Senior IT Engineer - Identity & Access Management
Role details
Job location
Tech stack
Job description
-
Architect and implement enterprise identity and access solutions centered on Okta for clients operating in regulated and multi-platform environments.
-
Configure and strengthen Okta capabilities such as directory services, adaptive authentication, lifecycle automation, workflow orchestration, and governance controls.
-
Integrate identity platforms with Entra ID, Active Directory, JumpCloud, Google Workspace, and other cloud or hybrid systems to create consistent access experiences.
-
Lead the design and support of SSO and federation solutions using SAML and OAuth standards, including claims design, attribute mapping, token settings, and authentication flow decisions.
-
Troubleshoot authentication and federation issues by analyzing logs, protocol behavior, and application integration details to resolve complex access problems.
-
Develop repeatable integration patterns for widely used business applications such as Microsoft 365, Salesforce, Slack, Zoom, Atlassian, GitHub, NetSuite, and similar platforms.
-
Build and maintain automated joiner, mover, and leaver processes tied to authoritative source systems to improve provisioning accuracy and deprovisioning speed.
-
Establish role-based access models, least-privilege controls, and access review practices that align with audit and compliance expectations.
Requirements
-
Partner directly with clients to assess identity maturity, recommend improvements, and deliver IAM solutions that support business and security objectives. Requirements * Demonstrated experience in identity and access management engineering, with strong depth in enterprise IAM architecture and operations.
-
Hands-on expertise with Okta, including tenant configuration, lifecycle management, authentication policies, and single sign-on enablement.
-
Strong knowledge of SSO and federation technologies, including SAML, OAuth, and modern authentication concepts across SaaS applications.
-
Experience integrating identity platforms with systems such as Microsoft Entra ID, Active Directory, Google Workspace, or other directory services.
-
Ability to design secure provisioning, deprovisioning, and access governance processes in regulated or compliance-driven environments.
-
Proven troubleshooting skills for authentication, authorization, and federation issues across cloud and hybrid application ecosystems.
-
Comfortable in a client-facing role with the ability to communicate technical recommendations clearly to varied stakeholders. Technology Doesn't Change the World, People Do.®