We are seeking a hands-on IAM Engineering Manager to lead the identity security architecture and execution for migrating workforce identity from Okta Workforce Identity to Microsoft Entra ID across a large application portfolio. You will set technical standards, solve complex federation challenges, and guide migration quality end-to-end.ResponsibilitiesOwn the migration architecture and technical strategy for transitioning identity provider capabilities from Okta to Microsoft Entra IDDefine migration patterns, sequencing, and technical standards for re-platforming application integrations to Entra IDDesign and validate SAML and OpenID Connect configurations including claims mapping and policy equivalencyLead technical decisions to ensure conditional access and authentication controls meet phishing-resistant and Zero Trust goalsServe as the technical escalation point for complex application migration issues and non-standard federation casesExecute or review high-risk migrations including service-to-service authentication and client-credentials flowsBuild and maintain runbooks, reference architectures, and reusable configuration templates to accelerate deliveryValidate identity lifecycle behavior, provisioning expectations, and access policy parity before and after cutoversTroubleshoot and resolve defects related to federation, token issuance, claims, and authentication failures during migration wavesPartner with the technical project manager to provide technical scoping, sequencing, and risk inputs without owning program management deliverablesDocument technical decisions and configurations in Confluence and track engineering work in JiraCoordinate with compliance and audit stakeholders when migration timing impacts control testing windowsRequirements8+ years of hands-on identity engineering experience with production design and troubleshootingProven IdP migration experience moving applications between identity platforms at enterprise scaleTechnical leadership experience defining architecture, standards, and escalation paths for complex workstreamsLarge-scale project experience sequencing and executing migrations across many applications and stakeholdersAdvanced Microsoft Entra ID skills including authentication, federation, and conditional access designAdvanced Okta Workforce Identity skills including policy models, factors, and federation configurationsStrong SAML expertise including federation setup and claims or attribute mappingStrong OpenID Connect skills including token, scope, and claims configurationStrong documentation skills using Atlassian Confluence for decisions, runbooks, and reference designsStrong delivery skills using Atlassian Jira to track work and manage migration backlogsStrong troubleshooting skills for federation, token issuance, and authentication failuresUpper-Intermediate English proficiency (B2) for clear technical communication with stakeholdersNice to haveAgile delivery experience working in iterative increments with cross-functional teamsScaled Agile Framework experience aligning engineering execution to program cadencePrivileged Access Management (PAM) exposure and understanding of identity dependenciesWe offerInternational projects with top brandsWork with global teams of highly skilled, diverse peersHealthcare benefitsEmployee financial programsPaid time off and sick leaveUpskilling, reskilling and certification coursesUnlimited access to the LinkedIn Learning library and 22,000+ coursesGlobal career opportunitiesVolunteer and community involvement opportunitiesEPAM Employee GroupsAward-winning culture recognized by Glassdoor, Newsweek and LinkedInEPAM is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, sexual orientation, gender identity or expression, disability, protected veteran status, or any other characteristic protected by applicable law.