OKTA Cloud Security Engineer

Compunnel

• $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5-10 years of experience in Identity and Access Management or related fields.
  • Hands-on experience with enterprise identity providers like Okta or Microsoft Entra ID.
  • Familiarity with SAML 2.0, OAuth 2.0, OIDC, SCIM, and MFA technologies.
  • Experience with REST APIs and scripting languages such as Python or PowerShell.
  • Strong analytical and troubleshooting skills, with effective communication abilities.

Responsibilities

  • Design and maintain Okta Workforce Identity solutions and capabilities.
  • Develop scalable authentication solutions including SSO and MFA.
  • Integrate applications using various identity federation technologies.
  • Define technical standards and secure configuration baselines for identity services.
  • Engineer advanced authentication capabilities like Okta FastPass and Device Trust.
  • Support application onboarding and identity lifecycle integration.
  • Troubleshoot complex authentication and integration issues.

Benefits

  • Opportunity to work with cutting-edge identity technologies.
  • Collaborative environment with cross-functional teams.
  • Focus on security engineering and platform reliability.
  • Access to professional development and relevant certifications.
  • Involvement in incident response and continuous improvement initiatives.
Full Job Description
Job Summary
The Okta Cloud Security Engineer will design, engineer, configure, and maintain enterprise identity solutions using Okta Workforce Identity and related identity technologies. The role focuses on SSO, federation, MFA, passwordless authentication, identity lifecycle management, automation, application integration, production support, security engineering, and platform reliability.

Key Responsibilities
• Design, engineer, configure, and maintain Okta Workforce Identity solutions and platform capabilities.
• Develop scalable SSO, federation, MFA, passwordless authentication, authorization, and identity lifecycle solutions.
• Integrate enterprise applications using SAML 2.0, OAuth 2.0, OIDC, SCIM, REST APIs, and federation technologies.
• Define reusable engineering patterns, technical standards, and secure configuration baselines for identity services.
• Engineer Okta FastPass, Device Trust, Device Bound SSO, FIDO2, and device-based authentication capabilities.
• Design secure authentication experiences across desktop, mobile, remote-access, and shared-device use cases.
• Implement privileged-access, step-up authentication, and authentication assurance controls.
• Develop automation and tooling using Okta APIs, Workflows, Python, PowerShell, JavaScript, Terraform, GitHub, and CI/CD practices.
• Support application onboarding, identity lifecycle integration, platform enhancements, testing, rollout planning, production releases, and post-deployment validation.
• Troubleshoot complex authentication, federation, provisioning, device-context, and application-integration issues.
• Create implementation documentation, technical designs, test plans, operational procedures, and knowledge articles.
• Ensure platform availability, resiliency, security, performance, and operational readiness.
• Maintain monitoring, alerting, dashboards, log analysis, and observability using tools such as Splunk or Elastic.
• Provide production support and participate in incident response, problem management, root cause analysis, and continuous improvement.
• Plan and execute platform upgrades, feature adoption, change management, and production validation.
• Conduct disaster recovery, failover, contingency, and resiliency testing and maintain related runbooks.
• Remediate vulnerabilities, security findings, configuration risks, and identity-related control gaps.
• Partner with cybersecurity teams on identity threat mitigation, privileged-access controls, and security-hardening initiatives.

Required Qualifications
• 5-10 years of experience in Identity and Access Management, identity platform engineering, security engineering, cloud security, or a related discipline.
• Hands-on experience with an enterprise identity provider such as Okta, Microsoft Entra ID, Ping Identity, or Auth0.
• Experience with endpoint and mobile device management platforms such as Microsoft Intune or Omnissa Workspace ONE.
• Experience with SAML 2.0, OAuth 2.0, OIDC, SCIM, MFA, federation, and modern authentication technologies.
• Experience onboarding and integrating enterprise applications and troubleshooting authentication and provisioning flows.
• Experience with REST APIs and scripting or development using Python, PowerShell, or JavaScript.
• Experience supporting production services, releases, incidents, change management, and technical documentation.
• Strong analytical, troubleshooting, communication, and cross-functional collaboration skills.

Preferred Qualifications
• Hands-on experience with Okta Workforce Identity Cloud, Okta FastPass, Okta Workflows, Universal Directory, and Lifecycle Management.
• Knowledge of passwordless authentication, FIDO2/WebAuthn, device assurance, Device Trust, and Device Bound SSO.
• Experience with AWS, Microsoft Azure, or Google Cloud Platform.
• Experience with automation, Infrastructure as Code, Terraform, GitHub, and CI/CD pipelines.
• Experience with SIEM and observability platforms such as Splunk or Elastic.
• Relevant IAM, Okta, security, or cloud certifications.

Certifications
• Relevant IAM, Okta, security, or cloud certifications.

Similar Jobs

More Jobs at Compunnel

More Information Technology Jobs

Find similar OKTA Cloud Security Engineer jobs: