives to improve Okta utilization, such as implementing new features, optimizing policy sets, and consolidating identity stores.
  • Security & Governance:
  • Advise and implement best practices for Authentication and Authorization principles.
  • Demonstrate a clear understanding of, and experience with, defining access models like Role-Based Access Control (RBAC) and Attribute-Based Access Control (ABAC).
  • Maintain, advise and participate in processes that the team owns (e.g., Vulnerability management).

Requirements

  • 3+ years of hands-on experience as an Identity Engineer, Security Engineer, or similar role, with a strong focus on the Okta platform.
  • Expertise in SSO/Federation protocols including SAML 2.0, OIDC, and OAuth 2.0.
  • Proven ability to engineer solutions using scripting languages (e.g., Python) and working with Okta APIs.
  • Solid understanding of directory services and Okta integration patterns.
  • Strong communication and documentation skills, with the ability to translate technical issues to a non-technical audience.

Preferred/Bonus Skills

  • Experience with cloud platforms (AWS, Azure, or GCP).
  • Familiarity with Infrastructure as Code (IaC) tools like Terraform or CloudFormation.
  • Okta Certified Professional or Administrator certification.

Benefits & conditions

  • Competitive base salary
  • Company equity for all
  • Learning and development opportunities
  • Hybrid/Remote working (location dependant)
  • 30 day working abroad
  • 4 week paid sabbatical after 5 years service
  • Additional benefits based on location

As part of the recruitment (or HR onboarding) process, you will be required to obtain authorized criminal background and credit screening results, as well as be queried against a sanctions/anti-money-laundering/counter-terrorism financing/politically exposed persons screening service and your employment is conditional upon approval of these results.

About the company

Join the fintech revolution with Mambu, the leading SaaS cloud banking platform. We're on a mission to make banking better for a billion people. Explore exciting career opportunities and help shape the future of financial services.

Apply for this position