IAM Engineer

Robert Half
Palo Alto, CA, United States
1 day ago
Apply on www.disabledperson.com
Prepare application

Role details

Contract type
Temporary contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$145,600.0 - $166,400.0
Working hours
Regular working hours

Tech stack

Application Programming Interfaces (APIs) Identity and Access Management Python (Programming Language) OAuth OpenID Azure Active Directory Security Assertion Markup Language (SAML) Security Information and Event Management SQL Databases Tisax Enterprise Software Applications Cloud Platform System
+2 more
Okta Build Management

Job description

  • Lead the technical architecture for an Entra ID to Okta workforce identity migration, including federation design, app integration sequencing, cutover planning, rollback strategy, and hypercare
  • Design and build SSO/SAML/OIDC integrations across enterprise applications, including multi-tenant deployment for US/EU regional data requirements
  • Architect lifecycle management and provisioning workflows, including HR-driven joiner/mover/leaver processes and SCIM integrations
  • Define and implement MFA, adaptive authentication, and device assurance policies aligned to a zero-trust roadmap
  • Act as the technical counterpart to the implementation partner by reviewing designs, challenging assumptions, and ensuring delivery quality
  • Maintain and operate the Okta environment post-cutover, including policy tuning, integration onboarding, incident support, and operational runbooks
  • Produce audit-ready documentation aligned with ISO 27001 / TISAX control environments
  • Support identity orchestration and governance initiatives, including attribute-driven provisioning, ABAC policy models, JIT privileged access, anomaly detection, automated deprovisioning, and audit/recertification capabilities
  • Support integration of identity and authorization event logs into the cybersecurity SIEM

Requirements

  • Bachelor’s degree or equivalent work experience
  • 7+ years of experience in identity and access management
  • 3+ years of hands-on Okta experience building, deploying, and maintaining Okta Workforce Identity Cloud environments
  • At least one completed enterprise migration from Entra ID / Azure AD to Okta as an architect or technical lead
  • Deep expertise in SAML, OIDC, OAuth 2.0, SCIM, and directory integration in hybrid AD / Entra ID environments
  • Experience administering Okta in production, including policy management, app integrations, lifecycle workflows, and troubleshooting
  • Experience designing MFA and adaptive access policies at enterprise scale
  • Strong documentation skills with the ability to produce audit-ready artifacts
  • Proven ability to work alongside system integrators while retaining architectural ownership

Preferred Skills

  • Okta Certified Consultant or Okta Certified Architect
  • Experience building custom identity automation or governance tooling using Python, SQL, APIs, and event-driven pipelines

Benefits & conditions

The hourly pay range for this position is $70 to $80 on a W2 basis. As a contract/temporary professional, you are eligible for medical, vision, dental, life, and disability insurance coverage. You may also enroll in our company’s 401(k) plan. For additional details on benefits, please visit roberthalf.gobenefits.net.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.disabledperson.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:15 min

Overcoming cultural resistance to achieve international security compliance standards

Ali Yazdani Ali Yazdani · World Congress 2023

2:49 min

Adopting OAuth best practices and removing outdated grants

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

2:33 min

Introduction to security advocacy and automation testing

Chris Heilmann +2 · LIVE

1:40 min

Addressing data sovereignty and compliance blind spots within AI

Sebastian Kister Sebastian Kister · World Congress 2026 Europe

1:34 min

Analyzing vulnerabilities in standard OAuth 2.0 authorization flows

Alexander Schwartz Alexander Schwartz · World Congress 2026 Europe

Videos

See all

Related articles

See all