Staff Identity Engineer, CIAM & IAM Enablement

Full Time
Toronto, ON, Canada
1 day ago

Get to know OktaOkta is The World’s Identity Company. We free everyone to safely use any technology, anywhere, on any device or app. Our flexible and neutral products, Okta Platform and Auth0 Platform, provide secure access, authentication, and automation, placing identity at the core of business security and growth.At Okta, we celebrate a variety of perspectives and experiences. We are not looking for someone who checks every single box - we’re looking for lifelong learners and people who can make us better with their unique experiences. Join our team! We’re building a world where Identity belongs to you.

Staff Identity Engineer

The Opportunity

As a Staff Identity Engineer, you will be a key contributor to the design, implementation, and operation of Okta’s identity and access management (IAM) solutions which cover Workforce IAM, Customer IAM and Federal IAM (US-based employees only). 

You will work on complex challenges related to authentication, authorization, governance and compliance using the full breadth of Okta’s identity platform (Okta, Okta Identity Governance, Okta Privileged Access, Okta Identity Security Posture Management, Auth0 etc.).  This is an exciting opportunity to shape the future of identity at Okta, make a significant impact on our security posture and be a driving force for Identity-based security in the industry through the Okta Secure Identity Commitment (OSIC).

This role is within Okta’s Security organization, on the IAM team and more specifically within the CIAM & IAM Enablement pillar.

Responsibilities
  • Design, document and implement scalable, secure, and reliable identity and access management solutions.  
  • Bring an automation mindset to IAM, including driving the use of generative AI within IAM, use of Infrastructure-as-Code (IaC) techniques, and ServiceNow
  • Lead technical discussions and provide guidance on best practices for identity management.  Articulate and implement the pattern, not one-by-one approaches.
  • Develop and maintain identity-related infrastructure and services, including directories, authentication protocols, and access controls.
  • Partner closely with peer managers across security, infrastructure, applications, and other business units to ensure identity solutions are integrated effectively and meet organizational needs.
  • Stay current with emerging identity technologies, standards, and industry trends.
  • Mentor and guide junior engineers, fostering a culture of technical excellence.
  • Product Roadmap Engagement: Actively engage with Product teams, offering expert feedback and valuable input to help shape the identity product roadmap, ensuring our solutions align with future business needs and technological advancements.
  • Technical Guidance & Vision: Provide technical leadership and guidance on identity architecture, best practices, and emerging trends. Contribute to the long-term strategic roadmap for identity within the organization.
  • Drive Operational Excellence: Ensure the team provides exceptional, responsive support for all business-as-usual identity activities, maintaining high availability and reliability of identity systems.  Perform root cause analysis for identity-related incidents and implement corrective actions.
Qualifications & Experience
  • 6+ years of experience in identity and access management, with a strong focus on enterprise-level solutions.
  • Deep understanding of IAM standards (e.g., OAuth, OpenID Connect, SAML, SCIM, FIDO2/WebAuthn) and security frameworks like NIST
  • Proficiency with the Okta or Auth0 platform and possibly other Identity vendors (SailPoint, Cyberark, …)
  • Experience with scripting (e.g., Python, JavaScript/TypeScript), automation platforms (e.g. Terraform, Okta Workflows, ServiceNow, GitHub), and agile methodologies/practices
  • Excellent problem-solving skills and the ability to troubleshoot complex technical issues.
  • Strong communication and collaboration skills, with the ability to effectively articulate technical concepts to both technical and non-technical audiences.
  • Ability to self manage and motivate in remote working conditions with global team mates
Preferred Qualifications
  • Bachelor's degree in Computer Science, Information Technology, or a related field; or equivalent practical experience.
  • Certifications in security or cloud platforms (e.g., Especially Okta certifications, CISSP, CCSP, AWS Certified Security – Specialty).
  • Experience with most of the wider IAM domain such as Privileged Access Management (PAM), identity governance and administration (IGA), Identity Verification.

#LI-REMOTE

Below is the annual salary range for candidates located in Canada. Your actual salary will depend on factors such as your skills, qualifications, and experience. In addition, Okta offers equity (where applicable), bonus, and benefits, including health, dental, and vision insurance, RRSP with a match, healthcare spending, telemedicine, and paid leave (including PTO and parental leave) in accordance with our applicable plans and policies. To learn more about our Total Rewards program, please visit: https://rewards.okta.com/can.

The annual base salary range for this position for candidates located in Canada is between:$141,000—$211,000 CAD

What you can look forward to as a Full-Time Okta employee!

  • Amazing Benefits
  • Making Social Impact
  • Developing Talent and Fostering Connection + Community at Okta

Okta cultivates a dynamic work environment, providing the best tools, technology and benefits to empower our employees to work productively in a setting that best and uniquely suits their needs. Each organization is unique in the degree of flexibility and mobility in which they work so that all employees are enabled to be their most creative and successful versions of themselves, regardless of where they live. Find your place at Okta today! https://www.okta.com/company/careers/.Some roles may require travel to one of our office locations for in-person onboarding.

Okta is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, marital status, age, physical or mental disability, or status as a protected veteran. We also consider for employment qualified applicants with arrest and convictions records, consistent with applicable laws. If reasonable accommodation is needed to complete any part of the job application, interview process, or onboarding please use this Form to request an accommodation.

Okta is committed to complying with applicable data privacy and security laws and regulations. For more information, please see our Privacy Policy at https://www.okta.com/privacy-policy/.