Staff Identity Security Engineer, Okta Identity Governance (Automation)
at Okta
Ontario, Toronto, Canada
Get to know Okta
Okta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.
At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences.
Join our team! We’re building a world where Identity belongs to you.
About the Role:
Okta is seeking a highly experienced and passionate Staff Identity Security Engineer to join our dynamic Security Identity Governance and Administration (IGA) team at Okta. This pivotal role will focus on implementing, configuring, and managing Okta's Identity Governance (OIG) solution. Candidates are required to ensure that access to applications and resources is secure, compliant, and based on the principles of least privilege, separation of duty and need to know. The primary area of responsibility for this role will be to lead, design, build, and deploy automation and self service capabilities of all IGA processes.
Core responsibilities:
- Lead with an automation first mindset: Design, build, and deploy automation for all aspects of IGA capabilities leveraging Okta platform features as well as supplementary tooling such as configuration as code management platforms (e.g. Terraform), scripting (e.g. Python).
- Design and implementation: Work with IT and security teams to design and implement access control solutions using OIG platform.
- Lifecycle management: Manage the full identity lifecycle for users, including processes for onboarding new employees ("joiners"), updating access for role changes ("movers"), and securely deprovisioning users who leave the organization ("leavers").
- Workflow development: Build and configure Okta Workflows to automate identity tasks, such as access requests, approvals, and provisioning.
- Access certifications: Create and manage access certification campaigns to review and audit user access to critical resources, ensuring it aligns with Okta’s policy and compliance requirements.
- Policy enforcement: Configure and enforce policies, including Least Privilege and Separation of Duties (SOD) rules, to prevent overprovisioned access, conflicts of interest to reduce risk.
- Integrations: Integrate Okta with various enterprise systems, applications, directories, and cloud platforms (AWS, Azure, GCP) using SCIM, APIs or custom connectors methods.
- Reporting and auditing: Generate reports for compliance and auditing purposes, leveraging the data collected by OIG with specific focus on automation of our reporting capabilities through centralization and enablement of self service through the use of reporting platforms (e.g. Tableau).
- Collaborative Team Engagement: Participate actively and contribute significantly to team meetings, fostering a collaborative environment, and engage with ongoing efforts to continuously improve ways of working within the IAM engineering team.
- Tier 3 Support for Internal Issues: Provide expert Level 3 support for complex internal identity-related issues and requests, acting as a critical point of escalation and resolution.
Essential qualifications:
- Experience: Hands-on experience designing and implementing identity and access management (IAM) solutions on Okta.
- Automation: Demonstrated experience and expertise in automation of IGA processes, system/platform configuration deployment, and reporting.
- Platform proficiency: In-depth knowledge of OIG platform, including its various modules like Lifecycle Management, Workflows, and Access Governance.
- Technical knowledge: Understanding of core identity security concepts such as role-based access control (RBAC), least privilege, and attribute synchronization.
- Communication skills: Strong communication and problem-solving skills to collaborate with both technical and business stakeholders.
- SDLC and Agile Knowledge: Possess a demonstrated understanding of working within the Software Development Life Cycle (SDLC) and Agile methodologies, ensuring efficient and structured development processes.
- Collaboration Tool Proficiency: Possess a good working knowledge of essential ITSM and collaboration tools such as ServiceNow, JIRA, Confluence, and GitHub, facilitating efficient service and project management as well as code collaboration.
- Security and Compliance Frameworks: Possess working knowledge of relevant security and compliance frameworks to ensure adherence to industry best practices and regulatory requirements.
- Certifications: Okta Certified Professional, Administrator or Workflow specialist are a plus.
#LI-HYBRID
Below is the annual salary range for candidates located in Canada. Your actual salary will depend on factors such as your skills, qualifications, and experience. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program, please visit: https://rewards.okta.com/can.
What you can look forward to as a Full-Time Okta employee!
- Amazing Benefits
- Making Social Impact
- Developing Talent and Fostering Connection + Community at Okta
Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! https://www.okta.com/company/careers/.
Some roles may require travel to one of our office locations for in-person onboarding.
Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws.
If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.
Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Personnel and Job Candidate Privacy Notice at https://www.okta.com/legal/personnel-policy/.