Position Purpose:
At SRS, the Identity & Access Management (IAM) team plays a critical role in strengthening enterprise cybersecurity by enabling secure, scalable, and compliant access across cloud, on-premises, and customer-facing systems. We are seeking a Cybersecurity Staff Engineer - IAM to provide technical leadership for enterprise identity platforms and services, with primary focus on Okta, Microsoft Entra ID, and enterprise directory services. This role will lead strategic IAM initiatives including authentication modernization, identity integrations, automation, and M&A identity transformation efforts while supporting secure and seamless access across the enterprise.
The ideal candidate will bring strong experience in enterprise IAM architecture, Okta Workforce Identity, authentication and federation technologies, identity lifecycle management, workflow automation, API integrations, and large-scale identity migration initiatives.
Key Responsibilities:
- Serve as the technical and functional lead for Okta SSO, MFA, Universal Directory, Lifecycle Management, Microsoft Entra ID, and Active Directory platforms across enterprise environments.
- Lead the architecture, engineering, and integration of IAM solutions across cloud and on-premises systems.
- Design and implement scalable authentication, federation, and authorization solutions using SAML, OAuth 2.0, OpenID Connect (OIDC), LDAP, and SCIM.
- Design and implement IAM automation workflows and REST API integrations using Okta Workflows, Postman, PowerShell, Python, or similar technologies.
- Lead onboarding and integration of SaaS and enterprise applications into Okta using SSO, MFA, lifecycle management, and provisioning capabilities.
- Manage hybrid identity environments and integrations between Okta, Entra ID, Active Directory, cloud platforms, and enterprise applications.
- Develop adaptive authentication workflows, contextual access controls, phishing-resistant MFA, and passwordless authentication solutions.
- Partner with application owners, enterprise architects, cybersecurity, infrastructure, HR, and business teams to deliver secure and compliant identity solutions.
- Lead IAM activities supporting mergers, acquisitions, and divestitures, including identity integration, tenant consolidation, domain migrations, access transition planning, and identity migration strategies.
- Assess inherited IAM architectures and support application and user migration activities while ensuring secure access continuity and compliance.
- Provide functional leadership and governance for authentication, federation, provisioning, synchronization, and enterprise access management services.
- Drive the technical roadmap for Okta and enterprise directory services aligned with cybersecurity, compliance, and Zero Trust initiatives.
- Support audit, compliance, and regulatory requirements related to Okta and enterprise directory services.
Required Qualifications:
- 8+ years of experience in Identity & Access Management (IAM), Cybersecurity Engineering, or a related field.
- 7+ years of hands-on experience with Okta, Microsoft Entra ID (Azure AD), and Active Directory.
- Deep expertise in SSO, MFA, federation, identity lifecycle management, and authentication technologies.
- Strong experience integrating enterprise and SaaS applications using SAML, OAuth 2.0, OpenID Connect (OIDC), SCIM, and LDAP.
- Strong experience supporting Okta SSO, MFA, Universal Directory, and Lifecycle Management.
- Experience managing hybrid identity environments integrating Entra ID and Active Directory.
- Advanced experience with REST APIs, API integrations, and testing tools such as Postman.
- Strong experience building IAM automation workflows using Okta Workflows, PowerShell, Python, or similar technologies.
- Experience supporting IAM integration activities for mergers, acquisitions, and divestitures (M&A).
- Excellent communication and stakeholder management skills.
- Strong troubleshooting, analytical, and problem-solving skills.
- Ability to lead technical initiatives independently in a hybrid work environment.
Direct Manager Direct Reports:
The Cybersecurity Staff Engineer will report directly to the Cybersecurity Sr. Manager, maintaining a strategic focus on protecting sensitive data and critical assets. This role does not have any direct reports. The Staff Engineer will execute initiatives in collaboration with cross-functional teams, ensuring alignment with organizational security objectives. Responsibilities include designing and implementing security solutions, facilitating vulnerability management programs, and contributing to the development of security monitoring systems. The position emphasizes leadership through mentoring and guidance within the cybersecurity sphere. Experience in cybersecurity, computer science, or engineering is required, with a preference for candidates possessing over eight years of relevant experience.
Travel Requirements:
The Cybersecurity Staff Engineer in the company may be required to travel up t